Security assessment Flashcards
1
Q
SOC goal ?
A
Service Organization Control
Internal audit
SOC1: financial control
SOC2: security control and confidentiality
SOC3: simplified version of SOC2 + public version
2
Q
SOC types ?
A
Financial control
Type 1: at a moment, once
Type 2: during a period as 6month or 1 year
3
Q
SOC 2 types ?
A
Compliance and operations
Security, availability processing integrity, confidentiality and privacy
Type 1: single point of time, once
Type 2: > 6 months