SAP Emarsys SOC 2 Audit Report 2024 H1

SAP Emarsys eMarketing Systems GmbH (further SAP Emarsys), an SAP Company, is a global provider of marketing automation software and the first marketing cloud for retail and e-commerce. The SAP Emarsys B2C Marketing Cloud enables true, one-to-one interactions between marketers and consumers across all channels — building loyalty, enriching the customer journey and increasing revenues. Machine learning and data science fuels customer intelligence in an intuitive, cloud-based platform enabling companies to scale marketing decisions and actions far beyond human capabilities.

Data Center

Ownership

Vienna, Austria

 Co-Location Provider

Ashburn, VA

Co-Location Provider

Philadelphia, PA

Co-Location Provider

Dublin

Google (GCP)

Brussels

Google (GCP)

Frankfurt

Google (GCP)

USA Northern Virginia

Amazon (AWS)

Dublin

Amazon (AWS)

Frankfurt

Amazon (AWS)

Singapore

Amazon (AWS)

SOC 2 reports are prepared in accordance with AT-C Section 205 and the International Standard on Assurance Engagements No. 3000. SOC 2 reports fulfill various information and assurance needs of customers and aim to place trust in SAP’s service organization systems, processes, and controls.  These reports are intended to meet the needs of a broad range of users that need detailed information and assurance about the controls at a service organization relevant to Security, Availability, and Processing Integrity of the systems that are used to process users’ data and the Confidentiality and Privacy of the information processed by these systems (AICPA, Trust Services Criteria).  Additionally, they can play an important role in the oversight of the organization, vendor management programs, and regulatory oversight.  Please note that this examination's scope does not include the controls of any subservice organizations.  SOC 2 Type 1 covers management’s description of a service organization’s system and the suitability of the design of controls at a specific point in time, whereas a SOC 2 Type 2 also includes the operating effectiveness of controls for a dedicated period of time.

 

SAP Emarsys has prepared SOC 2 Type 2 audit report by an independent 3rd party accountant. This version of the report covers as of the audit period 1. April 2023 to 31. March 2024, and the trust principles Security, Availability, Processing Integrity, and Confidentiality.

 

The use of these reports is restricted. A copy of this report is available for all SAP customers and prospects with a non-disclosure agreement in place.

SAP Emarsys eMarketing Systems GmbH (further SAP Emarsys), an SAP Company, is a global provider of marketing automation software and the first marketing cloud for retail and e-commerce. The SAP Emarsys B2C Marketing Cloud enables true, one-to-one interactions between marketers and consumers across all channels — building loyalty, enriching the customer journey and increasing revenues. Machine learning and data science fuels customer intelligence in an intuitive, cloud-based platform enabling companies to scale marketing decisions and actions far beyond human capabilities.

Data Center

Ownership

Vienna, Austria

 Co-Location Provider

Ashburn, VA

Co-Location Provider

Philadelphia, PA

Co-Location Provider

Dublin

Google (GCP)

Brussels

Google (GCP)

Frankfurt

Google (GCP)

USA Northern Virginia

Amazon (AWS)

Dublin

Amazon (AWS)

Frankfurt

Amazon (AWS)

Singapore

Amazon (AWS)

SOC 2 reports are prepared in accordance with AT-C Section 205 and the International Standard on Assurance Engagements No. 3000. SOC 2 reports fulfill various information and assurance needs of customers and aim to place trust in SAP’s service organization systems, processes, and controls.  These reports are intended to meet the needs of a broad range of users that need detailed information and assurance about the controls at a service organization relevant to Security, Availability, and Processing Integrity of the systems that are used to process users’ data and the Confidentiality and Privacy of the information processed by these systems (AICPA, Trust Services Criteria).  Additionally, they can play an important role in the oversight of the organization, vendor management programs, and regulatory oversight.  Please note that this examination's scope does not include the controls of any subservice organizations.  SOC 2 Type 1 covers management’s description of a service organization’s system and the suitability of the design of controls at a specific point in time, whereas a SOC 2 Type 2 also includes the operating effectiveness of controls for a dedicated period of time.

 

SAP Emarsys has prepared SOC 2 Type 2 audit report by an independent 3rd party accountant. This version of the report covers as of the audit period 1. April 2023 to 31. March 2024, and the trust principles Security, Availability, Processing Integrity, and Confidentiality.

 

The use of these reports is restricted. A copy of this report is available for all SAP customers and prospects with a non-disclosure agreement in place.