About SOC Reporting
SOC abbreviates for System and Organization Controls (as mandated by SSAE18). An SOC Report is a verifiable auditing report and a compendium of safeguards built within the control base of the data in an organization and is also a check if those safeguards work or not.
If you are an organization which is regulated by the law, then you must be asking your suppliers/vendors to provide a SOC report, as it becomes more critical for those suppliers which you consider to be dealing with the high-risk operations of your business.
Compliance Standards mandating SOC Reports during the years:
1: SAS 70 (superseded by SSAE 16)
2: SSAE 16 (superseded by SSAE 18)
3: SSAE 18 (currently in place)