Zobrist Software Group wins SOC 2 Type II and SOC 3 attestations for Smart Merchandiser
Zobrist Software Group said Smart Merchandiser completed SOC 2 Type II and SOC 3 examinations on Aug. 13, 2026, giving customers and partners third-party confirmation that its security controls operated effectively over time. The milestone builds on the company’s SOC 2 Type I attestation earlier this year and is aimed at easing enterprise security and procurement reviews.
Why it matters: - The new attestations give retail and apparel customers third-party evidence that Smart Merchandiser’s security controls are operating effectively, not just designed well. - Enterprise buyers often require this kind of proof before approving software that handles business-critical data. - The SOC 3 summary can be shared publicly, which may make security reviews faster for prospects and partners.
What happened: - Zobrist Software Group announced on Aug. 13, 2026, that Smart Merchandiser completed SOC 2 Type II and SOC 3 examinations. - Independent auditor Johanson LLP performed the examinations. - The review covered the period from April 9, 2026 through July 9, 2026. - The attestations are based on the AICPA Trust Services Criteria for Security. - The announcement builds on Zobrist Software Group’s SOC 2 Type I attestation from April 2026.
The details: - SOC 2 Type II evaluates both the design of security controls and whether those controls operated effectively over a defined period. - SOC 3 provides a publicly shareable summary of the same security examination. - Teresa Zobrist, president and CEO of Zobrist Software Group, said the independent attestations show the company’s controls work consistently over time. - Zobrist Software Group said enterprise customers trust Smart Merchandiser with a core part of their online business. - The company said the reports give security and procurement teams third-party assurance. - The SOC 3 report is available upon request and through the Smart Merchandiser Trust Center at Smart Merchandiser Trust Center. - The SOC 2 Type II report is available to customers and prospective customers under NDA.
Between the lines: - The company is signaling that security certification is part of its sales strategy as much as its compliance program. - A public SOC 3 report can reduce friction in vendor due diligence, especially for larger retailers and brand partners. - The timing suggests Zobrist Software Group is moving from a point-in-time security milestone to a more durable enterprise trust message.
What's next: - Zobrist Software Group is likely to use the new reports in customer diligence, procurement reviews and partner conversations. - The company’s Trust Center now serves as a distribution point for the public-facing security summary. - Smart Merchandiser’s enterprise pitch will likely lean more heavily on security verification as well as product capabilities.
The bottom line: - Zobrist Software Group now has independent security attestations that should make Smart Merchandiser easier to buy for enterprise customers.
Disclaimer: This article was produced by AGP Wire with the assistance of artificial intelligence based on original source content and has been refined to improve clarity, structure, and readability. This content is provided on an “as is” basis. While care has been taken in its preparation, it may contain inaccuracies or omissions, and readers should consult the original source and independently verify key information where appropriate. This content is for informational purposes only and does not constitute legal, financial, investment, or other professional advice.
Sign up for:
IT Press Releases
The daily local news briefing you can trust. Every day. Subscribe now.
Check Your Email!
We sent a one-time activation link to: .
Confirm it's you by clicking the email link.
If the email is not in your inbox, check spam or try again.
Welcome back!
is already signed up. Check your inbox for updates.