Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » SOC 2 » SAS 70

SAS 70

SAS 70 is a standard developed by the American Institute of Certified Public Accountants (AICPA) to evaluate the security controls of service organizations. It guides them and their auditors to demonstrate the effectiveness of their controls to their clients and their clients’ auditors.

SAS 70 is currently replaced by the Statement on Standards for Attestation Engagements (SSAE) 18, which is the current standard for evaluating the controls of service organizations. While the SSAE 18 standard includes the same types of evaluations as SAS 70, it is updated to align with current industry best practices and to reflect changes in technology and the business environment.

Today, SOC 2 audits follow the SSAE 18 standard rather than SAS 70.

Additional reading

ISO 9001 Audit Explained: Types, Cost, How to Prepare, & More

When quality is central to how your business runs—manufacturing, logistics, or service delivery—ISO 9001 audits are part of the equation. They test whether your systems hold up, not just in theory but in actual daily work. Miss, and you risk delays, failed deals, or repeat issues that should’ve been caught earlier.  Understanding how this audit…

How To Define Your SOC 2 Scope

Defining the SOC 2 scope is a practical constraint when preparing for SOC 2 assessments. Some organizations err by selectively incorporating elements that showcase their strengths creating challenges for the recipients who rely on SOC 2 reports for making key decisions. Others find it difficult to balance assessment initiatives with the time and resources at…

Top Data Loss Prevention Software to Secure Your Data

The year 2024 saw a rise of 21% of incidents related to data security breaches. Information leaks have been on the rise, with sensitive data flowing through countless devices and networks. So, how can businesses protect their data from such cybersecurity threats? The answer is using a DLP or data loss prevention software to protect…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.