Understanding the 9 Common Criteria of the SOC 2 Security Principle

When tech companies prepare for a SOC 2 audit, they quickly learn that the Security principle is the only mandatory component of the evaluation. The American Institute of Certified Public Accountants refers to this foundation as the Common Criteria. This name is used because these exact controls form the baseline framework for the entire audit. […]