Loading...

Tapad earns SOC 2 Type 2 certification for third year in a row

Published: January 24, 2023 by Experian Marketing Services

Up next in our Ask the Expert series, Ben Rothke, Senior Information Security Manager, reviews two certifications that should be part of your information security strategy: Service Organization Control (SOC) 2 Type 2 and International Organization for Standardization (ISO) 27001. Tapad, a part of Experian, is 27001 and SOC 2 Type 2 compliant.

Two information security certifications you can trust

Seals from Good Housekeeping and Underwriters Laboratories give consumers confidence that they can trust the product that they’re buying. For IT solutions or service providers, what, or who can you turn to for that seal of approval? There are many equivalent third-party attestations you can use. But which should you trust?

  1. The International Organization for Standardization (ISO) 27001
  2. The American Institute of Certified Public Accountants (AICPA) System and Organization Controls (SOC)

International Organization for Standardization (ISO)

27001 is an international standard for information security from the ISO. ISO 27001 is globally acknowledged and sets requirements for controls, maintenance, and certification of an information security management system (ISMS). This international standard provides organizations with a framework to identify, manage and reduce risks related to the security of information

System and Organization Controls (SOC)

The SOC, as defined by the AICPA, is a set of audit reports. SOC reports, like 27001 certificates, are used by service organizations to give their customers the confidence they have adequate information security controls in place to protect the data that they handle.

SOC 2 is an assessment of controls at a service organization regarding security, availability, processing integrity, confidentiality, and privacy. The purpose of the report is to provide extensive information and assurance to a broad range of users about the controls at a service organization that are relevant to the security, availability, and processing integrity of the systems that process user data, as well as the confidentiality and privacy of the information processed by these systems.

Why ISO 27001 and SOC 2 are important

The value of these third-party attestations is two-fold:

  1. Organizations can show they have passed an independent external audit
  2. Third-party attestations save organizations the time of having to do their own audits

In addition to 27001 and SOC 2 Type 2 compliance, we are also certified with ISO 27017 and 27018, which are add-ons to 27001 that are specific to cloud computing. We take the security and privacy of our customers’ data as seriously as they do.

Every cloud service provider (CSP) has a responsibility matrix that details what security and privacy tasks they are responsible for and which ones the customer is responsible for. Any cloud customer that needs to be made aware of what their security tasks are is putting themselves at risk.

So, when you want to engage a CSP, ask them for their attestations. They worked hard for them and will be proud to share their compliance.

We’re powered by decades of setting standards in marketing services

At Experian, we’re a privacy-first business. We’re highly focused on respecting people, their data, and their privacy. We continue to show our dedication to information security by completing these security audits every year.

The constant changes to data compliance regulations can be challenging to navigate, but you don’t have to do it alone. Contact us today. We will be your guide so you can ethically and confidently reach your customers.


About our expert

Ben Rothke headshot

Ben Rothke, Senior Information Security Manager

Ben Rothke, CISSP, CISA, is a Senior Information Security Manager at Tapad, a part of Experian. He has over 25 years of industry experience in information systems security and privacy. His areas of expertise are in risk management and mitigation, security and privacy regulatory issues, cryptography, and security policy development. Ben is the author of Computer Security – 20 Things Every Employee Should Know (McGraw-Hill), and writes security and privacy book reviews for the RSA Conference Blog and Security Management magazine.


Latest posts

Loading…
Tapad, a part of Experian, and Innovid partner to enhance cross-device video personalization

Partnership leverages industry-leading Tapad Device Graph™ for more effective video marketing across all connected devices NEW YORK, April 11, 2017 /PRNewswire/ – Tapad, a part of Experian, the leading provider of privacy-safe, cross-device marketing technology solutions, has announced its partnership with Innovid, the world's leading video marketing platform. This integration enables Innovid to bring cross-device personalization and a more unified viewer experience to its video marketing clients including Bank of America, L'Oréal, Microsoft and Procter & Gamble. Innovid's proprietary technology is the only platform optimized for video, enabling marketers to thrive in an ever-changing digital television landscape. Since its launch last year, Innovid's Marketing Cloud Suite has helped marketers increase message relevance and the opportunity to drive conversions, retention and acquisition through video personalization. By leveraging the Tapad Device GraphTM, Innovid's marketers can now benefit from the ability to drive consistent, personalized user experiences across all devices, creating more impactful connections with consumers and increasing ROI. "Personalization is a must for every data-driven marketer and really needs to happen across all devices to ensure a unified customer journey," says Ronnie Lavi, SVP of product at Innovid. "At Innovid, we recognize one size does not fit all when it comes to video. As an open platform, we are always looking to add best-of-breed capabilities through integrations and partnerships, and we've chosen Tapad because of its superior cross-device expertise." "Innovid has long paved the way for effective personalization in the video marketing space," says Pierre Martensson, GM of Tapad's data division. "As video continues to gain popularity across digital formats, we're excited to see how our technology empowers Innovid to bring that renowned personalization to more customers across all of their devices." Contact us today!

