What AICPA SOC 2 Common Criteria CC7 - System Operations (CC7.1-CC7.5) requires
CC7 is the System Operations series of the SOC 2 Common Criteria (CC7.1-CC7.5). It requires the entity to use detection and monitoring procedures to identify configuration changes and vulnerabilities, to monitor system components for anomalies, to evaluate security events to determine whether they constitute incidents, to respond to identified incidents through a defined incident-response program, and to identify, develop, and implement recovery activities. CC7 operationalizes detection, response, and recovery.
Pillar: Cybersecurity · Authority: Association of International Certified Professional Accountants (AICPA & CIMA) · Version: 1.0.0 · Last updated:
Primary source: https://www.aicpa-cima.com/resources/landing/2017-trust-services-criteria
SHA-256 integrity: 1fc72bc4d7f082d7d3111e5e93e86e530f988387a6748ada4b9d8f1c7c3ec89f
Primary Citations — 6 traced to source
- AICPA Trust Services Criteria, https://www.aicpa-cima.com/resources/landing/2017-trust-services-criteria, CC7.1, 2017
- AICPA Trust Services Criteria, https://www.aicpa-cima.com/resources/landing/2017-trust-services-criteria, CC7.2, 2017
+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/soc2-cc7-system-operations.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/soc2-cc7-system-operations.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/soc2-cc7-system-operations
- Back to registry: Browse all 10,090 compliance nodes