Loading...

Tapad earns SOC 2 Type 2 certification for third year in a row

by Experian Marketing Services 4 min read January 24, 2023

Up next in our Ask the Expert series, Ben Rothke, Senior Information Security Manager, reviews two certifications that should be part of your information security strategy: Service Organization Control (SOC) 2 Type 2 and International Organization for Standardization (ISO) 27001. Tapad, a part of Experian, is 27001 and SOC 2 Type 2 compliant.

Two information security certifications you can trust

Seals from Good Housekeeping and Underwriters Laboratories give consumers confidence that they can trust the product that they’re buying. For IT solutions or service providers, what, or who can you turn to for that seal of approval? There are many equivalent third-party attestations you can use. But which should you trust?

  1. The International Organization for Standardization (ISO) 27001
  2. The American Institute of Certified Public Accountants (AICPA) System and Organization Controls (SOC)

International Organization for Standardization (ISO)

27001 is an international standard for information security from the ISO. ISO 27001 is globally acknowledged and sets requirements for controls, maintenance, and certification of an information security management system (ISMS). This international standard provides organizations with a framework to identify, manage and reduce risks related to the security of information

System and Organization Controls (SOC)

The SOC, as defined by the AICPA, is a set of audit reports. SOC reports, like 27001 certificates, are used by service organizations to give their customers the confidence they have adequate information security controls in place to protect the data that they handle.

SOC 2 is an assessment of controls at a service organization regarding security, availability, processing integrity, confidentiality, and privacy. The purpose of the report is to provide extensive information and assurance to a broad range of users about the controls at a service organization that are relevant to the security, availability, and processing integrity of the systems that process user data, as well as the confidentiality and privacy of the information processed by these systems.

Why ISO 27001 and SOC 2 are important

The value of these third-party attestations is two-fold:

  1. Organizations can show they have passed an independent external audit
  2. Third-party attestations save organizations the time of having to do their own audits

In addition to 27001 and SOC 2 Type 2 compliance, we are also certified with ISO 27017 and 27018, which are add-ons to 27001 that are specific to cloud computing. We take the security and privacy of our customers’ data as seriously as they do.

Every cloud service provider (CSP) has a responsibility matrix that details what security and privacy tasks they are responsible for and which ones the customer is responsible for. Any cloud customer that needs to be made aware of what their security tasks are is putting themselves at risk.

So, when you want to engage a CSP, ask them for their attestations. They worked hard for them and will be proud to share their compliance.

We’re powered by decades of setting standards in marketing services

At Experian, we’re a privacy-first business. We’re highly focused on respecting people, their data, and their privacy. We continue to show our dedication to information security by completing these security audits every year.

The constant changes to data compliance regulations can be challenging to navigate, but you don’t have to do it alone. Contact us today. We will be your guide so you can ethically and confidently reach your customers.

Contact us today

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.


About our expert

Ben Rothke headshot

Ben Rothke, Senior Information Security Manager

Ben Rothke, CISSP, CISA, is a Senior Information Security Manager at Tapad, a part of Experian. He has over 25 years of industry experience in information systems security and privacy. His areas of expertise are in risk management and mitigation, security and privacy regulatory issues, cryptography, and security policy development. Ben is the author of Computer Security – 20 Things Every Employee Should Know (McGraw-Hill), and writes security and privacy book reviews for the RSA Conference Blog and Security Management magazine.


Latest posts

Loading…
The future of retail advertising: Embracing retail media standardization

Discover how retail media standardization can streamline your marketing efforts, enhance campaign efficiency, and drive better results.

Published: Aug 20, 2024 by Experian Marketing Services

Light up your holiday advertising campaigns with Experian’s 19 new audiences

Discover Experian’s 19 new holiday shopping audiences designed for you to reach the most relevant shoppers this holiday season.

Published: Aug 15, 2024 by Lucy Simmonds, Content Marketing Specialist

An interview with Webbula’s Jordan Feivelson, Vice President of Digital Audiences

