Skip to content

SOC 2 readiness (RM-009)

AccuPredix maps product controls to AICPA Trust Services Criteria and tracks the platform SOC 2 programme from gap assessment through Type I/II audits.

For organization admins

  1. Open Settings → Privacy.
  2. Under SOC 2 readiness, click Download readiness PDF.
  3. Share the PDF with procurement or security reviewers alongside the compliance pack.

The report includes:

  • Current platform audit programme phase
  • Automated control evidence coverage (%)
  • Your organization checklist (DPA, privacy acceptance, audit activity, data region, retention)

Formal SOC 2 attestation letters are available on request via security@accupredix.com when Type I/II reports are published.

For platform operators

  1. Open Admin → Compliance → SOC 2 programme.
  2. Review the control matrix — automated checks run against live platform configuration.
  3. Update programme phases (gap assessment, documentation, Type I, monitoring, Type II).
  4. Toggle Type I / Type II report available when attestation letters can be shared with customers.

API

Endpoint Audience Description
GET /admin/compliance/soc2 Operator Programme dashboard
PATCH /admin/compliance/soc2 Operator Update phases and report flags
GET /orgs/{org_id}/soc2-readiness Org admin JSON readiness summary
GET /orgs/{org_id}/soc2-readiness-report Org admin PDF export