Class 01 Reading Notes: Strategic Policy Development - taylortommy23/401-Reading-Notes GitHub Wiki

How would you convince your future company to pursue SOC2 compliance?

  • By explaining the benefits and going over any concerns they may have.

What are the five SOC2 Trust Principles?

  • Security, Availability, Processing Integrity, Confidentiality, and Privacy

How would your explain the three levels of the SOC2 pyramid in an analogy your friends or former colleagues would understand?

  • The SOC2 pyramid is a strategy to safeguard your company's sensitive data, starting from a strong foundation, building robust walls and continuous monitoring, and expanding your view to encompass specific industry or regulatory requirements.

Resource: https://www.[vendr.com/blog/soc-2-compliance-guide](https://www.vendr.com/blog/soc-2-compliance-guide)

Chat GPT