<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>SOC1 on shocksolution.com</title><link>https://shocksolution.com/tags/soc1/</link><description>Recent content in SOC1 on shocksolution.com</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 21 May 2018 22:08:17 +0000</lastBuildDate><atom:link href="https://shocksolution.com/tags/soc1/index.xml" rel="self" type="application/rss+xml"/><item><title>Audit terminology: SAS 70, SSAE 16, SSAE 18, SOC1, SOC2, Type 1, Type 2</title><link>https://shocksolution.com/posts/audit-terminology-sas-70-ssae-16-ssae-18-soc1-soc2-type-1-type-2/</link><pubDate>Mon, 21 May 2018 22:08:17 +0000</pubDate><guid>https://shocksolution.com/posts/audit-terminology-sas-70-ssae-16-ssae-18-soc1-soc2-type-1-type-2/</guid><description>&lt;p&gt;If you are involved in information technology and compliance in a heavily regulated industry,  or work with larger organizations, you have probably run across the terms SAS 70, SSAE 16, SSAE 18, SOC 1 report, SOC 2 report, Type 1 Report, and Type 2 Report. These terms are frequently abused and misunderstood, even by compliance &amp;ldquo;experts,&amp;rdquo; so I&amp;rsquo;ve written this brief one-page summary. Everything I state below has a direct reference on the AICPA site; I have learned not to trust third-party sources in regards to compliance.&lt;/p&gt;</description></item></channel></rss>