SOC 2 is an attestation report, defined by the AICPA and issued by an independent CPA firm, that evaluates a service provider's controls against the Trust Services Criteria: security, availability, processing integrity, confidentiality and privacy. Type I reviews their design on a given date and Type II how effectively they operate over a period, typically 6 to 12 months; SOC 1, by contrast, focuses on financial reporting controls.
How TecnetOne handles it: TecnetGRC
SOC 2 Type II, SOC 1, SOC report, AICPA, Trust Services Criteria