Skip to main content

Repository → 💼 SOC 2 → 💼 CC3 Risk Assessment → 💼 CC3.2 The entity identifies risks to the achievement of its objectives\ \ across the entity and analyzes risks as a basis for determining how the\ \ risks should be managed.

💼 CC3.2-7 Identifies Vulnerability of System Components

  • ID: /frameworks/soc-2/cc3/02/07

Description

The entity identifies the vulnerabilities of system components, including system processes, infrastructure, software, and other information assets.

Similar

  • Internal
    • ID: dec-c-7c3a1d3f

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance