Starting with the basics.
The essentials of SOC 2: what it is, why it matters, and who it impacts.

Where do you stand?
Evaluate your organization’s current readiness for SOC 2

SOC 2 controls list
Access the full catalog of SOC 2 controls mapped to COSO principles

Risks considerations
Define business objectives, understand risk, and align with SOC 2 requirements

Timelines and budgets
Set key milestones and plan resources from prep to attestation

SOC 2 Prep Kit
Policies & templates starter pack
Here are some baseline policies and templates you can get started with:Access Control Policy
Rules for granting and revoking accessIncident Response Plan
Steps to handle security incidentsBusiness Continuity Plan
Ensures operations during disruptionsData Classification Policy
Defines categories for handling dataData Retention Policy
Sets rules for storing dataVendor Management Policy
Manages vendor risk and system accessSOC 2 Infosec Policy Template
Baseline SOC 2-aligned security policySOC 2 System Description
Documents systems and controls for SOC 2SOC 2 Bridge Letter
Covers audit gap period between reports
Prepare for an audit
Get ready with documents, controls, and auditor-grade evidence


