CYBERSECURITY GLOSSARY Malware and viruses CYBERSECURITY GLOSSARY Attacks and techniques CYBERSECURITY GLOSSARY Detection and response CYBERSECURITY GLOSSARY Identity and access CYBERSECURITY GLOSSARY Cloud and infrastructure CYBERSECURITY GLOSSARY Compliance and management CYBERSECURITY GLOSSARY Continuity and metrics CYBERSECURITY GLOSSARY Privacy and OSINT CYBERSECURITY GLOSSARY Cybersecurity
← Back to the glossary Cybersecurity glossary · Compliance and management

SOC 1 and SOC 2

SOC 2 is an attestation report, defined by the AICPA and issued by an independent CPA firm, that evaluates a service provider's controls against the Trust Services Criteria: security, availability, processing integrity, confidentiality and privacy. Type I reviews their design on a given date and Type II how effectively they operate over a period, typically 6 to 12 months; SOC 1, by contrast, focuses on financial reporting controls.

How TecnetOne handles it: TecnetGRC

SOC 2 Type II, SOC 1, SOC report, AICPA, Trust Services Criteria

Ready to put this into practice in your operation?

Tell us what you need and a TecnetOne engineer will get back to you.

Talk to an engineer