SOC 2 report: Difference between revisions
From ACT Wiki
Jump to navigationJump to search
imported>Doug Williamson (Create page. Sources: The Treasurer, Cash Management Edition April 2019 p36 & IS Partners webpage https://www.ispartnersllc.com/blog/soc-1-soc-2-reports-difference/) |
imported>Doug Williamson (Add link.) |
||
Line 10: | Line 10: | ||
== See also == | == See also == | ||
* [[Cloud computing]] | |||
* [[Information security management system]] | * [[Information security management system]] | ||
* [[Internal control]] | * [[Internal control]] |
Revision as of 18:37, 19 April 2019
Information technology - standards.
SOC 2 is an abbreviation for Service Organisation Controls 2.
The SOC 2 report addresses a service organization’s controls that relate to operations and compliance, in respect of availability, security, processing integrity, confidentiality and privacy.
A SOC 2 report includes a detailed description of the service auditor’s test of controls and results.