<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SOC 2 Archives - Canadian Cyber</title>
	<atom:link href="https://canadiancyber.ca/tag/soc-2/feed/" rel="self" type="application/rss+xml" />
	<link>https://canadiancyber.ca/tag/soc-2/</link>
	<description></description>
	<lastBuildDate>Fri, 24 Jul 2026 10:22:26 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://canadiancyber.ca/wp-content/uploads/2022/06/cropped-android-chrome-192x192-1-32x32.png</url>
	<title>SOC 2 Archives - Canadian Cyber</title>
	<link>https://canadiancyber.ca/tag/soc-2/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title></title>
		<link>https://canadiancyber.ca/github-copilot-compliance-secure-development/</link>
					<comments>https://canadiancyber.ca/github-copilot-compliance-secure-development/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Fri, 24 Jul 2026 19:30:11 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AI Coding Assistants]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[Code Security]]></category>
		<category><![CDATA[Developer Compliance]]></category>
		<category><![CDATA[GitHub Copilot]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[ISO 42001]]></category>
		<category><![CDATA[SaaS Security]]></category>
		<category><![CDATA[Secure Development]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=6012</guid>

					<description><![CDATA[<p>GitHub Copilot can improve developer productivity, but it does not replace secure development controls. Learn how to govern AI-assisted coding through policies, access reviews, human code review, security testing, developer training, and audit-ready evidence.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/github-copilot-compliance-secure-development/"></a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/github-copilot-compliance-secure-development/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>The CEO’s Cybersecurity Checklist for 2026</title>
		<link>https://canadiancyber.ca/ceo-cybersecurity-checklist-2026/</link>
					<comments>https://canadiancyber.ca/ceo-cybersecurity-checklist-2026/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Fri, 24 Jul 2026 13:30:44 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[CEO Cybersecurity]]></category>
		<category><![CDATA[Cyber risk management]]></category>
		<category><![CDATA[cybersecurity assessment]]></category>
		<category><![CDATA[Cybersecurity Governance]]></category>
		<category><![CDATA[Executive Cybersecurity]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=6006</guid>

					<description><![CDATA[<p>Cybersecurity is now a business responsibility, not just an IT issue. This CEO cybersecurity checklist explains the key areas executives should review before a cyber incident, helping organizations strengthen resilience, customer trust, and enterprise readiness.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/ceo-cybersecurity-checklist-2026/">The CEO’s Cybersecurity Checklist for 2026</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/ceo-cybersecurity-checklist-2026/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>SOC 2 Control Failures</title>
		<link>https://canadiancyber.ca/soc-2-remote-first-companies/</link>
					<comments>https://canadiancyber.ca/soc-2-remote-first-companies/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 22 Jul 2026 19:30:12 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[cybersecurity assessment]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[Microsoft 365 security]]></category>
		<category><![CDATA[remote work security]]></category>
		<category><![CDATA[Remote-First Companies]]></category>
		<category><![CDATA[SaaS Compliance]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[SOC 2 readiness]]></category>
		<category><![CDATA[vCISO Canada]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=6001</guid>

					<description><![CDATA[<p>Remote-first companies face unique SOC 2 challenges around access management, devices, evidence collection, vendors, and AI tools. Learn the most common control failures and how to prepare your organization for a successful SOC 2 audit.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/soc-2-remote-first-companies/">SOC 2 Control Failures</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/soc-2-remote-first-companies/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>SOC 2 Security Awareness Evidence</title>
		<link>https://canadiancyber.ca/soc-2-security-awareness-evidence-guide/</link>
					<comments>https://canadiancyber.ca/soc-2-security-awareness-evidence-guide/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 22 Jul 2026 16:30:43 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[compliance training]]></category>
		<category><![CDATA[Cybersecurity Awareness]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[Microsoft 365 compliance]]></category>
		<category><![CDATA[Security Awareness]]></category>
		<category><![CDATA[Security Awareness Training]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[SOC 2 audit evidence]]></category>
		<category><![CDATA[SOC 2 readiness]]></category>
		<category><![CDATA[vCISO Canada]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5998</guid>

					<description><![CDATA[<p>SOC 2 auditors expect more than training completion reports. Learn how to demonstrate security awareness through behavior change, phishing simulations, policy acknowledgments, quiz results, and audit-ready evidence.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/soc-2-security-awareness-evidence-guide/">SOC 2 Security Awareness Evidence</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/soc-2-security-awareness-evidence-guide/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>SOC 2 for HealthTech</title>
		<link>https://canadiancyber.ca/soc-2-for-healthtech-readiness-guide/</link>
					<comments>https://canadiancyber.ca/soc-2-for-healthtech-readiness-guide/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 22 Jul 2026 13:30:01 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[cybersecurity assessment]]></category>
		<category><![CDATA[Healthcare compliance]]></category>
		<category><![CDATA[Healthcare SaaS]]></category>
		<category><![CDATA[HealthTech]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[Microsoft 365 security]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[SOC 2 readiness]]></category>
		<category><![CDATA[vCISO Canada]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5995</guid>

