SOC 2 report: Difference between revisions

From ACT Wiki
Jump to navigationJump to search
imported>Doug Williamson
(Create page. Sources: The Treasurer, Cash Management Edition April 2019 p36 & IS Partners webpage https://www.ispartnersllc.com/blog/soc-1-soc-2-reports-difference/)
 
imported>Doug Williamson
(Add link.)
Line 10: Line 10:


== See also ==
== See also ==
* [[Cloud computing]]
* [[Information security management system]]
* [[Information security management system]]
* [[Internal control]]
* [[Internal control]]

Revision as of 18:37, 19 April 2019

Information technology - standards.

SOC 2 is an abbreviation for Service Organisation Controls 2.


The SOC 2 report addresses a service organization’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy.

A SOC 2 report includes a detailed description of the service auditor’s test of controls and results.


See also