Hacker News new | ask | show | jobs
by xmprt 1891 days ago
It feels extremely negligent of third party auditors to recommend (and sometimes require) companies to enforce worse, obsolete security practice.
1 comments

SOC 2 is defined by the American Institute of Certified Public Accountants. Having computer security defined by accountants seems crazy, but is in the style of the bureaucratic mess of modern enterprise.