					<description><![CDATA[<p>SOC 2 for HealthTech requires more than a standard SaaS audit. Discover how to scope patient and PHI-adjacent data, manage support access, review cloud vendors, and organize audit evidence to pass healthcare customer security reviews.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/soc-2-for-healthtech-readiness-guide/">SOC 2 for HealthTech</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/soc-2-for-healthtech-readiness-guide/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Security Questionnaires vs SOC 2 vs ISO 27001</title>
		<link>https://canadiancyber.ca/soc-2-vs-iso-27001-buyers-guide/</link>
					<comments>https://canadiancyber.ca/soc-2-vs-iso-27001-buyers-guide/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Tue, 21 Jul 2026 19:30:33 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[cybersecurity assessment]]></category>
		<category><![CDATA[enterprise procurement]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[iso 27001 implementation]]></category>
		<category><![CDATA[Microsoft 365 compliance]]></category>
		<category><![CDATA[Security questionnaires]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[SOC 2 readiness]]></category>
		<category><![CDATA[vCISO Canada]]></category>
		<category><![CDATA[Vendor Risk Management]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5991</guid>

					<description><![CDATA[<p>Enterprise customers often request security questionnaires, SOC 2 reports, or ISO 27001 certification before signing a contract. Learn the differences, why buyers ask for them, and how your organization can prepare to win more enterprise business.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/soc-2-vs-iso-27001-buyers-guide/">Security Questionnaires vs SOC 2 vs ISO 27001</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/soc-2-vs-iso-27001-buyers-guide/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>How Enterprise Procurement Teams Evaluate Cybersecurity</title>
		<link>https://canadiancyber.ca/enterprise-saas-security-questionnaire-guide/</link>
					<comments>https://canadiancyber.ca/enterprise-saas-security-questionnaire-guide/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Tue, 21 Jul 2026 16:30:30 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[cybersecurity assessment]]></category>
		<category><![CDATA[Enterprise SaaS]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[Microsoft 365 compliance]]></category>
		<category><![CDATA[SaaS Compliance]]></category>
		<category><![CDATA[Security Questionnaire]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO Canada]]></category>
		<category><![CDATA[Vendor Risk Management]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5988</guid>

					<description><![CDATA[<p>Enterprise customers evaluate more than your software—they assess your cybersecurity. Learn how security questionnaires, ISO 27001, SOC 2, vendor risk reviews, and compliance evidence influence enterprise SaaS procurement and how your business can prepare.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/enterprise-saas-security-questionnaire-guide/">How Enterprise Procurement Teams Evaluate Cybersecurity</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/enterprise-saas-security-questionnaire-guide/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>SharePoint Evidence Naming Rules</title>
		<link>https://canadiancyber.ca/sharepoint-management-review-dashboard/</link>
					<comments>https://canadiancyber.ca/sharepoint-management-review-dashboard/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Mon, 20 Jul 2026 06:04:49 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[compliance dashboards]]></category>
		<category><![CDATA[cybersecurity leadership]]></category>
		<category><![CDATA[ISO 27001 management review]]></category>
		<category><![CDATA[ISO 42001]]></category>
		<category><![CDATA[Microsoft 365 compliance]]></category>
		<category><![CDATA[Power Automate]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SharePoint management review dashboard]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO in Canada]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5973</guid>

					<description><![CDATA[<p>A SharePoint management review dashboard gives executives real-time visibility into compliance, audit readiness, risks, and corrective actions. Learn how to build an executive dashboard that supports ISO 27001 management review, SOC 2, and ISO 42001 using Microsoft 365.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/sharepoint-management-review-dashboard/">SharePoint Evidence Naming Rules</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/sharepoint-management-review-dashboard/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>SharePoint Evidence Naming Rules</title>
		<link>https://canadiancyber.ca/sharepoint-evidence-naming-rules-2/</link>
					<comments>https://canadiancyber.ca/sharepoint-evidence-naming-rules-2/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 15 Jul 2026 16:30:51 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[audit evidence management]]></category>
		<category><![CDATA[Compliance Automation]]></category>
		<category><![CDATA[documentation control]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[ISO 42001]]></category>
		<category><![CDATA[Microsoft 365 compliance]]></category>
		<category><![CDATA[SharePoint evidence naming rules]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO in Canada]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5969</guid>

					<description><![CDATA[<p>Strong SharePoint evidence naming rules make audit evidence easier to find, review, and trust. Learn how structured naming conventions, metadata, and workflows simplify ISO 27001, SOC 2, ISO 42001, and Microsoft 365 compliance.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/sharepoint-evidence-naming-rules-2/">SharePoint Evidence Naming Rules</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/sharepoint-evidence-naming-rules-2/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Copilot + SharePoint ISMS</title>
		<link>https://canadiancyber.ca/microsoft-copilot-for-compliance/</link>
					<comments>https://canadiancyber.ca/microsoft-copilot-for-compliance/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 15 Jul 2026 13:30:13 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[Compliance Automation]]></category>
		<category><![CDATA[cybersecurity leadership]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[ISO 42001]]></category>
		<category><![CDATA[Microsoft 365 compliance]]></category>
		<category><![CDATA[Microsoft Copilot for compliance]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO in Canada]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5966</guid>

					<description><![CDATA[<p>Can Microsoft Copilot simplify compliance without increasing risk? Discover how organizations can safely use Microsoft Copilot for compliance alongside a SharePoint ISMS to improve ISO 27001, SOC 2, ISO 42001, and Microsoft 365 governance while maintaining audit-ready controls.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/microsoft-copilot-for-compliance/">Copilot + SharePoint ISMS</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/microsoft-copilot-for-compliance/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
