HRMLESS Trust Center
Data as of Sep 21, 2026, 11:47 AM UTC

Compliance Status

HRMLESS SOC 2 Type II compliance posture, updated live from our compliance platform.

SOC 2 Type II

Trust Services Criteria (2017)

Active

Security Measures

Total Measures

32

Implemented

30

94%

In Progress

2

Not Started

0

Implemented In Progress Not Started

Trust Services Criteria in Scope

33 controls across 9 TSC categories

Control Environment

CC1

Organizational structure, governance, and accountability

Communication & Information

CC2

Internal and external communication of security commitments

Risk Assessment

CC3

Identification and assessment of risks to objectives

Monitoring Activities

CC4

Ongoing evaluation of internal control effectiveness and deficiency communication

Control Activities

CC5

Policies and procedures to mitigate risks

Logical & Physical Access

CC6

Restriction and management of access to systems and data

System Operations

CC7

Detection and monitoring of system anomalies and security events

Change Management

CC8

Management of changes to infrastructure and software

Risk Mitigation

CC9

Risk mitigation activities including vendor management