bmarsh9 / gapps

Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking. https://gapps.darkbanner.com
Other
440 stars 99 forks source link

Document the mitigation for the focus areas in SOC2 #1

Open bmarsh9 opened 2 years ago

bmarsh9 commented 2 years ago

The mitigations are currently empty for the SOC2 focus areas. Need to go through each one and write a sentence or two about how the user can achieve compliance.

Currently it is not a huge deal b/c your auditor will be the final judge... but it would still be a great thing to add.