SOC2 SOC 2: Overcoming Common Roadblocks As an organization, undergoing a SOC 2 audit can be a complex and time-consuming process. It requires a thorough review of your systems and controls, By Austin Songer 21 Dec 2022
compliance ISO 27001 Statement of Applicability Template Template for your ISO 27001 program. Loading... By Austin Songer 27 Jul 2022
SOC2 SOC2 Evidence - Population Lists Sample of possible population lists from an auditor * List of all in-scope application code changes related to in-house development applications that have occurred during the By Austin Songer 19 Jul 2022
SOC2 SOC2 Readiness Checklist * [ ] Annual Meetings * [ ] Background Check Process * [ ] Employee Handbook * [ ] Employees Acknowledgement * [ ] Documented Charter * [ ] Performance Reviews * [ ] Organizational Chart * [ ] Confidentiality Agreement * [ ] Established Defined Roles * [ ] Job Descriptions Documented * [ ] Job Descriptions By Austin Songer 19 Jul 2022
ISO 27001 Building ISO 27001 Security Program (High Level) Roadmap This is assuming there isn’t any certifications or audits completed for the organization. 3 Months * Create a ISMS Policy and Define ISMS Scope * Complete By Austin Songer 18 Jul 2022
SOC2 SOC 2 Documentation and Evidence Collection Spreadsheet This Spreadsheet you can use to prepare for a SOC2 Audit. Loading... By Austin Songer 14 Jul 2022
Audit Linux Security: Working with the Audit Log Create audit rules to watch `/etc/passwd` for reads, `/etc/sudoers/` for reads and writes, and `/sbin/visudo` for executions. Run these commands auditctl -w By Austin Songer 23 Sep 2019
Audit Ensuring Compliance with Azure Policies After this you will know how to create two common Azure objects, with a notation representing an auditable value. Then deploy a policy to report By Austin Songer 31 Aug 2019