SOC 2 report: Difference between revisions
From ACT Wiki
Jump to navigationJump to search
imported>Doug Williamson (Create page. Sources: The Treasurer, Cash Management Edition April 2019 p36 & IS Partners webpage https://www.ispartnersllc.com/blog/soc-1-soc-2-reports-difference/) |
imported>Doug Williamson m (Correct spelling.) |
||
(One intermediate revision by the same user not shown) | |||
Line 4: | Line 4: | ||
The SOC 2 report addresses a service | The SOC 2 report addresses a service organisation’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy. | ||
A SOC 2 report includes a detailed description of the service auditor’s test of controls and results. | A SOC 2 report includes a detailed description of the service auditor’s test of controls and results. | ||
Line 10: | Line 10: | ||
== See also == | == See also == | ||
* [[Cloud computing]] | |||
* [[Information security management system]] | * [[Information security management system]] | ||
* [[Internal control]] | * [[Internal control]] |
Latest revision as of 14:20, 24 April 2019
Information technology - standards.
SOC 2 is an abbreviation for Service Organisation Controls 2.
The SOC 2 report addresses a service organisation’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy.
A SOC 2 report includes a detailed description of the service auditor’s test of controls and results.