May 8, 2024, 12:30 p.m. | /u/LordandPeasantGamgee

cybersecurity www.reddit.com

I'm preparing for a SOC 2 Type 1 audit and the auditor provided some custom controls we've imported into Drata and I'm a bit confused by this one:

>Description

>The company's board of directors has a documented charter that outlines its oversight responsibilities for internal control.

>Question

>Does the organization have a documented charter that outlines oversight responsibilities for internal control?

>Activities

>Create, or ensure that there is, a documented charter outlining the board of director's oversight responsibilities for internal …

audit auditor board control controls custom cybersecurity directors drata guidance internal organization oversight question responsibilities soc soc 2 the company

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Computer and Forensics Investigator

@ ManTech | 221BQ - Cstmr Site,Springfield,VA

Senior Security Analyst

@ Oracle | United States

Associate Vulnerability Management Specialist

@ Diebold Nixdorf | Hyderabad, Telangana, India