Logo Menu

Knowledge baseΒ·158 articles

Where do you want to start?

The SOC 2 library, organized by the decision in front of you. Pick a task to jump to its guides, or start from one of the essential reads below.

Choose your task

Essential reads

Audit Preparation December 10, 2025 18 min read

SOC 2 Controls List (2026): What Auditors Ask For

SOC 2 criteria mapped to the controls that satisfy them and the evidence auditors request. 33 Common Criteria (CC1–CC9) plus A1, PI1, C1, and P1–P8.

Read insight β†’
SOC 2 Basics December 6, 2025

SOC 2 Trust Services Criteria (2026): All 5 TSCs Explained

The 5 SOC 2 Trust Services Criteria β€” Security, Availability, Processing Integrity, Confidentiality, Privacy β€” what each requires and when to scope it in.

Read insight β†’
Compliance Tools January 19, 2026

Best SOC 2 Software in 2026: 14 Platforms Ranked by an Auditor Network

The best SOC 2 software in 2026, ranked by an auditor network that sees these platforms in real fieldwork weekly. Top picks by buyer type, current pricing, and honest weaknesses vendors won't tell you.

Read insight β†’
Cost & Timeline December 17, 2025

SOC 2 Type 2 Audit Cost (2026): $15K–$100K+ Breakdown

Auditor fees run $15K–$60K; total first-year program $30K–$150K+. Costs by company size, drivers, and ways to cut the bill. Updated May 2026.

Read insight β†’
Framework Comparisons February 1, 2026 14 min read

SOC 2 vs ISO 27001 (2026): Which Should You Get First?

SOC 2 is the US standard; ISO 27001 is global. Get the one your biggest market asks for first. 2026 costs, timelines, control overlap, and which to pick.

Read insight β†’
Industry & Verticals March 9, 2026

SOC 2 for AI Companies (2026): What Auditors Test First

How auditors evaluate AI/ML companies under SOC 2 in 2026 β€” model governance, training-data lineage, prompt logging, and LLM subprocessor risk mapped to the Trust Services Criteria.

Read insight β†’