Hacker News new | ask | show | jobs
by tptacek 248 days ago
SOC2 is definitely not the highest industry standard for security (also: save yourself some money: nobody cares if you have availability attested).
2 comments

when I did startups, we had multiple companies who would not sign deals until our SOC2 was complete
I don't want to do a whole thread about SOC2 here, just wanted to snipe at a bit of marketing messaging. :)

For their market maybe that line works fine. It just trips a security cool kid tripwire.

Love it :) Thank you!