We are pleased to report that Adobe has achieved SOC 2 – Type 2 (Security & Availability) and ISO 27001:2013 certifications for enterprise products within Adobe’s cloud offerings:
- Adobe Marketing Cloud*
- Adobe Document Cloud
- Adobe Creative Cloud for enterprise
- Adobe Managed Services*
- Adobe Experience Manager Managed Services
- Adobe Connect Managed Services
- Adobe Captivate Prime
*(Excludes recent acquisitions including Livefyre and TubeMogul)
The criteria for these certifications have been an important part of the Common Controls Framework (CCF) by Adobe, a consolidated set of controls to allow Adobe teams supporting Adobe’s enterprise cloud offerings across the organization to meet the requirements of various industry information security and privacy standards.
As part of our ongoing commitment to help protect our customers and their data, and to help ensure that our standards effectively meet our customers’ expectations, we are constantly refining this framework based on industry requirement changes, customer asks, and internal feedback.
Following a number of requests from the security and compliance community, we are planning to publicly release an open source version of the CCF framework and guidance sometime in FY17 so that other companies may benefit from our experience.
Chief Security Officer