Expert Advice Community

Guest

ISO 27001 and SOC report / audit

  Quote
Guest
Guest user Created:   Feb 05, 2016 Last commented:   Feb 05, 2016

ISO 27001 and SOC report / audit

How this ISO standard relates to the Trust Service Principles as applied in SOC report / audit? What resource can be shared between the two?
0 0

Assign topic to the user

ISO 27001 RISK ASSESSMENT AND TREATMENT REPORT

Document the results of the risk management process.

ISO 27001 RISK ASSESSMENT AND TREATMENT REPORT

Document the results of the risk management process.

Guest
Antonio Jose Segovia Feb 05, 2016

Answer:
There are many common points between SOC II and ISO 27001:2013: risk management, internal audit, business continuity, access control, etc. If you want to know details about the similarities about both standards, and what resources can be shared, you can see the document “Trust Services Map to ISO 27001” from the official site of American Institute of CPAs (you can find the link at the end of the page) : https://www.aicpa.org/interestareas/frc/assuranceadvisoryservices/soc2additionalsubjectmatter.html

So, from my point of view, and in accordance with the document of American Institute of CPAs, ISO 27001:2013 can help you to pass the SOC audit in a successfully way.

Maybe can be interesting for you our toolkit, which includes all necessary documents for the implementation of ISO 27001 (most of them can help you with SOC). You can download a free version here (you need to click on “DO WNLOAD FREE TOOLKIT DEMO") “ISO 27001 Documentation Toolkit” : https://advisera.com/27001academy/iso-27001-documentation-toolkit/

Finally, can be also interesting for you our online course “ISO 27001:2013 Foundations Course” : https://advisera.com/training/iso-27001-foundations-course/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Feb 05, 2016

Feb 05, 2016

Suggested Topics

Guest user Created:   Nov 10, 2020 ISO 27001 & 22301
Replies: 1
0 0

SOC Reports