BLACKPOINT CYBER COMPLETES SOC2 TYPE II COMPLIANCE: May 1, 2025- April 30, 2026

We are pleased to announce that Blackpoint Cyber has successfully completed our annual SOC 2 Type 2 audit for the observation period of May 1, 2025, through April 30, 2026, with zero exceptions noted. This achievement reflects our continued SOC 2 Type 2 compliance, which we have maintained since 2023. 

For Blackpoint, this marks another year of rigorous internal control management, reaffirming our commitment to the security and trust you place in us every day. Our internal control environment continues to meet the American Institute of Certified Public Accountants (AICPA) Trust Services Criteria across security, availability, and confidentiality. 

A SOC 2 Type 2 report goes beyond a point-in-time snapshot of how we’re protecting customer data. It validates the operational effectiveness of our controls over a full year, day in and day out. Much like our 24/7/365 Security Operations Center (SOC), management operations over our internal control environment never stops. We pride ourselves on continual improvement year after year. Visit the Trust Center to view the report. 

Why SOC 2 Type 2 Compliance Matters for MSPs 

MSPs are juggling dozens of vendors, with some managing upwards of 40 vendors to serve their customers. Each of these vendors has some varying access to hardware, software, and portals that can expose personal information to unnecessary risks in a third-party environment. A vendor’s SOC 2 report gives MSPs a standardized way to answer the question every MSP should be asking: how well do you truly know your vendors, and how are they protecting my data? A SOC 2 report helps answer this question by focusing on controls across five trust services criteria: security, availability, confidentiality, privacy, and integrity, covering the vendor’s management practices, HR processes, data security, privacy posture and more. 

That said, not all SOC 2 reports are created equal, so a report alone isn’t proof of a trustworthy vendor. Before you rely on it, check the period of observation, trust services criteria, scope of the audit, auditor’s opinion, and testing methodology and results to confirm what you read applied to what you are buying. A keen analysis of a SOC 2 report can help form the foundation of your own vendor risk management program, turning vendors into trusted and verified partners. 

Curious how to put this into practice?  Our earlier deep-dive, The MSP Guide to SOC Compliance, walks through each of these five report components in more detail, while calling out key differences between the various types of SOC reports, so you can build out your own vendor risk management program one vendor review at a time. 

DATE PUBLISHEDJuly 21, 2026
AUTHORBlackpoint Cyber

Blackpoint AI: A Decade in the Making

Webinar - July 22
Automated attacks need automated defense. Learn how Blackpoint AI protects your clients from identity threats by containing threats in as little as 21 seconds.*
*Under two minutes on average

REGISTER NOW