We recently completed our first SOC 2 Type II audit, covering the Security and Confidentiality trust services criteria. Our cofounder @mayakaczorowski.com shares what's still hard: manual access reviews, scattered evidence, and complying with bygone requirements: oblique.security/blog/soc2-re...
What's still annoying about SOC 2 in 2026 | Oblique
We completed our first SOC 2 audit. We still suffered through manual access reviews, scattered evidence, and proving compliance with bygone requirements.
oblique.security