In our Ask the Expert Series, we interview leaders from our partner organizations who are helping to lead their brands to new heights in ad tech. Today’s interview is with Jordan Feivelson, VP, Digital Audiences at Webbula. Jordan is a 22-year advertising industry veteran who has worked for media properties such as WebMD and Disney. Over the past ten years, he has transitioned to the data and programmatic space, including growing the data business for Kantar Shopcom and Adstra.  What types of advertisers might benefit from utilizing Webbula audiences across various verticals? Can you provide examples of how different industries successfully leverage your data to achieve specific campaign goals?  Most advertisers can leverage Webbula’s award-winning attributes for their activation initiatives. Webbula offers approximately 3,000 syndicated segments covering categories such as Demographics, Automotive, Political, Mortgage, B2B, Hobby/Interest/Lifestyle, and Interests & Brand Preferences (brand name targeting).  Audience insights and marketing strategies  What specific types of audience segments does Webbula provide? How can advertisers leverage these segments to craft more effective, personalized marketing strategies?   Webbula has incredible depth and breadth within its verticals, giving marketers the tools to deliver targeted messaging effectively. Our Demographic, B2B, Mortgage, Automotive, and Interest and Brand Preferences segments each contain 500-1,000 segments, all built on deterministic, self-reported, and individually linked data. We ensure the best accuracy with multiple deterministic data points tied to the real world (ex., first name, last name, postal address, and email address).   Some examples of our unique syndicated audience types:  B2B: A view of the latest industry trends with detailed cuts of the professional world, such as companies with and not within the Fortune 500 companies and job positions that are directors and below. This also includes custom capabilities, including ABM (list of target companies in an activation campaign or by industry code (ex. NAICS, SIC).   Interest and Brand Preferences: Consumers who have shown interest and affinity to hundreds of brands (ex., Nike), genres (ex., comedy, hip hop), sports teams, and more.  Mortgage: A detailed view of homebuyers’ purchase range, loan type (ex. jumbo loan, standard loan), mortgage amount, interest rate, and more.   With Webbula’s audience data, brands can create a comprehensive picture of their audiences down to the individual level and reach them accurately.   Data quality, sourcing, and differentiation  How is consumer data sourced and curated at Webbula? Are there data quality standards that Webbula establishes for consumer data, and how do you ensure your sources and methods meet these standards consistently?   Webbula’s data is aggregated from over 110 trusted and authenticated sources, including publishers, data partners, social media, and more. The data collected comes directly from consumers who self-report information through surveys and other methods. We apply our hygiene filters to mitigate fraud and accurately score the data.  Data Collection: The data collected comes directly from consumers who self-report information through surveys, questionnaires, transactions, and sign-ups. This ensures that brands display ads to audiences based on self-identified, cross-channel behaviors, not modeled assumptions.  Hygiene Solutions: Webbula applies multi-method hygiene solutions to mitigate fraud and accurately score the data before onboarding, ensuring that all data meets the highest quality standards.  Examples of Data Sources:  Questionnaires: Self-reported data through surveys, offer submissions, and telemarketing.  Transactions: Deterministic data from aftermarket parts, online purchases or services, and more.  Sign-ups: Individually linked data from information entered through sweepstakes, infomercials, newsletters, and forms.  What differentiates Webbula's data from other data providers in the market? Can you explain the unique value proposition that Webbula offers in terms of data depth and breadth?   Due to our extensive experience in data cleansing, we provide the most accurate data within the programmatic ecosystem. TruthSet, the leading programmatic accuracy measurement company, has ranked Webbula as having the highest number of top attributes compared to other data providers with 150M+ HEMs. Additionally, Publicis Groupe and Neutronian further validate Webbula's data quality, underscoring its position as a leader in the industry.  Webbula's data stands out in the market due to its unmatched accuracy and quality, achieved through years of expertise in data cleansing. Unlike other providers, Webbula’s foundation lies in its robust email hygiene process, ensuring that all data entering the programmatic ecosystem is thoroughly cleansed.   Privacy, compliance, and future-proofing  What measures does Webbula take to maintain data privacy and compliance? How do these efforts benefit advertisers in an evolving regulatory landscape and ensure ethical standards?   Webbula was created over a decade ago with a future-proof, privacy-compliant foundation. We understand the industry’s rapid changes, including government and state legislation and cookie depreciation. Our goal has always been to build long-term partnerships and ensure we are prepared for industry changes. We rely on validated offline data sources, making us resilient to external influences.  Success stories  Can you share success stories where advertisers saw significant campaign improvements using Webbula’s data? What were the key factors that contributed to these successes?   Our success is measured by client feedback and increased client spend. Webbula has helped several key advertisers achieve six-figure monthly thresholds by providing the most accurate data to meet campaign KPIs. Clients consistently return to use our data, validating our belief that “the proof is in the pudding.”  Thanks for the interview. Any recommendations for our readers if they want to learn more?  For those interested in learning more about Webbula, reach out for a personalized consultation. Contact us   Latest posts

Published: Aug 13, 2024 by Experian Marketing Services

Subscribe to our newsletter

Enter your name and email for the latest updates

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

About Experian Marketing Services

At Experian Marketing Services, we use data and insights to help brands have more meaningful interactions with people. As leaders in the evolution of the advertising landscape, Experian Marketing Services can help you identify your customers and the right potential customers, uncover the most appropriate communication channels, develop messages that resonate, and measure the effectiveness of marketing activities and campaigns.

Visit our website

Subscribe to our newsletter

Stay up to date on the latest industry news and receive expert tips from our marketing experts.
Subscribe now!