SOC 2 Compliance Config and Help
Budget: $250 – $750 USD
I need an experienced security engineer to SOC 2 compliance. We have our servers hosted at AWS but we need
AWS’s SOC 2 does NOT cover these which we need.
1. Authentication and Authorization ( SIEM)
Secure configuration of AWS resources
2. Logging and Monitoring & Incident Report Setup only (Alerting and Incident Response you have to hire soc analyst)
3. MFA setup (two users) User access management (IAM, MFA, least privilege)
4. Privileged Access Management (SIEM)
5. Vulnerability Management Setup (Free 5-10 assets only)
6. Map AWS to SOC 2 controls
7. Change Management and Deployments
Vendor management (yes, AWS counts as a vendor)
------------------------
Auditors will ask and we need to be able to answer the following.
“How does your company ensure security on AWS?”
“Who has access and how is it reviewed?”
“How do you detect and respond to incidents?”
“How do you configure AWS securely?”
They will explicitly review AWS’s SOC 2 and your processes.
***Only bid if you have done this work before.
AWS’s SOC 2 does NOT cover these which we need.
1. Authentication and Authorization ( SIEM)
Secure configuration of AWS resources
2. Logging and Monitoring & Incident Report Setup only (Alerting and Incident Response you have to hire soc analyst)
3. MFA setup (two users) User access management (IAM, MFA, least privilege)
4. Privileged Access Management (SIEM)
5. Vulnerability Management Setup (Free 5-10 assets only)
6. Map AWS to SOC 2 controls
7. Change Management and Deployments
Vendor management (yes, AWS counts as a vendor)
------------------------
Auditors will ask and we need to be able to answer the following.
“How does your company ensure security on AWS?”
“Who has access and how is it reviewed?”
“How do you detect and respond to incidents?”
“How do you configure AWS securely?”
They will explicitly review AWS’s SOC 2 and your processes.
***Only bid if you have done this work before.