nist/ iso / soc

0.0(0)
studied byStudied by 0 people
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/13

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

14 Terms

1
New cards

nist 800-92

log management

2
New cards

nist 800-37

guidance for implementing RMF

3
New cards

iso 27001

most recognized security program

4
New cards

iso 27017

about cloud specific security controls

5
New cards

iso 27034

overview of application security

6
New cards

iso 31000

design implementation / management

7
New cards

SOC 1

A report focused on internal controls related to financial reporting. It shows how a company handles processes that could impact financial statements. It's mainly for auditors.

8
New cards

SOC 2

A report focused on how a company secures customer data. It reviews controls related to security, availability, processing integrity, confidentiality, and privacy. It's useful for customers and partners.

9
New cards

soc 2 type 1

A report that evaluates the design of a company’s controls at a specific point in time. It checks whether the controls are properly designed but doesn’t test if they work over time.

10
New cards

soc 2 type 2

A report that evaluates both the design and the operating effectiveness of a company’s controls over a period of time (typically 3 to 12 months). It shows whether the controls consistently worked as intended.

11
New cards
12
New cards
13
New cards
14
New cards