SOC 1 (SSAE 18 / ISAE 3402)
Engagement scope and the service organisation's responsibilities – SOC 1 (SSAE 18 / ISAE 3402)

SOC 1 (SSAE 18 / ISAE 3402) A.8: SOC 1 A.8 Give the service auditor all relevant information and unrestricted access to people

The service organisation gives the auditor access to all information it knows to be relevant to the description and the assertion, including service level agreements, any further information the auditor requests, and unrestricted access to the people from whom the auditor needs evidence; this is a precondition of every attestation engagement under section 105 and a stated responsibility under ISAE 3402.

Maintained by Gerard BlokdykControl text last updated

Other controls in Engagement scope and the service organisation's responsibilities – SOC 1 (SSAE 18 / ISAE 3402)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.