Se rendre au contenu

Security & Compliance

Lynx Compliance - SOC 2 Type II Accelerators

Trust Services Categories scoping, third-person control narratives, period-bounded evidence, sample-selection wizard, subservice carve-outs, CUECs, bridge letter.

lynx_compliance_soc2 · v19.0.1.0.0 · Premium

What this solves

Lynx Compliance - SOC 2 Type II Accelerators

Everything you need beyond the SOC 2 framework catalog to run a Type II audit - TSC scoping, sample-selection wizard, subservice carve-outs, complementary user-entity controls, third-person narratives, and the bridge letter generator.

The framework catalog tells you which controls you owe an auditor; a Type II audit demands more: defined audit period, sample selection methodology, narratives written in audit voice, subservice documentation (SubsCo, e.g., AWS), CUECs the user entity must perform, and a bridge letter for the gap between the audit period and the report date. This module ships all of those as first-class records.

Key Features

  • TSC scoping - per-profile selection of Security plus optional Availability, Processing Integrity, Confidentiality, and Privacy.

  • Period-bounded evidence - assessments respect the SOC 2 audit period; pre-period or post-period evidence is excluded automatically.

  • Sample-selection wizard - reproducible random sample with population, N, and seed; output matches what the auditor expects.

  • Subservice carve-outs - lynx.subservice.org documents complementary subservice controls (CSOCs) the report relies on.

  • CUECs register - lynx.cuec documents complementary user-entity controls in the language expected in Section 4.

  • Bridge-letter report - one-click PDF for the period between report date and a renewal/customer request.

  • Section 3 narratives - report templates render the system description with the proper audit voice.

Integrates With

  • lynx_compliance - extends the assessment with audit-period, sample, narrative fields.

  • lynx_compliance_certification - shares the audit lifecycle and assessor records.

Integrations

Lynx Compliance - SOC 2 Type II Accelerators works with 1 other module

Each bridge ships separately so you only install what your team uses.

Try Lynx Compliance - SOC 2 Type II Accelerators on your team.

Free trial, no credit card. Talk to sales when you're ready.