SOC 2 report: Difference between revisions

From ACT Wiki
Jump to navigationJump to search
imported>Doug Williamson
(Create page. Sources: The Treasurer, Cash Management Edition April 2019 p36 & IS Partners webpage https://www.ispartnersllc.com/blog/soc-1-soc-2-reports-difference/)
 
imported>Doug Williamson
m (Correct spelling.)
 
(One intermediate revision by the same user not shown)
Line 4: Line 4:




The SOC 2 report addresses a service organization’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy.  
The SOC 2 report addresses a service organisation’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy.  


A SOC 2 report includes a detailed description of the service auditor’s test of controls and results.
A SOC 2 report includes a detailed description of the service auditor’s test of controls and results.
Line 10: Line 10:


== See also ==
== See also ==
* [[Cloud computing]]
* [[Information security management system]]
* [[Information security management system]]
* [[Internal control]]
* [[Internal control]]

Latest revision as of 14:20, 24 April 2019

Information technology - standards.

SOC 2 is an abbreviation for Service Organisation Controls 2.


The SOC 2 report addresses a service organisation’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy.

A SOC 2 report includes a detailed description of the service auditor’s test of controls and results.


See also