Introduction
SOC 2 compliance
()
1. SOC 2 Overview
Key SOC 2 terms to know
()
Why do companies pursue SOC 2?
()
How are SOC 2 reports distributed?
()
2. SOC Report Types
Basics of SOC 2 Type 1
()
Understanding SOC 2 Type 2
()
SOC 2+ reports and use cases
()
SOC 3 101 and use cases
()
3. Sections of a SOC 2 Report
Section I: Independent service auditor's report
()
Section II: Management's assertion
()
Section III: System description
()
Section IV: Trust Services Criteria and controls
()
Section V: Information not covered in auditor's report
()
4. Trust Services Criteria (TSC)
SOC 2: Trust Services Criteria (TSC) scoping
()
The security TSC
()
The availability TSC
()
The confidentiality TSC
()
The processing integrity TSC
()
The privacy TSC
()
5. Preparing for a SOC 2
Choosing an auditor
()
Preparing for the audit
()
Conducting the audit
()
6. Automating SOC 2 Controls
Easy automation wins for SOC 2
()
Cloud automation for SOC 2
()
Leveraging AI to automate SOC 2
()