ServiceRocket is a tech-enabled services company headquartered in Palo Alto, California, with approximately 260 personnel including employees and contractors across seven countries. The company provides consulting, support services, and license resales primarily around the Atlassian suite of products, serving enterprise clients across Australia, the United States, and beyond.
With a global footprint and enterprise client base, ServiceRocket operates in an environment where security and data protection are commercial prerequisites. Enterprise customers regularly ask for third-party validated evidence before beginning a working relationship, and the ability to produce it quickly and credibly directly affects how deals move forward.
Today, ServiceRocket holds a SOC 2 (System and Organization Controls 2) Type II report and an ISO 27001 certification for information security management. The SOC 2 examination was conducted by Insight Assurance, and the ISO 27001 certification was issued through IA Certifications, an independently accredited certification body. The company uses Vanta as its compliance platform and maintains a dedicated GRC (governance, risk, and compliance) team responsible for keeping its compliance program current year-round.
Insight Assurance spoke with Catherine Matterson, General Counsel at ServiceRocket, who heads the legal team and shares responsibility for the company’s security certifications and data compliance program. Catherine has been with ServiceRocket for 13 years.

