← all controls
CC7.3SOC 2

System operations - evaluates security events

The entity evaluates security events to determine whether they could or did result in system failure or unauthorized activity.

Trust Service Criterion
CC
Audit period
type-2
Points of focus
  • Events are triaged using defined severity criteria
  • Potential incidents are escalated
  • Event analysis is retained