Evaluating security events
Summary
The entity evaluates security events to determine whether they could or did result in a failure to meet objectives, and, if so, takes actions to prevent or address such failures.
system operationsincident triage
Read the full official text: https://www.aicpa-cima.com/resources/download/2022-trust-services-criteria
Track SOC 2 criterion CC7.3 as evidence
eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.
Start free trial