Skip to main content

Repository → 💼 SOC 2 → 💼 CC4 Monitoring Activities → 💼 CC4.1 The entity selects, develops, and performs ongoing and/or separate\ \ evaluations to ascertain whether the components of internal control are\ \ present and functioning.

💼 CC4.1-8 Considers Different Types of Ongoing and Separate Evaluations

  • ID: /frameworks/soc-2/cc4/01/08

Description

Management uses a variety of different types of ongoing and separate evaluations, including penetration testing, independent certification made against established specifications (for example, ISO certifications), and internal audit assessments.

Similar

  • Internal
    • ID: dec-c-b1dc1b50

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (2)

PolicyLogic CountFlagsCompliance
🛡️ Google Cloud Audit Logging is not configured properly🟢1🟢 x6no data
🛡️ Google GCE Network DNS Policy Logging is not enabled🟢1🟢 x6no data