nist/ iso / soc

0.0(0)
studied byStudied by 0 people
0.0(0)
full-widthCall with Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/13

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No study sessions yet.

14 Terms

1
New cards

nist 800-92

log management

2
New cards

nist 800-37

guidance for implementing RMF

3
New cards

iso 27001

most recognized security program

4
New cards

iso 27017

about cloud specific security controls

5
New cards

iso 27034

overview of application security

6
New cards

iso 31000

design implementation / management

7
New cards

SOC 1

A report focused on internal controls related to financial reporting. It shows how a company handles processes that could impact financial statements. It's mainly for auditors.

8
New cards

SOC 2

A report focused on how a company secures customer data. It reviews controls related to security, availability, processing integrity, confidentiality, and privacy. It's useful for customers and partners.

9
New cards

soc 2 type 1

A report that evaluates the design of a company’s controls at a specific point in time. It checks whether the controls are properly designed but doesn’t test if they work over time.

10
New cards

soc 2 type 2

A report that evaluates both the design and the operating effectiveness of a company’s controls over a period of time (typically 3 to 12 months). It shows whether the controls consistently worked as intended.

11
New cards
12
New cards
13
New cards
14
New cards