At Field Effect we recognize the important role that security and privacy play in our mission to strengthen the cybersecurity of organizations around the globe. Use this portal to learn more about our security posture and request access to our compliance documentation.
ISO 27001
Field Effect is pleased to announce that we have completed our ISO/IEC 27001 recertification audit. This recertification reflects our ongoing commitment to protecting customer data and maintaining strong security controls. An updated copy of our certificate is available for download through our Trust Center.
SOC 2
Field Effect has successfully completed its 2026 SOC 2 Type II audit covering Security, Availability, and Confidentiality. The report is now available for download through our Trust Center.
We thank the audit team at MHM (https://www.mhmcpa.ca/) for their thorough and professional assessment. Their work reinforces the strength and consistency of our governance and control environment.
Field Effect has successfully completed a Service Organization Control (SOC) 2 Type 2 audit for Security, Availability, and Confidentially with no deviations noted by the auditors. This report is now available for download on our Trust Center.
This milestone confirms what our customers and partners already know: Field Effect’s security controls aren’t just designed—they’re operational, effective, and continuously evaluated against one of the most respected compliance frameworks in the industry.
Vulnerabilities
Field Effect is actively monitoring the recent supply chain attack involving hijacked npm packages. None of our services are affected, and our internal review confirms no exposure to the compromised components. Our onboarding process for third-party libraries includes validation steps that would have identified affected packages. Updates to third-party libraries are performed only after a review of their current security posture.
CMMC Customer Responsibility Matrix
Field Effect has released Version 3.0 of our CMMC Customer Responsibility Matrix. In the new version control responsibilities related to the Field Effect MDR service are now mapped at the Assessment Objective (AO) level, providing more precise alignment with NIST SP 800-171 requirements.
Field Effect has released Version 2.0 of our CMMC Customer Responsibility Matrix, offering enhanced clarity on which NIST SP 800-171 controls are fully inherited by our MDR service.








