The Compass:
More posts

Blog Post
What's required after my first SOC 2® report?
You’ve completed your SOC 2 report. That first-time report can be a lot of work, and it’s worth celebrating while you hang the new AICPA logo on the website. So what’s next?
READ MORE


Article
The Truth About Audits
Jemurai talks about the good, bad, and ugly they see around cybersecurity audits.
READ MORE


Blog Post
7 min read
What controls are required for SOC 2® reports?
There is nuance to this question, and other well-meaning and very smart people that I respect might give a different answer. But within the volumes of literature that set the standards, the true answer is this: There are absolutely no control requirements for SOC 2 reports.
READ MORE
