Zonar, a telematics and parent app provider, is ready to give its customers more trust into its data protection practices. The software provider has now achieved SOC 2 Type 1 certification.
Conducted by an independent third-party auditor, the certification confirms that Zonar security controls are suitably designed to protect customer data and meet the rigorous standards of the American Institute of Certified Public Accountants (AICPA) Trust Services Criteria.
SOC 2 Type 1 certification provides formal, audited evidence of Zonar’s security processes. The company said it is pursuing SOC 2 Type 2 to provide a deeper, time-tested record of security performance.
The audit assessed the design of controls across the security trust service criteria covering logical access management, system monitoring, risk management, and incident response. The result gives customers, prospects and procurement teams an independent, documented view of Zonar data protection practices with an established standard, not its own self-attestation.
"Our customers send us data every second their fleet is on the road," said Jason Craven, chief technology officer at Zonar. "We collect more than 50.4 billion data points annually from a combined 11.9B miles driven each year. That data drives dispatch decisions, safety reviews, compliance records. It's the core of how they operate. SOC 2 Type 1 is the formal documentation that we treat it with provable security. Every control that passed this audit exists because we built all our processes and systems to earn that kind of trust."
SOC 2 compliance is a standard vendor qualification prerequisite for large public and private sector organizations, and Zonar now meets it.
Paired with Zonar's cooperative purchasing pre-authorization through Sourcewell, public sector procurement teams now have a verified, contract-ready vendor with audited security controls and an established procurement vehicle.
One other industry provider that we know of has achieved SOC verification. Last year, HopSkipDrive achieved SOC 2 Type II compliance.