1 SOC 2 Trust Services Criteria

Compliance and Security Frameworks · 3:38

Listen on 93

Lyrics

[Verse 1]
In the world of enterprise control design
SOC 2 draws the compliance line
Five trust services guide our way
Security, availability every day
Processing integrity keeps data clean
Confidentiality guards what's unseen

[Chorus]
S-A-P-C-P, trust services we need
Security first, availability freed
Processing right, confidentiality tight
Privacy protected, controls burn bright
Common criteria one through nine
Map your controls, align the line

[Verse 2]
Security sits at the foundation
Common criteria cross every station
CC one through nine, the framework core
Access controls and governance more
Risk assessment drives the plan
Logical access for every man

[Chorus]
S-A-P-C-P, trust services we need
Security first, availability freed
Processing right, confidentiality tight
Privacy protected, controls burn bright
Common criteria one through nine
Map your controls, align the line

[Verse 3]
Availability keeps systems running strong
Processing integrity prevents what's wrong
Confidentiality locks sensitive doors
Privacy rights that law requires
Each criterion has its numbered place
Control activities fill the space

[Bridge]
When you write your policy text
Reference the criteria that comes next
"This policy supports SOC 2 goals
Addressing Trust Services Criteria" roles
CC six point two or A one point one
Map your controls till compliance is done

[Chorus]
S-A-P-C-P, trust services we need
Security first, availability freed
Processing right, confidentiality tight
Privacy protected, controls burn bright
Common criteria one through nine
Map your controls, align the line

[Outro]
Five categories, numbered clear
SOC 2 compliance drawing near
Trust services criteria guide the way
To controlled environments every day

← 6 Proportionality | 2 CMMC (Cybersecurity Maturity Model Certification) →