SOC 2 Readiness Assessment

SOC 2 (AICPA Trust Services Criteria)

Assess your SOC 2 readiness across the Common Criteria and the Availability, Confidentiality, Processing Integrity, and Privacy categories — and find out whether your evidence would actually survive a Type II observation window.

  • 16 Trust Services Criteria areas
  • Weighted scoring — critical gaps count three times an operational one
  • Instant result, scored in your browser — nothing is sent until you ask for the full report
  • Roughly five minutes to complete

This is an indicative self-assessment, not a formal audit or legal advice. For a certification-grade gap analysis, talk to our team.

Cyberfyx
Cyberfyx Compliance Advisor
SOC 2 Readiness Assessment
SOC 2 Evaluation

What the Assessment Covers

The 16 questions are grouped into three weighted tiers.

Tier 1 — Critical

Governance and accountability — weighted 3×

  • Control Environment
  • Risk Assessment
  • Monitoring of Controls
  • Audit Readiness & Evidence

Tier 2 — High Impact

Core operational controls — weighted 2×

  • Logical Access
  • Incident Response
  • Change Management
  • Vendor & Third-Party Management
  • System Monitoring
  • Availability

Tier 3 — Operational

Supporting practices — weighted 1×

  • Policies & Communication
  • Physical & Environmental Access
  • Asset & Data Classification
  • Confidentiality
  • Processing Integrity
  • Privacy

Ready to Close Your SOC 2 Gaps?

Our consultants take organisations from first gap assessment through to certification and ongoing maintenance.

Talk to a Compliance Expert