Browse / SaaS / Objection
SaaS Sales Objection

We require SOC 2 Type II before signing any new vendor — you don't have that certification.

3 responses
anchor
Thanks

"We're working toward SOC 2 Type II — I'll send you our current security documentation, the audit timeline, and our existing controls framework. Many companies in your situation use that package to initiate an exception process."

probe
Thanks

"What's the SOC 2 requirement based on — procurement policy, a specific risk framework, a customer contract requirement? The source might tell us whether an exception or alternative documentation is viable."

reframe
Thanks

"SOC 2 is a maturity signal, not a minimum bar. We have completed a third-party security assessment, GDPR compliance, and a detailed control inventory — I'll share the full package. Does your security team accept alternative attestations?"