Skip to main content

Repository → 💼 SOC 2 → 💼 CC7 System Operations → 💼 CC7.3 The entity evaluates security events to determine whether they could or have resulted in a failure of the entity to meet its objectives (security incidents) and, if so, takes actions to prevent or address such failures.

💼 CC7.3-4 Assesses the Impact on Confidential Information

  • ID: /frameworks/soc-2/cc7/03/04

Description

Detected security events are evaluated to determine whether they could or did result in the unauthorized disclosure or use of confidential information.

Similar

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (2)

PolicyLogic CountFlagsCompliance
🛡️ Google Cloud Audit Logging is not configured properly🟢1🟢 x6no data
🛡️ Google GCE Network DNS Policy Logging is not enabled🟢1🟢 x6no data