1. Assessment Phase

  • SOC2 Assessment Execution
30 Credits

SOC2 Compliance Report

Overview

This report performs a technical assessment of your AWS environment against the SOC2 compliance standard. It evaluates your infrastructure based on the following SOC2 categories:

  • CC1.0 – Common Criteria Related to Control Environment
  • CC2.0 – Common Criteria Related to Communication and Information
  • CC3.0 – Common Criteria Related to Risk Assessment
  • CC4.0 – Monitoring Activities
  • CC6.0 – Logical and Physical Access
  • CC7.0 – System Operations
  • CC8.0 – Change Management
  • CCA1.0 – Additional Criteria for Availability
  • CCC1.0 – Additional Criteria for Confidentiality

The assessment covers many AWS services, including EC2, CloudTrail, IAM, S3, and Config.

Upon completion, you will receive a detailed report identifying all passed and failed resources, along with actionable remediation steps to help you achieve compliance with the SOC2 technical recommendations.