Monitoring for security events
Summary
The entity monitors system components and the operation of controls to detect anomalies that are indicative of malicious acts, natural disasters, or errors affecting the entity's ability to meet its objectives.
system operationssecurity monitoringlogginganomaly detection
Read the full official text: https://www.aicpa-cima.com/resources/download/2022-trust-services-criteria
Track SOC 2 criterion CC7.2 as evidence
eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.
Start free trial