SOC 2
SOC 2 Type I & II
CPA-attested attestation reports confirming your systems meet AICPA Trust Service Criteria. The compliance gate for enterprise SaaS sales, most common first engagement for Series A-C companies. Full program from gap assessment through final report.
Related frameworks
SOC 2 rarely stands alone.
Most engagements that start with SOC 2 add at least one other framework. The controls overlap is high, so a combined program often costs only 30-50% more than SOC 2 on its own.
SOC 2
US enterprise compliance gate
ISO 27001
60-70% overlap
HIPAA
Shared Security
GDPR
Privacy layer
ISO 42001
AI governance
PCI-DSS
Adjacent