Cresset achieves SOC 2 Type 1 compliance for secure scientific data management
SOC 2 compliance strengthens Cresset’s data security, integrity, and trust for pharmaceutical, biotechnology, and agrochemical research
12 Jun 2024Editorial article

Cresset has successfully achieved SOC 2 Type 1 compliance, reinforcing its commitment to secure scientific data management for the pharmaceutical, biotechnology, and agrochemical industries.
SOC 2 (System and Organization Controls 2) is an internationally recognised information security standard developed by the American Institute of Certified Public Accountants (AICPA). It evaluates how organisations manage customer data across five trust principles: security, availability, processing integrity, confidentiality, and privacy.
As demand grows for reliable lab informatics platforms and secure data infrastructure, SOC 2 compliance provides assurance that companies like Cresset maintain robust controls to protect sensitive research data. Cresset’s computational chemistry portfolio, including its Flare™ drug design platform, supports secure and data-driven workflows across pharmaceutical and biotechnology research.
Researchers using Flare™ FEP for structure-based optimisation benefit from advanced modelling and decision-making tools, while broader lab informatics solutions enable organisations to maintain data integrity across complex R&D environments.
SOC 2 compliance strengthens scientific data security
Achieving SOC 2 Type 1 compliance demonstrates that Cresset has implemented audited controls to safeguard customer data. These controls validate that systems and processes are designed to meet strict security standards at a specific point in time.
This milestone is particularly important for organisations operating in regulated environments, where data security, compliance, and traceability are essential to research and development.
Collaboration with Kontain enables compliance success
Cresset worked with Kontain, a specialist security advisory organisation, to achieve certification. Kontain supported the full process, from initial assessment through to implementation of the required security controls.
This collaboration ensured that Cresset met all SOC 2 requirements while strengthening its overall information security framework.
Supporting secure innovation in computational chemistry
By achieving SOC 2 Type 1 compliance, Cresset continues to demonstrate its commitment to protecting customer data and supporting secure innovation in computational chemistry and scientific software development.
“Achieving SOC 2 Type 1 compliance is a powerful endorsement of the strength, resilience, and effectiveness of our IT infrastructure and security processes, which have been thoroughly audited and validated by independent experts,” said Iain Ronayne, Head of IT at Cresset.
Want the latest lab informatics and data security news straight to your inbox?
Become a SelectScience member for free today>>
Frequently asked questions
What is SOC 2 Type 1 compliance?
SOC 2 Type 1 compliance is an information security certification that evaluates whether an organisation’s systems and controls meet strict standards for protecting customer data at a specific point in time.
Why is SOC 2 compliance important for lab informatics?
SOC 2 compliance ensures that lab informatics platforms handle sensitive scientific data securely, supporting data integrity, regulatory compliance, and user trust.
What does Cresset do?
Cresset develops computational chemistry and molecular modelling software used in pharmaceutical, biotechnology, and agrochemical research.
What is the difference between SOC 2 Type 1 and Type 2?
SOC 2 Type 1 assesses the design of security controls at a specific time, while Type 2 evaluates how effectively those controls operate over an extended period.