Start free trial
Company News

Urengi achieves SOC 2 Type II certification and upgrades its trust center

True risk management begins at home. We're proud to announce the formal renewal of our compliance frameworks with zero exceptions.


Zoe Harrington

Chief Security Officer, Urengi

Published

1 min read

A framed certificate of achievement standing on a desk in a warm-lit office

1. The report

Our SOC 2 Type II observation window closed in December and the report is now available, with zero exceptions across all five trust services criteria. Type II matters more than Type I here: it describes how the controls behaved over months, not whether they existed on one day.

2. What changed in the trust center

The trust center now publishes the artifacts rather than describing them. Sub-processors, the current report, penetration test summaries and our incident history are all reachable without a sales conversation and without an NDA for the summary tier.

3. Why we publish it this way

We ask vendors to make evidence retrievable instead of requestable. It would be difficult to keep asking that while our own report sat behind a form.

4. Requesting the full report

Customers and prospects under NDA can pull the full report directly from the trust center. It re-issues annually, and the page shows the observation window so nobody has to guess how fresh it is.


About Zoe Harrington

Zoe is the Chief Security Officer at Urengi. Formerly a security infrastructure architect at a large observability vendor and a lead auditor for global tech frameworks, she writes extensively on vendor risk models and zero-trust procurement cycles.

Related perspective pieces

A glowing padlock inside a shield, rendered over a dark server corridor

Why traditional questionnaires fail to capture real vendor risk

Traditional point-in-time spreadsheets are outdated the minute they are sent. Discover how real-time evidence vault monitoring captures actual security posture.


Sarah Jenkins

A dark monitor in a dim office showing a compliance dashboard
Product Updates

1 min read

Introducing the Urengi continuous compliance engine for NIST and ISO

Instantly map evidence artifacts to major global standards. Create audit-ready workspaces dynamically without replicating review actions.


Marcus Vance

Glowing orange data pathways threading through a dark circuit landscape
Engineering

2 min read

Scaling automated evidence extraction pipelines with zero-trust SLAs

How our security infrastructure team engineered a resilient parsing algorithm to handle gigabytes of SOC 2 and ISO PDFs daily.


David Kross