June 2, 2023, 2:44 p.m. | /u/87390989

cybersecurity www.reddit.com

My organization is building a cloud environment in azure. They want to build it following a framework to ensure they are following proper standards, etc.

They mentioned to build it around SOC 2, but does it really make sense? SOC 2 is more for auditing the environment. Wouldn't it make more sense to say, let build it around another framework such as CIS? I feel CIS has pathway to follow with the listed controls, whereas SOC, you make your own …

auditing azure build cis cloud cybersecurity environment etc framework organization soc soc 2 standards test

Information System Security Officer (ISSO)

@ LinQuest | Boulder, Colorado, United States

Project Manager - Security Engineering

@ MongoDB | New York City

Security Continuous Improvement Program Manager (m/f/d)

@ METRO/MAKRO | Düsseldorf, Germany

Senior JavaScript Security Engineer, Tools

@ MongoDB | New York City

Principal Platform Security Architect

@ Microsoft | Redmond, Washington, United States

Staff Cyber Security Engineer (Emerging Platforms)

@ NBCUniversal | Englewood Cliffs, NEW JERSEY, United States