Third Party Index

Snapshot 70748

Document
Trust center
URL
https://trust.engagingnetworks.net/
Fetched
HTTP status
200
Content type
text/html
Fetch mode
browser
Size
142249 bytes
SHA-256 (raw)
5ccfd44c6a84cd43cedd30e39faa61d06f58d287722e8f93a4f7f48fb4bd6462
SHA-256 (normalized text)
970a0575b0d9aeda4b361de189864a6a4467e868902d90e67f1ac2834f34d7b5

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Skip to navigationSkip to main content
Engaging Networks
Our mission is to empower nonprofit organizations to raise more money, win more advocacy campaigns and deepen engagement with their supporters through the use of innovative digital technology.
info@engagingnetworks.net
Privacy PolicyOpens in new tab
Engaging Networks is a flexible, completely customizable and innovative software platform for nonprofits.
The company designs its system processes and procedures to meet its objectives which are based on the service commitments it makes to user entities, the laws, and regulations that govern the provision of the services, and the financial, operational, and compliance requirements that the company has established for the services. The system services are subject to the Security, Availability, and Privacy commitments established internally for its services.
Security commitments include, but are not limited to, the following:
● System features and configuration settings designed to authorize user access while restricting unauthorized users from accessing information not needed for their role
● Use of intrusion detection systems to prevent and identify potential security attacks from users outside the boundaries of the system
● Regular vulnerability scans over the system and network, and penetration tests over the production environment
● Operational procedures for managing security incidents and breaches, including notification procedures
● Use of encryption technologies to protect customer data both at rest and in transit
● Use of data retention and data disposal
● Up time availability of production systems
Compliance
HIPAA
SOC 2
GDPR
PCI DSS - SAQ D, SP and ROC Prep
Resources
View all
SOC2 Compliance Reports
SOC_2_Type_2_Engaging_Networks_2026
SOC2 Type 2 Letter of Attestation - 20250219 - Engaging Networks
SOC2 Type 2 - 20250218 - Engaging Networks
20260714 Engaging Networks SOC2 Bridge Letter
PCI DSS Related Documents
PCI_DSS_v4-0-1_AOC_Engaging_Networks_2026
Sample ASV Scan Report
Engaging Networks PCI DSS Shared Responsibility Details
View 6 more
Artificial Intelligence (AI)
Insurance
Engaging Networks - Cybersecurity 2026
Engaging Networks USA Inc. - Commercial Gen Liability Evidence Only COI
HIPAA
Engaging Networks Business Associate Agreement (BAA)
Policy Summary Docs
Engaging Networks Technical Operations Summary
Access Control Policy
Data Classification Policy
Third Party Risk Management Policy
View 6 more
GDPR
View 2 more
Finance
Engaging Networks Canadian Bank Details Certification
Engaging Networks USD Bank Certification
PEN Tests & DR Tests
2026-Feb EXECUTIVE SUMMARY - External Penetration Test
2026-Feb Engaging Networks PEN Test - Redacted
2025 Disaster Recovery Exercise Executive Summary
Other resources
Controls
View all
Infrastructure security
Database replication utilized
Production data backups conducted
Unique production database authentication enforced
View 8 more Infrastructure security controls
Organizational security
Asset disposal procedures utilized
Production inventory maintained
Portable media encrypted
View 10 more Organizational security controls
Product security
Data encryption utilized
Control self-assessments conducted
Penetration testing performed
Internal security procedures
Cybersecurity insurance maintained
Production multi-availability zones established
Development lifecycle established
View 24 more Internal security procedures controls
GDPR
MDM system utilized
Network firewalls utilized
Network segmentation implemented
View 47 more GDPR controls
HIPAA
Business associate agreements documented
Subcontractor agreements enforced
Business associate contracts with vendors established
View 12 more HIPAA controls
Subprocessors
View all
Amazon Web Services • Cloud provider
United States; Canada
Cloud Services Application hosting Infrastructure hosting
Cloudflare • Cloud monitoring
Location of Data Subject through Cloudflare's Anycast Network
Web infrastructure and security management
eSolution • IT
Canada
Database administration and management
Egnyte • Document management
United States
Cloud-based content and collaboration tools
FAQ
View all
Updates
View all
Compliance
Engaging Networks 2026 SOC2 Bridge Letter
Published July 14, 2026
A SOC2 Bridge Letter has been uploaded to the Resources section under Compliance Reports. This letter acknowledges the continued adequacy of internal security controls for the Engaging Networks platform since the end of the previous SOC2 Type 2 audit observation window.
Compliance
Engaging Networks Has Achieved SOC2 Type 2 Compliance! 2026 Report Available!
Published April 14, 2026
We are excited to announce that Engaging Networks has maintained SOC 2 Type II compliance in accordance with American Institute of Certified Public Accountants (AICPA) standards for SOC for Service Organizations also known as SSAE 18. This designation serves as third-party industry validation that Engaging Networks provides enterprise-level security for customers’ data secured in the Engaging Networks System.
The security audit was performed by ControlCase (controlcase.com).
Compliance
Engaging Networks 2026 PCI DSS AOC Uploaded
Published February 18, 2026
An Attestation of Compliance is completed by a Qualified Security Assessor (QSA) to declare that a business complies with the Payment Card Industry Data Security Standard (PCI DSS). Engaging Networks is proud to announce that it has implemented necessary security controls to protect cardholder data, as demonstrated by its annual recertification.
Compliance
Engaging Networks HIPAA Compliance Externally Validated - Certificate of Compliance Available
Published December 11, 2025
We are excited to announce that Engaging Networks has achieved HIPAA compliance in accordance with the requirements of the Health Insurance Portability and Accountability Act (HIPAA) of 1996 – “Security rule” and “Breach Notification”. This designation serves as third-party industry validation that Engaging Networks provides enterprise-level security for customer’s data secured in the Engaging Networks System.
The security audit was performed by ControlCase (https://www.controlcase.com/Opens in new tab), a leading provider of services and solutions that help organizations address regulations and standards such as PCI DSS, ISO27001/2, GLBA, HIPAA, CoBIT, SOC 2, etc.