Knowledge baseΒ·158 articles
Where do you want to start?
The SOC 2 library, organized by the decision in front of you. Pick a task to jump to its guides, or start from one of the essential reads below.
Knowledge baseΒ·158 articles
The SOC 2 library, organized by the decision in front of you. Pick a task to jump to its guides, or start from one of the essential reads below.
SOC 2 criteria mapped to the controls that satisfy them and the evidence auditors request. 33 Common Criteria (CC1βCC9) plus A1, PI1, C1, and P1βP8.
Read insight βThe 5 SOC 2 Trust Services Criteria β Security, Availability, Processing Integrity, Confidentiality, Privacy β what each requires and when to scope it in.
Read insight βThe best SOC 2 software in 2026, ranked by an auditor network that sees these platforms in real fieldwork weekly. Top picks by buyer type, current pricing, and honest weaknesses vendors won't tell you.
Read insight βAuditor fees run $15Kβ$60K; total first-year program $30Kβ$150K+. Costs by company size, drivers, and ways to cut the bill. Updated May 2026.
Read insight βSOC 2 is the US standard; ISO 27001 is global. Get the one your biggest market asks for first. 2026 costs, timelines, control overlap, and which to pick.
Read insight βHow auditors evaluate AI/ML companies under SOC 2 in 2026 β model governance, training-data lineage, prompt logging, and LLM subprocessor risk mapped to the Trust Services Criteria.
Read insight β