Apr 11,2017 by Experian Marketing Services

Tapad, now part of Experian, and Matter More announce strategic partnership

Tracey Scheppach's new marketing and media practice leverages Tapad's device-level data to help clients achieve "marketing nirvana" NEW YORK and CHICAGO, April 5, 2017 /PRNewswire/ — Today, Tapad, now part of Experian, is the leading provider of unified, cross-screen marketing technology solutions, and Matter More, a next generation marketing and media practice with deep experience in the advanced TV space, announced a strategic partnership to bring together world class digital data and audience development expertise to help marketers improve how they connect with consumers. As consumer behavior continues to expand across multiple devices, today's marketers need robust, comprehensive data solutions to accurately engage the people who matter most to their brands. At the same time, the TV industry has reached an advertising tipping point, capitalizing on the power of device-level data. "Achieving unduplicated reach and frequency across all channels with true addressability, and the ability to measure outcomes, is marketing nirvana," says Tracey Scheppach, CEO and co-founder of Matter More, a new agency built for the modern age. "The best opportunity to deliver 'marketing nirvana,' at scale, is by partnering with Tapad and using their world-class Device Graph to help our clients simply matter more to the people they care about most." "By leveraging our access to rich TV data, we can now measure the actual performance of media across channels," says Marshall Wong, SVP, TV for Tapad. Tapad's proprietary Device Graph™ unifies consumer behavior data across all devices, uncovering the interests, passions and behaviors of the audiences who matter most. As with any data solution, privacy, transparency and trust are crucial to bringing marketers a solid offering that delivers results. "Tapad is excited to partner with Matter More to tap into their knowledge base and experience working with some of the largest brands on TV today," says Kate O'Loughlin, SVP and GM of Tapad's media division. "The time has come to truly unleash the power of device-level data at scale." Contact us today

Apr 05,2017 by Experian Marketing Services

Verizon to close email service: 5 steps to keep valuable email subscribers

Verizon announced that they will be closing down their email business and migrating users to AOL over the next few months. With such an impending deadline it is important for email marketers to take action and consider the following steps to keep valuable email subscribers. Create a separate segment of all Verizon email addresses in your email automation platform. This will give insight into the size and ratio of this segment compared to your overall subscribers and helps you determine your strategy on acquiring their new email address. In your email campaigns make sure to use direct language in the subject line, the pre-header and header banner requesting that users update their email address either in a preference center or for them to create a new account If possible, make sure to link both the Verizon and new email address in your data-set to ensure that they are not treated as new when receiving future communication. As part of your email campaign strategy, be sure to target those who have not yet opened the email. We recommend sending two follow up emails using the previously created banners, and altering the subject line to encourage subscribers to take action. It is important to note that Verizon service users have been advised that they will keep their @verizon.net email domain if they switch over to AOL. If the user does not opt-in to the AOL service, then their email will be shut down and will subsequently bounce – if this happens then these should be removed from your dataset accordingly. For more information check out Verizon’s website here. If you are a client and have additional questions, please contact your manager or email us directly.

Mar 30,2017 by

Subscribe to our newsletter

Enter your name and email for the latest updates

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

About Experian Marketing Services

At Experian Marketing Services, we use data and insights to help brands have more meaningful interactions with people. As leaders in the evolution of the advertising landscape, Experian Marketing Services can help you identify your customers and the right potential customers, uncover the most appropriate communication channels, develop messages that resonate, and measure the effectiveness of marketing activities and campaigns.

Visit our website

Subscribe to our newsletter

Stay up to date on the latest industry news and receive expert tips from our marketing experts.
Subscribe now!