SOC 2 Academy: Trust Services Criteria
SOC 2 Terminology The Trust Services Criteria are a set of criteria established by the AICPA to be used when evaluating the suitability of the design and operating effectiveness of controls in a SOC 2 audit. There are five categories: Security – Is the system protected, both physically and logically, against unauthorized access? Availability – Is the system available for operation and use as agreed upon? Confidentiality – Is the…