Company

SOC 2® Type 2 Report: Solutions2Share Completes Its Examination

Share on LinkedInShare on XShare on Microsoft TeamsShare via email
Solutions2Share announces its first SOC 2 Type 2 report on controls for security, availability, and confidentiality

Solutions2Share has received its first SOC 2® Type 2 report. The independent CPA firm Securance Pro Assurance PLLC examined our controls relevant to security, availability, and confidentiality. The examination period ran from July 1 to September 30, 2026 and covers the Solutions2Share platform, including Teams Manager and External User Manager.

For IT and security teams of our clients, this means one less open question when they evaluate our apps. Instead of relying on our own description, they can review the report of an independent service auditor.

“Our apps work inside our customers’ Microsoft 365 tenants. So security teams want to know exactly how we protect that access, and they’re right to ask. The SOC 2 report gives them an answer from an independent auditor, not just our word.”

– Bastian John, CTO, Solutions2Share

What is a SOC 2 Type 2 report?

System and Organization Controls (SOC) is a suite of services that CPA firms provide to report on controls at service organizations. The framework comes from the American Institute of Certified Public Accountants (AICPA). A SOC 2 report shows how a service organization protects the systems it uses to process customer data. The yardstick is the AICPA’s Trust Services Criteria.

There are two types of SOC reports. A Type 1 report assesses whether controls are suitably designed at a specific point in time. A Type 2 report goes a step further: the auditor also tests whether those controls operated effectively throughout a defined period.

What our SOC 2 examination covers

| Detail | Solutions2Share |
| --- | --- |
| **Report** | SOC 2 Type 2 |
| **Trust Services Criteria** | Security, Availability, Confidentiality |
| **Examination period** | July 1 to September 30, 2026 |
| **Service auditor** | Securance Pro Assurance PLLC, an independent, licensed CPA firm |
| **Scope** | Solutions2Share platform, including Teams Manager and External User Manager |
| **Hosting** | Microsoft Azure data centers in the EU |

The controls in scope include:

  • Access management and separation of duties
  • Encryption of customer data at rest and in transit
  • Vulnerability scans and annual penetration testing
  • Incident response and breach notification procedures
  • Availability monitoring, business continuity, and disaster recovery

What this means for your security review

If your security or procurement team is assessing Solutions2Share as a vendor, they’ll ask how we handle your data. A SOC 2 report is a standard document for exactly that step. It covers many of the topics in a typical vendor security questionnaire, documented by an independent auditor.

The report adds to certifications already in place. Solutions2Share is certified to ISO/IEC 27001:2022 and processes personal data in line with the GDPR. Your data stays in Microsoft Azure data centers in the EU.

How to request our SOC 2 report

To get a copy of our SOC 2 report, ask your contact at Solutions2Share or send a request through our contact page. We share the report under a non-disclosure agreement.

For a first look at how our apps handle permissions, authentication, and data, visit our Trust Center.

SOC for Service Organizations logo of the AICPA for SOC 2 reports

To see how Teams Manager and External User Manager fit your tenant and your security requirements, book a demo call with our experts.

About Solutions2Share

Solutions2Share GmbH builds governance apps for Microsoft 365, with a focus on Microsoft Teams and SharePoint. Its apps, including Teams Manager, External User Manager, and Governance Autopilot, help IT teams automate provisioning, lifecycle management, and the management of external users. The company is based in Fürth, Germany, and is a Microsoft Solutions Partner.

Solutions2Share

FAQ: SOC 2 Type 2 Report

What is a SOC 2 Type 2 report?

A SOC 2 Type 2 report is an independent auditor’s report on a service organization’s controls relevant to security, availability, processing integrity, confidentiality, or privacy. It assesses how the controls are designed and whether they operated effectively over a defined period, usually three to twelve months.

What is the difference between SOC 2 Type 1 and Type 2?

A Type 1 report assesses whether controls are suitably designed at a single point in time. A Type 2 report also tests whether those controls operated effectively throughout a defined period. Many enterprise security teams ask specifically for a Type 2 report.

Which Trust Services Criteria does the Solutions2Share SOC 2 report cover?

Security, Availability, and Confidentiality. The examination period ran from July 1 to September 30, 2026, and covered the Solutions2Share platform, including Teams Manager and External User Manager.

Who performed the SOC 2 examination?

The independent CPA firm Securance Pro Assurance PLLC performed the examination as service auditor, in line with the AICPA’s attestation standards.

How can I get the Solutions2Share SOC 2 report?

Ask your contact at Solutions2Share or send a request through our contact page. As the report is confidential, we share it with customers, prospects, and their auditors under a non-disclosure agreement.

What is the difference between a SOC 2 report and ISO/IEC 27001?

ISO/IEC 27001 is an international standard for information security management systems, and organizations get certified against it. A SOC 2 report is an attestation by an independent CPA firm on specific controls over a defined period. Solutions2Share is ISO/IEC 27001 certified and now also has a SOC 2 Type 2 report.

Portrait of Bastian John, Chief Technology Officer at Solutions2Share
Written by
Bastian John
Chief Technology Officer (CTO)

Bastian John has been developing governance and provisioning solutions for over 15 years, starting with SharePoint 2010 and evolving alongside Microsoft’s cloud transformation. Today, he leads product development at Solutions2Share, focusing on Teams Manager, one of the most established governance applications for Microsoft Teams. His expertise includes lifecycle automation, provisioning strategies, and the integration of AI into governance processes, helping IT administrators simplify complex Microsoft 365 environments.

Connect on LinkedIn
Take the next step

Book a free demo