SOC1

SOC1 is a framework designed to assess and report on the internal controls of the service organization.

This Type 2 report for Flow is the outcome of an assessment of our controls over a 12 month period. The controls assessed were Logical Access, User Access Management, Policies and Standards, Server Security, Password Configuration, Cyber Security Posture, Secure Software Development, Secure Infrastructure Deployment, Resilience and Recovery.

Access to this report is restricted and is solely for the information of KX and our customers. Customer access to this report can be requested by sending a request to KXCompliance@kx.com. In order to receive a copy of this report you will be asked to sign an NDA.