CYBERSECURE: SOC 2 TYPE II ATTESTATION

FBMJ has successfully completed a SOC 2 Type II examination, an important milestone in our ongoing commitment to protecting the sensitive information our clients entrust to us.

An independent auditor evaluated the design and operating effectiveness of our security controls over a defined period. This examination helps demonstrate that FBMJ maintains processes and safeguards designed to protect confidential information and support secure, reliable service.

Whether you are managing a hospital claim, navigating an insurance matter, preparing a Will or Trust, or working with us on another legal matter, you can remain focused on your needs knowing that information security is a priority at FBMJ.

Q&A SOC 2 Type II Attestation

SOC 2 stands for System and Organization Controls 2. It is a widely recognized framework developed for evaluating how organizations manage and protect sensitive information. A SOC 2 Type II examination assesses not only whether appropriate controls have been designed, but also whether those controls operated effectively throughout a specified review period.

Legal matters often involve highly sensitive personal and confidential information. Our SOC 2 Type II attestation provides independent assurance that FBMJ has established controls designed to safeguard that information. For our clients, this means:

— Security and privacy are built into our processes.

— Access to sensitive information is carefully managed.

— Our systems and procedures are regularly reviewed.

— We remain committed to identifying and addressing security risks.

— Our controls are evaluated by an independent auditor.

Depending on the services we provide, the information entrusted to FBMJ may include:

— Personal and contact information

— Medical records and hospital claim information

— Financial and insurance information

— Video and digital records

— Estate-planning information

— Legal documents and case-related materials

— Other private or confidential information
Our security controls are designed to help protect this information from unauthorized access, misuse, loss, and other security threats.

Our SOC 2 Type II attestation supports our ability to provide services that are secure, reliable, and efficient. Although much of our security work takes place behind the scenes, it influences how we manage information, control access, assess risks, maintain our systems, and respond to potential security concerns. The result is a more secure environment for the information involved in your legal matter.
No organization or security system can eliminate every possible risk. SOC 2 does not guarantee that a security incident will never occur. It does, however, provide independent assurance that FBMJ has implemented and maintained controls designed to reduce risk, protect sensitive information, and support an effective response to security threats.
SOC 2 is not a one-time project. FBMJ undergoes a recurring examination to evaluate whether our controls continue to meet the applicable standards. This ongoing review helps us maintain and continually improve the safeguards designed to protect client information.
Completing a SOC 2 Type II examination is an important achievement, but our commitment does not end with the report. FBMJ will continue to evaluate our systems, strengthen our practices, and invest in the security and privacy of the information our clients entrust to us. For questions about our SOC 2 Type II attestation or our information-security practices, please contact FBMJ.