A practical, hands-on program designed to help professionals understand, implement, and assess SOC 2 and IT General Controls (ITGC) with real-world clarity.
The SOC 2 module covers the fundamentals, differences from ISO 27001, and practical application of Type 1 and Type 2 engagements. Participants will learn to draft controls aligned with Trust Services Criteria (TSC), prepare and validate audit evidence, assess control effectiveness, and understand how auditors design testing procedures through real case studies.
The ITGC module focuses on core ITGC concepts, distinction between ITGC and ITAC, drafting risk control matrices (RCM), evidence validation, control assessment, and performing Test of Design (ToD) and Test of Operating Effectiveness (ToE). The training includes practical scenarios and hands-on examples to simulate audit environments.
Ideal for cybersecurity, audit, compliance, risk, and GRC professionals seeking strong execution-level knowledge and audit-ready capability.
