How Trolley Supports Your Compliance Efforts, Including Sarbanes-Oxley Act Related Needs

A Guide for U.S. Customers at Publicly Traded Companies

At Trolley, we understand the importance of robust compliance measures for our publicly traded customers in the United States. While the Sarbanes-Oxley Act (SOX) applies exclusively to public companies, Trolley has implemented industry-standard controls through our SOC 2® Type 2 compliance to help you meet your regulatory and financial reporting needs with confidence.

Often, Trolley receives questions from our publicly traded customers in the United States about whether our services are compliant with the Sarbanes-Oxley Act (SOX). This is an important question because SOX applies to U.S. public companies to ensure accurate financial reporting and establish Internal Controls over Financial Reporting (ICFR)

As Trolley is not publicly traded, we are not subject to SOX requirements. However, as a service provider to publicly-traded companies, we recognize the importance of supporting your SOX compliance efforts. 

Many organizations rely upon third-party vendors and SaaS providers for key processes that can impact their ICFR, and the most efficient way to gain assurance of the vendor’s controls is by obtaining a Service Organization Controls (SOC) report. While not a substitute for SOX compliance, Trolley’s SOC 2® Type 2 certification demonstrates our commitment to secure reliable services aligned with industry standards and certain SOX requirements.

Our SOC 2® Type 2 audit includes controls that align with certain SOX requirements, particularly in areas such as IT general controls (ITGCs), such as access controls and data integrity checks, that support the integrity of financial systems. We are committed to providing the necessary assurance regarding the reliability and security of our services to facilitate your compliance with SOX.

Understanding SOX Compliance

The Sarbanes-Oxley Act was enacted in 2002 to improve corporate accountability in response to major financial scandals. SOX compliance focuses on ensuring that public companies:

  • Maintain accurate financial reporting 
  • Implement strong internal controls over financial reporting (ICFR).
  • Document and test financial processes.

Public companies in the U.S. are required to demonstrate SOX compliance as part of their annual audits, including documenting and testing controls over financial processes.  

Is Trolley SOX Compliant?

As a private company, we are not subject to SOX compliance directly because the Sarbanes-Oxley Act applies to public companies, not their third-party vendors. 

However, we collaborate closely with our customers to ensure our SOC 2® Type 2 controls are aligned with their SOX-related requirements. 

How Trolley’s SOC 2® Type 2 Compliance Aligns with SOX?

While SOC 2® Type 2 compliance aligns with many control principles relevant to SOX (e.g., security and access controls), it is not specifically designed to address financial reporting controls, which are central to SOX.  

Having said that, SOC 2® Type 2 is a rigorous standard focusing on the design and operating effectiveness of internal controls around security, availability, confidentiality, processing integrity, and privacy. It provides assurance that we have established and consistently maintain best practices for protecting sensitive data and delivering our services reliably.

Additional Security and Financial Controls Trolley Provides

In addition to the internal controls audited under our SOC 2® Type 2 report, Trolley offers tools to help customers manage and secure your Trolley account to the levels needed to align with SOX.

Standard security features include the ability to:

  • Enforce MFA across your account.
  • Implement multi-layer approval workflows and role-based permissions.
  • Configure security notifications and allow listing at the  IP and domain levels.
  • Generate comprehensive logs and reports. 

Trolley also provides detailed, itemized ledgering on your account statements, showing all debits and credits to your Trolley balance. We include a breakdown of fees for each payment, as well as any taxes withheld. This ensures transparent financial reporting on corporate funds held in your Trolley balances. 

For customers who need integration with their existing accounting processes, you can export the statements from Trolley in multiple formats (CSV, PDF, OFX) as well as directly sync this data with major accounting ERP systems. 

What This Means for You & Your Business

If your organization uses our services as part of your financial processes, it is your responsibility to evaluate how our controls support your internal SOX compliance framework.

Our SOC 2® Type 2 report provides detailed insights into our controls, offering transparency and confidence in our ability to safeguard your data and support regulatory obligations, and the controls Trolley provides by default support you in demonstrating alignment with SOX.  

How Trolley Supports Your Compliance Needs

We understand the importance of compliance and are committed to providing secure, reliable services that help our customers achieve their needs, and meet regulatory requirements.  

If you have questions about our SOC 2® Type 2 controls, contact our support team for more information


The information provided in this article is for informational purposes only and should not be considered legal, financial, or compliance advice. The content is not intended to substitute for professional advice tailored to your specific situation. Compliance with regulatory requirements, including the Sarbanes-Oxley Act (SOX), is the responsibility of your organization, and we recommend consulting with your legal, financial, or compliance advisors to ensure your internal controls and processes meet applicable standards. Trolley’s services and certifications, including SOC 2® Type 2 compliance, are designed to support your organization’s compliance efforts but do not constitute SOX compliance or certification. For questions specific to Trolley’s controls and how they align with your compliance needs, please contact our support team.

Share this article:

Join The Payouts Pulse newsletter

Sign up to have vital insights, industry news, and all things payouts delivered to your inbox monthly.

More to explore

Trolley’s 2024 in Review: Expanding Capabilities, Celebrating Milestones, and Planning What’s Next

Trolley’s 2024 in Review: Expanding Capabilities, Celebrating Milestones, and Planning What’s Next

We’re taking a look back on what we’ve built together, and how we’re planning to to streamline your payouts and related workflows in 2025.
[IRS Update] 1099-K Reporting Thresholds for 2024 and Beyond: What You Need to Know

[IRS Update] 1099-K Reporting Thresholds for 2024 and Beyond: What You Need to Know

Stay compliant with the IRS’s phased 1099-K reporting thresholds for 2024-2026.
How Trolley Supports Your Compliance Efforts, Including Sarbanes-Oxley Act Related Needs

How Trolley Supports Your Compliance Efforts, Including Sarbanes-Oxley Act Related Needs

Discover how Trolley supports your regulatory and financial reporting needs with industry-standard controls and compliance measures.
Driving Growth: 8 Testimonials of Transformation via the Trolley Platform

Driving Growth: 8 Testimonials of Transformation via the Trolley Platform

See how our customers have enhanced efficiency and navigated global growth with Trolley. Learn from their success stories and find out how Trolley can transform your payout processes.
[Press Release] Trolley Secures $23 Million USD Series B to Accelerate Global Payout Platform Expansion

[Press Release] Trolley Secures $23 Million USD Series B to Accelerate Global Payout Platform Expansion

Trolley, a leading global payouts platform, today announced it has raised $23 million USD in a Series B growth equity funding round led by Wavecrest Growth Partners, with participation from…
Series B: Trolley to Invest in Faster Payments, Enhanced Compliance, & Improved UX

Series B: Trolley to Invest in Faster Payments, Enhanced Compliance, & Improved UX

This investment accelerates Trolley's mission to deliver effortless, compliant, and secure payout solutions, focusing on faster payments, robust compliance, and automation. Explore how Trolley is redefining payouts to empower businesses…

Ready to get started?

To learn more about Trolley, schedule a demo with one of our team members or start a chat with a product expert by selecting the box on the bottom of your screen.

See Trolley in Action!
Jump into our 5 minute product tour to see how we can simplify your payout workflows.
Unlock the tour