Hacker News new | past | comments | ask | show | jobs | submit login

I thought SOX was mostly financial. What you’re saying here sounds more like SOC. are they connected?



You can think of SOX as RFC and SOC2 as an implementation of it.

https://www.logicgate.com/blog/a-comparison-of-soc-and-sox-c...


SOC 2 is the bit that changes how software development is done, and has literally nothing to do with SOX, even according to that article.


There is literally 0 requirement to implement SOC2 for SOX. They are not related at all aside from that a lot of organizations do both. I'm kinda curious now where you got this idea?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: