<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SOC 2 Archives - Canadian Cyber</title>
	<atom:link href="https://canadiancyber.ca/tag/soc-2/feed/" rel="self" type="application/rss+xml" />
	<link>https://canadiancyber.ca/tag/soc-2/</link>
	<description></description>
	<lastBuildDate>Wed, 15 Apr 2026 07:23:20 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://canadiancyber.ca/wp-content/uploads/2022/06/cropped-android-chrome-192x192-1-32x32.png</url>
	<title>SOC 2 Archives - Canadian Cyber</title>
	<link>https://canadiancyber.ca/tag/soc-2/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>One Portal, Many Frameworks</title>
		<link>https://canadiancyber.ca/sharepoint-compliance-portal/</link>
					<comments>https://canadiancyber.ca/sharepoint-compliance-portal/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 15 Apr 2026 21:00:41 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Audit Readiness]]></category>
		<category><![CDATA[compliance portal]]></category>
		<category><![CDATA[governance]]></category>
		<category><![CDATA[ISMS SharePoint]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[privacy compliance]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5211</guid>

					<description><![CDATA[<p>Learn how to use a SharePoint compliance portal to manage ISO 27001, SOC 2, and privacy work in one structured, audit-ready system.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/sharepoint-compliance-portal/">One Portal, Many Frameworks</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/sharepoint-compliance-portal/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Corrective Action Tracking in SharePoint</title>
		<link>https://canadiancyber.ca/corrective-action-tracking/</link>
					<comments>https://canadiancyber.ca/corrective-action-tracking/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 15 Apr 2026 17:00:08 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Audit Findings]]></category>
		<category><![CDATA[Audit Readiness]]></category>
		<category><![CDATA[compliance workflow]]></category>
		<category><![CDATA[corrective action tracking]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[remediation tracking]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5205</guid>

					<description><![CDATA[<p>A practical guide to corrective action tracking in SharePoint that helps manage findings, owners, deadlines, and evidence for audit-ready compliance.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/corrective-action-tracking/">Corrective Action Tracking in SharePoint</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/corrective-action-tracking/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>SharePoint + SIEM Integration</title>
		<link>https://canadiancyber.ca/sharepoint-siem-integration/</link>
					<comments>https://canadiancyber.ca/sharepoint-siem-integration/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 15 Apr 2026 15:00:50 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Audit Evidence]]></category>
		<category><![CDATA[compliance reporting]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[logging and monitoring]]></category>
		<category><![CDATA[Security Operations]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SIEM integration]]></category>
		<category><![CDATA[SOC 2]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5202</guid>

					<description><![CDATA[<p>A practical guide to SharePoint SIEM integration that helps you turn logs, alerts, and incidents into audit-ready evidence for ISO 27001 and SOC 2.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/sharepoint-siem-integration/">SharePoint + SIEM Integration</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/sharepoint-siem-integration/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Executive Dashboard DIY</title>
		<link>https://canadiancyber.ca/sharepoint-compliance-dashboard/</link>
					<comments>https://canadiancyber.ca/sharepoint-compliance-dashboard/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Wed, 15 Apr 2026 13:00:54 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Audit Readiness]]></category>
		<category><![CDATA[Compliance Dashboard]]></category>
		<category><![CDATA[compliance tracking]]></category>
		<category><![CDATA[executive reporting]]></category>
		<category><![CDATA[ISMS reporting]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[SharePoint ISMS]]></category>
		<category><![CDATA[SOC 2]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5199</guid>

					<description><![CDATA[<p>Learn how to create a SharePoint compliance dashboard that turns ISMS data into a weekly executive report for ISO 27001 and SOC 2 readiness.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/sharepoint-compliance-dashboard/">Executive Dashboard DIY</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/sharepoint-compliance-dashboard/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Security Leadership Without Burnout</title>
		<link>https://canadiancyber.ca/vciso-for-ctos/</link>
					<comments>https://canadiancyber.ca/vciso-for-ctos/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Tue, 14 Apr 2026 19:00:37 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Audit Readiness]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[CTO security]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[security leadership]]></category>
		<category><![CDATA[Security Operations]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[Startup Security]]></category>
		<category><![CDATA[vCISO]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5196</guid>

					<description><![CDATA[<p>A practical guide on how a vCISO helps CTOs reduce security workload, manage compliance, and keep engineering focused without burnout.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/vciso-for-ctos/">Security Leadership Without Burnout</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/vciso-for-ctos/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>How a vCISO helps startups navigate multi-region compliance</title>
		<link>https://canadiancyber.ca/multi-region-compliance-startups/</link>
					<comments>https://canadiancyber.ca/multi-region-compliance-startups/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Tue, 14 Apr 2026 16:00:39 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[data residency]]></category>
		<category><![CDATA[GDPR]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[multi-region compliance]]></category>
		<category><![CDATA[PIPEDA]]></category>
		<category><![CDATA[SaaS Security]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[startup compliance]]></category>
		<category><![CDATA[vCISO]]></category>
		<category><![CDATA[vendor governance]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5193</guid>

					<description><![CDATA[<p>A practical guide to multi-region compliance for startups selling across Canada, the US, and the EU without building a full compliance team.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/multi-region-compliance-startups/">How a vCISO helps startups navigate multi-region compliance</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/multi-region-compliance-startups/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Startup DIY</title>
		<link>https://canadiancyber.ca/iso-27001-startup-implementation-small-team-guide/</link>
					<comments>https://canadiancyber.ca/iso-27001-startup-implementation-small-team-guide/#respond</comments>
		
		<dc:creator><![CDATA[Qaiser Mehmood]]></dc:creator>
		<pubDate>Mon, 13 Apr 2026 19:00:02 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Canadian cybersecurity]]></category>
		<category><![CDATA[compliance readiness]]></category>
		<category><![CDATA[Cybersecurity 2026]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[ISMS]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[ISO 27001 certification]]></category>
		<category><![CDATA[Risk Assessment]]></category>
		<category><![CDATA[SaaS Compliance]]></category>
		<category><![CDATA[Small Team Security]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[Startup Security]]></category>
		<category><![CDATA[vCISO]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5171</guid>

					<description><![CDATA[<p>Enterprise buyers require ISO 27001 but most startups believe it's out of reach without a compliance team, a GRC platform, and six figures in consultant fees. It isn't. This is the practical 8-step roadmap for founders, CTOs, and operations leads implementing ISO 27001 with a small team and a proportionate budget.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/iso-27001-startup-implementation-small-team-guide/">Startup DIY</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/iso-27001-startup-implementation-small-team-guide/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Internal Audit Script for MSPs</title>
		<link>https://canadiancyber.ca/msp-internal-audit-shared-access-backup-vendor-controls/</link>
					<comments>https://canadiancyber.ca/msp-internal-audit-shared-access-backup-vendor-controls/#respond</comments>
		
		<dc:creator><![CDATA[Qaiser Mehmood]]></dc:creator>
		<pubDate>Mon, 13 Apr 2026 16:00:51 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Backup Controls]]></category>
		<category><![CDATA[Canadian cybersecurity]]></category>
		<category><![CDATA[Compliance Evidence]]></category>
		<category><![CDATA[cyber insurance]]></category>
		<category><![CDATA[Cybersecurity 2026]]></category>
		<category><![CDATA[Internal audit]]></category>
		<category><![CDATA[ISMS]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[MSP compliance]]></category>
		<category><![CDATA[MSP security]]></category>
		<category><![CDATA[Privileged Access]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO]]></category>
		<category><![CDATA[Vendor Management]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5173</guid>

					<description><![CDATA[<p>Most MSP internal audits confirm that policies exist and produce no real findings which means they miss exactly what external auditors will find. This working audit script covers the three control domains that generate the most significant findings in ISO 27001 surveillance audits: shared and privileged access, backup controls, and vendor management.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/msp-internal-audit-shared-access-backup-vendor-controls/">Internal Audit Script for MSPs</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/msp-internal-audit-shared-access-backup-vendor-controls/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Pen Test vs Vulnerability Scan vs Security Assessment</title>
		<link>https://canadiancyber.ca/pen-test-vs-vulnerability-scan-vs-security-assessment/</link>
					<comments>https://canadiancyber.ca/pen-test-vs-vulnerability-scan-vs-security-assessment/#respond</comments>
		
		<dc:creator><![CDATA[Qaiser Mehmood]]></dc:creator>
		<pubDate>Sat, 11 Apr 2026 15:00:18 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Canadian cybersecurity]]></category>
		<category><![CDATA[CISO]]></category>
		<category><![CDATA[Cybersecurity 2026]]></category>
		<category><![CDATA[cybersecurity assessment]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[penetration testing]]></category>
		<category><![CDATA[PIPEDA]]></category>
		<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Security Assessment]]></category>
		<category><![CDATA[Security Testing]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[vCISO]]></category>
		<category><![CDATA[vulnerability scanning]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5157</guid>

					<description><![CDATA[<p>Pen test, vulnerability scan, security assessment three services your board hears about and regularly confuses. This plain English guide explains exactly what each one does, what it doesn't do, and which one your organization actually needs based on your compliance requirements, risk profile, and security maturity.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/pen-test-vs-vulnerability-scan-vs-security-assessment/">Pen Test vs Vulnerability Scan vs Security Assessment</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/pen-test-vs-vulnerability-scan-vs-security-assessment/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>The Cloud Misconfiguration Checklist</title>
		<link>https://canadiancyber.ca/cloud-misconfiguration-checklist/</link>
					<comments>https://canadiancyber.ca/cloud-misconfiguration-checklist/#respond</comments>
		
		<dc:creator><![CDATA[Rafia Rizwan]]></dc:creator>
		<pubDate>Fri, 10 Apr 2026 13:00:41 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[AWS security]]></category>
		<category><![CDATA[Azure security]]></category>
		<category><![CDATA[Cloud Compliance]]></category>
		<category><![CDATA[cloud misconfiguration]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[ISO 27017]]></category>
		<category><![CDATA[SOC 2]]></category>
		<guid isPermaLink="false">https://canadiancyber.ca/?p=5140</guid>

					<description><![CDATA[<p>A practical cloud misconfiguration checklist mapped to ISO 27017 controls, helping SaaS teams fix audit findings and secure AWS and Azure environments.</p>
<p>The post <a rel="nofollow" href="https://canadiancyber.ca/cloud-misconfiguration-checklist/">The Cloud Misconfiguration Checklist</a> appeared first on <a rel="nofollow" href="https://canadiancyber.ca">Canadian Cyber</a>.</p>
]]></description>
		
					<wfw:commentRss>https://canadiancyber.ca/cloud-misconfiguration-checklist/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
