New signups are temporarily closed.Existing customers can still sign in. Contact us to be notified when we reopen.
Skip to main content
SOC 2 · Criterion CC6.5

Decommissioning protections

Summary

The entity discontinues logical and physical protections over physical assets only after the ability to read or recover data has been diminished, and is no longer required to meet objectives.

access controlasset disposalmedia sanitisation

Read the full official text: https://www.aicpa-cima.com/resources/download/2022-trust-services-criteria

Track SOC 2 criterion CC6.5 as evidence

eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.

Start free trial