Stop claiming that SOC is an information security certification. Stop treating SOC2 Type II as an indicator of anything other than achieving SOC2 Type II, a standard created and audited by accountants.
@fuzztechNick Selby
@Viss
My favorite part of soc2 is the company gets to make up their own rules, and the auditor just checks to see if you can pretend you're following those rules. Want to see the company's rules? No, that's secret.
If you have a fediverse account, you can quote this note from your own instance. Search https://infosec.exchange/users/FritzAdalis/statuses/115804125375133431 on your instance and quote it. (Note that quoting is not supported in Mastodon.)