SOC 2 vendors for Healthcare

Vendors that support SOC 2 (Service Organization Control 2) and explicitly serve healthcare customers. Listings verified April 24, 2026.

VendorHQFoundedSizePricingLast verified
Scrut AutomationPalo Alto, US202151-200Contact for pricingApr 24, 2026
WhyLabsSeattle, US201911-50Contact for pricingApr 24, 2026
DrataSan Francisco, US2020501-1000Contact for pricingApr 24, 2026
GiskardParis, France202111-50Contact for pricingApr 24, 2026

About SOC 2

SOC 2 is an AICPA auditing standard for service organizations, evaluating controls relevant to security, availability, processing integrity, confidentiality, and privacy. While not AI-specific, SOC 2 Type II reports are table stakes for B2B SaaS vendors — including AI governance platforms — and are frequently mapped to AI-specific risk frameworks.

Read framework guide →

About Healthcare

Hospitals, payers, and digital health companies using AI for clinical decision support, imaging, coding, prior authorization, and patient engagement. Regulated by FDA SaMD, HIPAA, and HHS Section 1557 non-discrimination rules in addition to AI-specific laws.

See all healthcare vendors →