{"@context":"https://certreports.com/llms.txt","vendor":{"slug":"icims","name":"iCIMS","domain":"icims.com","category":"Recruiting","one_liner":"The iCIMS Talent Cloud is a cloud-based talent acquisition platform that helps organizations to attract, engage, and hire the best","trust_center_url":"https://trust.icims.com/","security_page_url":null,"url":"https://certreports.com/vendors/icims/security","last_verified_at":"2026-09-18T00:00:00.000Z","claimed":false,"verified_profile":false},"attestations":[{"framework":"hipaa","framework_name":"HIPAA","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states that it will sign a business associate agreement on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor displays a HIPAA badge on its trust centre (claim; BAA availability not yet captured)","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/hipaa","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"HIPAA","confidence":1}]},{"framework":"soc-2","framework_name":"SOC 2","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a SOC 2 Type II report on its trust centre (Drata) as of 18 Sep 2026.","kind":"type2","status_text":"Vendor states SOC 2 Type 2 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/soc-2","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"SOC 2 Type 2","confidence":1}]},{"framework":"gdpr","framework_name":"GDPR","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a data processing agreement on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states GDPR on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/gdpr","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"GDPR","confidence":1}]},{"framework":"iso-27001","framework_name":"ISO/IEC 27001","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO/IEC 27001 certificate on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states ISO/IEC 27001 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/iso-27001","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"ISO/IEC 27001","confidence":1}]},{"framework":"csa-star","framework_name":"CSA STAR","state":"verified_registry","state_label":"Verified","sentence":"Listed in the CSA STAR registry as of 17 Sep 2026.","kind":"self_assessment","status_text":"STAR Level 1 self-assessment (CAIQ)","issued_at":"2023-05-05","expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"csa_star","url":"https://certreports.com/vendors/icims/csa-star","evidence":[{"source_type":"registry","source_name":"CSA STAR registry","url":"https://cloudsecurityalliance.org/star/registry/icims-inc","fetched_at":"2026-09-17 15:44:42.254747+00","content_hash":"e7f124247f5399c92ba048620a83c0b6cca1f9a2f97419f32566e462a3b1bda7","wayback_url":null,"quote":"icims, inc: STAR Level 1 self-assessment (CAIQ)","confidence":1}]},{"framework":"iso-27701","framework_name":"ISO/IEC 27701","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an ISO/IEC 27701 certificate on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states ISO/IEC 27701 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/iso-27701","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"ISO/IEC 27701","confidence":1}]},{"framework":"soc-1","framework_name":"SOC 1","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a SOC 1 Type II report on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states SOC 1 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/security","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"SOC 1","confidence":1}]},{"framework":"soc-3","framework_name":"SOC 3","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states a public SOC 3 report on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states SOC 3 on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/security","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"SOC 3","confidence":1}]},{"framework":"dpf","framework_name":"EU-US Data Privacy Framework","state":"verified_registry","state_label":"Verified","sentence":"Listed in the Data Privacy Framework list as of 17 Sep 2026.","kind":"listing","status_text":"Active: EU-US Certification, SW-US Certification, UK Extension Certification","issued_at":"2016-11-28","expires_at":"2027-05-28","period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-17","under_review":false,"source":"dpf","url":"https://certreports.com/vendors/icims/security","evidence":[{"source_type":"registry","source_name":"Data Privacy Framework list","url":"https://www.dataprivacyframework.gov/participant/5347","fetched_at":"2026-09-17 15:48:56.61583+00","content_hash":"ef1ea12f1a863bdbd121e06433f7557269b90eac4b58fcace1b0dedf478ce43a","wayback_url":null,"quote":"iCIMS, Inc.: Active: EU-US Certification, SW-US Certification, UK Extension Certification","confidence":1}]},{"framework":"ccpa","framework_name":"CCPA / CPRA","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an CCPA / CPRA privacy notice on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states CCPA on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/security","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"CCPA","confidence":1}]},{"framework":"txramp","framework_name":"TX-RAMP","state":"vendor_stated","state_label":"Vendor-stated","sentence":"Vendor states an TX-RAMP certification on its trust centre (Drata) as of 18 Sep 2026.","kind":null,"status_text":"Vendor states TX-RAMP on its trust centre","issued_at":null,"expires_at":null,"period_start":null,"period_end":null,"auditor":null,"impact_level":null,"as_of":"2026-09-18","under_review":false,"source":"drata","url":"https://certreports.com/vendors/icims/security","evidence":[{"source_type":"trust_center","source_name":"iCIMS trust centre (Drata)","url":"https://trust.icims.com/","fetched_at":"2026-09-18 22:42:06.995791+00","content_hash":"cc7fb464e9ca7dc9363feae1823fe34ab7f49b5a722e09fe20bf679214597051","wayback_url":null,"quote":"TX-RAMP","confidence":1}]}],"brief":{"summary":"As of 17 Sep 2026, iCIMS is listed in the CSA STAR registry with a STAR Level 1 self-assessment (CAIQ) issued 05 May 2023. As of 17 Sep 2026, iCIMS is listed in the EU-US Data Privacy Framework registry as Active, covering EU-US Certification, SW-US Certification, and UK Extension Certification, issued 28 Nov 2016 and expiring 28 May 2027. No public evidence found for SOC 2 as of 17 Sep 2026. No public evidence found for HIPAA or a stated BAA as of 17 Sep 2026. No public evidence found for ISO 27001 as of 17 Sep 2026.","bullets":["CSA STAR: listed in registry, Level 1 self-assessment (CAIQ), issued 05 May 2023 (as of 17 Sep 2026)","EU-US Data Privacy Framework: listed in registry as Active (EU-US, SW-US, UK Extension), issued 28 Nov 2016, expires 28 May 2027 (as of 17 Sep 2026)","SOC 2, HIPAA/BAA, and ISO 27001: no public evidence found (as of 17 Sep 2026)"],"model":"claude-sonnet-5","generated_at":"2026-09-17 18:49:46.718282+00"},"legal_docs":[],"subprocessors":[],"disclaimer":"CertReports indexes public evidence. A missing framework means no public evidence was found at the last check, not that the vendor is non-compliant. SOC 2 is a report, not a certification; HIPAA has no certification.","generated_at":"2026-09-19T02:21:59.097Z"}