SOC 2 Reports – Structure, Usage, and Review
SOC 2 Reports – Structure, Usage, and Review
CPE Credit:
1
Overview
Description:
This course provides a comprehensive overview of SOC 2 reports, focusing on their structure, purpose, and how to interpret and apply them in a compliance or risk management context. Participants will learn about the five Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy), the difference between Type I and Type II reports, and the key components of a SOC 2 report including the system description, management assertion, and testing results. The course also covers common pitfalls in relying on SOC 2 reports and best practices for evaluating scope, subservice providers, and complementary user controls. Designed for auditors, compliance professionals, and vendor risk reviewers, this session equips attendees to effectively analyze and apply SOC 2 reports in real-world scenarios.
This event may be a rebroadcast of a live event and the instructor will be available to answer your questions during the event.
Field of Study:
Auditing (1 CPE)
Instructor
Instructor:
Jen Nelson, CISA, CIA
Additional Details
Who should attend:
Internal auditors, IT auditors, SOX / compliance professionals, Risk management professionals, Vendor risk / third-party risk professionals, Information security professionals, Procurement professionals involved in vendor assessments, External auditors
Program Level:
Basic
Program Content:
The major topics that will be covered in this course include:
- Comprehensive overview of SOC 2 reports, focusing on their structure, purpose, and how to interpret and apply them in a compliance or risk management context.
- The five Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy).
- The difference between Type I and Type II reports.
- The key components of a SOC 2 report including the system description, management assertion, and testing results.
Learning Objectives:
After attending this presentation, you will be able to…
- Identify the purpose of SOC 2 reports and the types of SOC 2 reports.
- Identify the Trust Services Criteria and recognize when each criterion is applicable.
- Identify the structure and contents of a SOC 2 report.
- Recognize common use cases for a SOC 2 report.
Prerequisites:
None
Advanced Preparation:
None
Developed By:
Dunkin Consulting
Format:
Group-Internet-Based
Course Code:
DCJNS2R1
Our Partners






























NASBA Sponsor
SOC 2 Reports – Structure, Usage, and Review
Course Code:
DCJNS2R1
Program Level:
Basic
Description:
This course provides a comprehensive overview of SOC 2 reports, focusing on their structure, purpose, and how to interpret and apply them in a compliance or risk management context. Participants will learn about the five Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy), the difference between Type I and Type II reports, and the key components of a SOC 2 report including the system description, management assertion, and testing results. The course also covers common pitfalls in relying on SOC 2 reports and best practices for evaluating scope, subservice providers, and complementary user controls. Designed for auditors, compliance professionals, and vendor risk reviewers, this session equips attendees to effectively analyze and apply SOC 2 reports in real-world scenarios.
This event may be a rebroadcast of a live event and the instructor will be available to answer your questions during the event.
Program Content:
The major topics that will be covered in this course include:
- Comprehensive overview of SOC 2 reports, focusing on their structure, purpose, and how to interpret and apply them in a compliance or risk management context.
- The five Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy).
- The difference between Type I and Type II reports.
- The key components of a SOC 2 report including the system description, management assertion, and testing results.
Learning Objectives:
After attending this presentation, you will be able to…
- Identify the purpose of SOC 2 reports and the types of SOC 2 reports.
- Identify the Trust Services Criteria and recognize when each criterion is applicable.
- Identify the structure and contents of a SOC 2 report.
- Recognize common use cases for a SOC 2 report.
Who should attend:
Internal auditors, IT auditors, SOX / compliance professionals, Risk management professionals, Vendor risk / third-party risk professionals, Information security professionals, Procurement professionals involved in vendor assessments, External auditors
Developed By:
Dunkin Consulting
Instructor:
Jen Nelson, CISA, CIA
CPE Credit:
1
Field of Study:
Auditing (1 CPE)
Prerequisites:
None
Advanced Preparation:
None
Format:
Group-Internet-Based
OR
Register By Phone: Call 877.370.2220 and press “1” for the webinar hotline to register
Price
Single Registration
$55.00
Upcoming Dates
- 10/5/2026 @ 4:30 PM
- 10/16/2026 @ 9:30 AM
- 10/22/2026 @ 9:30 AM
- 10/28/2026 @ 9:30 AM
- 11/3/2026 @ 1:00 PM
- 11/9/2026 @ 4:30 PM
- 11/20/2026 @ 3:30 PM
- 11/24/2026 @ 9:30 AM
- 12/2/2026 @ 2:30 PM
- 12/8/2026 @ 4:30 PM
- 12/14/2026 @ 10:30 AM
- 12/26/2026 @ 10:00 AM
- 12/29/2026 @ 10:00 AM
- 1/5/2027 @ 9:30 AM
- 1/12/2027 @ 3:00 PM
- 1/18/2027 @ 3:00 PM
- 1/29/2027 @ 11:00 AM
- 2/4/2027 @ 3:00 PM
- 2/9/2027 @ 3:00 PM
- 2/16/2027 @ 3:00 PM
- 2/22/2027 @ 9:30 AM
- 3/5/2027 @ 4:00 PM
- 3/11/2027 @ 2:30 PM
- 3/17/2027 @ 9:30 AM
- 3/23/2027 @ 1:00 PM
- 3/29/2027 @ 3:00 PM
- 4/9/2027 @ 2:00 PM
- 4/15/2027 @ 1:30 PM
- 4/21/2027 @ 4:00 PM
- 4/27/2027 @ 11:00 AM
All times are Eastern Time Zone