Bracket Completes SOC 2 Type II Audit
.png)
Transform your corporate treasury and FX management
Bracket Completes SOC 2 Type II Audit
Bracket has completed its SOC 2 Type II report, conducted by A-LIGN, an accredited, licensed third-party auditor and one of the leading providers of cybersecurity compliance programmes. The examination confirmed that Bracket's security controls are properly designed and operating effectively throughout the audit period.
What SOC 2 Type II actually means
SOC 2 is one of the most widely recognised audit standards governing how service providers manage and protect data. Bracket's audit covers the Security criterion, the foundational trust principle common to every SOC 2 report, which evaluates the controls protecting systems and information against unauthorised access, disclosure, and damage.
The Type II designation means these controls were tested over a defined observation period, to confirm they hold up under real-world conditions rather than being evaluated at a single point in time. It is for this reason that SOC 2 Type II is widely regarded as the gold standard in information security.
What this means for Bracket?
For a platform working directly with banks and handling sensitive treasury data, this is a significant milestone. The audit validates the standards Bracket holds itself to and gives clients clear visibility into how their information is governed and protected.
To meet the Security criterion, the controls in place include:
- To meet the Security criterion, the controls in place include:
- Background checks for employees with access to sensitive systems and data
- Regular vulnerability scanning across Bracket's infrastructure
- Penetration testing conducted on a regular basis, a practice that extends beyond the SOC 2 baseline
- A documented incident response programme covering detection, containment, remediation, and communication
What this means for potential clients?
Choosing a treasury platform is as much a decision about trust as it is about capability. Independent assurance turns that trust into something finance team scan verify.
With Bracket's SOC 2 Type II audit complete, potential clients can:
- Demonstrate to their own auditors and stakeholders that Bracket meets an independently verified security standard
- Rely on assurance issued by a licensed auditor rather than a supplier's own assessment
- Move through security review and vendor evaluation more efficiently, often replacing lengthy questionnaires with directreference to the report
- Use the report as evidence within their own vendor risk and compliance processes
“This audit is another step forward in building a platform customers can rely on. It's independent confirmation that our security holds up in practice, and it reinforces the commitment we've made to protecting our customers and their data.”
James Baldwin, Infrastructure Engineer at Bracket
“Protecting our customers’ data is fundamental to what we do. SOC 2 Type II is the gold standard in security, and we’re proud to meet it”
Pierre Anderson, Co-founder at Bracket.
Full details on Bracket's SOC 2 Type II audit, including related policies and controls, are available on Bracket's Trust Center.
About Bracket
Bracket is building an AI-native treasury platform for mid-market businesses and financial institutions, combining real-time cash visibility, multi-currency forecasting and FX risk automation.
%20(1).png)
