Additional Business Terms for Reviews and Audits. a. Customer must contact Google’s Cloud Data Protection Team to request: i. access to the SOC Reports for a relevant controller under Section 7.5.1 (Reviews of Security Documentation); or ii. an audit under Section 7.5.2(a) (Customer Audit). b. Following a Customer request under Section 7.5.3(a), Google and Customer will discuss and agree in advance on: i. security and confidentiality controls applicable to any access to the SOC Reports by a relevant controller under Section 7.5.1 (Reviews of Security Documentation); and ii. the reasonable start date, scope and duration of and security and confidentiality controls applicable to any audit under Section 7.5.2(a) (Customer Audit). c. Google may charge a fee (based on Google’s reasonable costs) for any audit under Section 7.5.2(a) (Customer Audit). Google will provide Customer with further details of any applicable fee, and the basis of its calculation, in advance of any such audit. Customer will be responsible for any fees charged by any auditor appointed by Customer to execute any such audit. d. Google may object in writing to an auditor appointed by Customer to conduct any audit under Section 7.5.2(a) (Customer Audit) if the auditor is, in Google’s reasonable opinion, not suitably qualified or independent, a competitor of Google, or otherwise manifestly unsuitable. Any such objection by Google will require Customer to appoint another auditor or conduct the audit itself. e. Any Customer requests under Appendix 3 (Specific Privacy Laws) or Appendix 4 (Specific Products) for access to any SOC reports for a relevant controller or for audits will also be subject to this Section 7.5.3 (Additional Business Terms for Reviews and Audits).
Appears in 2 contracts
Sources: Google Workspace for Education Terms of Service, Google Cloud Platform Terms of Service for G Cloud 14
Additional Business Terms for Reviews and Audits. a. Customer must contact Google’s Cloud Data Protection Team to request:
i. access to the SOC Reports for a relevant controller under Section 7.5.1 (Reviews of Security Documentation); or
ii. an audit under Section 7.5.2(a) (Customer Audit).
b. Following a Customer request under Section 7.5.3(a), Google and Customer will discuss and agree in advance on:
i. security and confidentiality controls applicable to any access to the SOC Reports by a relevant controller under Section 7.5.1 (Reviews of Security Documentation); and
ii. the reasonable start date, scope and duration of and security and confidentiality controls applicable to any audit under Section 7.5.2(a) (Customer Audit).
c. Google may charge a fee (based on Google’s reasonable costs) for any audit under Section 7.5.2(a) (Customer Audit). Google will provide Customer with further details of any applicable fee, and the basis of its calculation, in advance of any such audit. Customer will be responsible for any fees charged by any auditor appointed by Customer to execute any such audit.
d. Google may object in writing to an auditor appointed by Customer to conduct any audit under Section 7.5.2(a) (Customer Audit) if the auditor is, in Google’s reasonable opinion, not suitably qualified or independent, a competitor of Google, or otherwise manifestly unsuitable. Any such objection by Google will require Customer to appoint another auditor or conduct the audit itself.
e. Any Customer requests under Appendix 3 (Specific Privacy Laws) or Appendix 4 (Specific Products) for access to any SOC reports for a relevant controller or for audits will also be subject to this Section 7.5.3 (Additional Business Terms for Reviews and Audits).Section
Appears in 1 contract
Sources: Master Agreement