Security SOC 2 2017

SOC 2: Security Security Controls

Common Criteria (CC) — required for all SOC 2 reports. Controls covering the control environment, risk assessment, monitoring, logical and physical access, system operations, change management, and risk mitigation.

33 controls
7 critical
284h est. effort
9 categories

Control Environment

Communication and Information

Risk Assessment

Monitoring Activities

Control Activities

Logical and Physical Access

System Operations

Change Management

Risk Mitigation