Snapshot 70748
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Skip to navigationSkip to main content Engaging Networks Our mission is to empower nonprofit organizations to raise more money, win more advocacy campaigns and deepen engagement with their supporters through the use of innovative digital technology. info@engagingnetworks.net Privacy PolicyOpens in new tab Engaging Networks is a flexible, completely customizable and innovative software platform for nonprofits. The company designs its system processes and procedures to meet its objectives which are based on the service commitments it makes to user entities, the laws, and regulations that govern the provision of the services, and the financial, operational, and compliance requirements that the company has established for the services. The system services are subject to the Security, Availability, and Privacy commitments established internally for its services. Security commitments include, but are not limited to, the following: ● System features and configuration settings designed to authorize user access while restricting unauthorized users from accessing information not needed for their role ● Use of intrusion detection systems to prevent and identify potential security attacks from users outside the boundaries of the system ● Regular vulnerability scans over the system and network, and penetration tests over the production environment ● Operational procedures for managing security incidents and breaches, including notification procedures ● Use of encryption technologies to protect customer data both at rest and in transit ● Use of data retention and data disposal ● Up time availability of production systems Compliance HIPAA SOC 2 GDPR PCI DSS - SAQ D, SP and ROC Prep Resources View all SOC2 Compliance Reports SOC_2_Type_2_Engaging_Networks_2026 SOC2 Type 2 Letter of Attestation - 20250219 - Engaging Networks SOC2 Type 2 - 20250218 - Engaging Networks 20260714 Engaging Networks SOC2 Bridge Letter PCI DSS Related Documents PCI_DSS_v4-0-1_AOC_Engaging_Networks_2026 Sample ASV Scan Report Engaging Networks PCI DSS Shared Responsibility Details View 6 more Artificial Intelligence (AI) Insurance Engaging Networks - Cybersecurity 2026 Engaging Networks USA Inc. - Commercial Gen Liability Evidence Only COI HIPAA Engaging Networks Business Associate Agreement (BAA) Policy Summary Docs Engaging Networks Technical Operations Summary Access Control Policy Data Classification Policy Third Party Risk Management Policy View 6 more GDPR View 2 more Finance Engaging Networks Canadian Bank Details Certification Engaging Networks USD Bank Certification PEN Tests & DR Tests 2026-Feb EXECUTIVE SUMMARY - External Penetration Test 2026-Feb Engaging Networks PEN Test - Redacted 2025 Disaster Recovery Exercise Executive Summary Other resources Controls View all Infrastructure security Database replication utilized Production data backups conducted Unique production database authentication enforced View 8 more Infrastructure security controls Organizational security Asset disposal procedures utilized Production inventory maintained Portable media encrypted View 10 more Organizational security controls Product security Data encryption utilized Control self-assessments conducted Penetration testing performed Internal security procedures Cybersecurity insurance maintained Production multi-availability zones established Development lifecycle established View 24 more Internal security procedures controls GDPR MDM system utilized Network firewalls utilized Network segmentation implemented View 47 more GDPR controls HIPAA Business associate agreements documented Subcontractor agreements enforced Business associate contracts with vendors established View 12 more HIPAA controls Subprocessors View all Amazon Web Services • Cloud provider United States; Canada Cloud Services Application hosting Infrastructure hosting Cloudflare • Cloud monitoring Location of Data Subject through Cloudflare's Anycast Network Web infrastructure and security management eSolution • IT Canada Database administration and management Egnyte • Document management United States Cloud-based content and collaboration tools FAQ View all Updates View all Compliance Engaging Networks 2026 SOC2 Bridge Letter Published July 14, 2026 A SOC2 Bridge Letter has been uploaded to the Resources section under Compliance Reports. This letter acknowledges the continued adequacy of internal security controls for the Engaging Networks platform since the end of the previous SOC2 Type 2 audit observation window. Compliance Engaging Networks Has Achieved SOC2 Type 2 Compliance! 2026 Report Available! Published April 14, 2026 We are excited to announce that Engaging Networks has maintained SOC 2 Type II compliance in accordance with American Institute of Certified Public Accountants (AICPA) standards for SOC for Service Organizations also known as SSAE 18. This designation serves as third-party industry validation that Engaging Networks provides enterprise-level security for customers’ data secured in the Engaging Networks System. The security audit was performed by ControlCase (controlcase.com). Compliance Engaging Networks 2026 PCI DSS AOC Uploaded Published February 18, 2026 An Attestation of Compliance is completed by a Qualified Security Assessor (QSA) to declare that a business complies with the Payment Card Industry Data Security Standard (PCI DSS). Engaging Networks is proud to announce that it has implemented necessary security controls to protect cardholder data, as demonstrated by its annual recertification. Compliance Engaging Networks HIPAA Compliance Externally Validated - Certificate of Compliance Available Published December 11, 2025 We are excited to announce that Engaging Networks has achieved HIPAA compliance in accordance with the requirements of the Health Insurance Portability and Accountability Act (HIPAA) of 1996 – “Security rule” and “Breach Notification”. This designation serves as third-party industry validation that Engaging Networks provides enterprise-level security for customer’s data secured in the Engaging Networks System. The security audit was performed by ControlCase (https://www.controlcase.com/Opens in new tab), a leading provider of services and solutions that help organizations address regulations and standards such as PCI DSS, ISO27001/2, GLBA, HIPAA, CoBIT, SOC 2, etc.