Upcoming Webinar | AI Meets ISO: What Makes ISO 42001 Different from ISO 27001 & 27701 on July 17th @ 1:00 PM ET

Contact Us
Services
Services
Crypto and Digital Trust
Crypto and Digital Trust
Schellman Training
Schellman Training
Sustainability Services
Sustainability Services
AI Services
AI Services
About Us
About Us
Leadership Team
Leadership Team
Corporate Social Responsibility
Corporate Social Responsibility
Careers
Careers
Strategic Partnerships
Strategic Partnerships

Schellman Training

SOC Reporting Bootcamp

We provide your organization a continuous view into your assessments that span across a suite of services, timelines, and business units by leveraging our unique blend of proprietary tools.

Subscribe to Training Updates

Course Summary

In this three (3) day course, students will gain a comprehensive understanding of the history of SOC reporting, all current SOC reporting options, and a deep dive session on SOC 2. The course will explain how to request and use a vendor’s SOC report as part of an organization’s vendor risk management program, as well as the SOC reporting framework and components. The course will also explain the most common factors and considerations for selecting and/or using the best SOC report, including the most common pitfalls. This is the most comprehensive SOC reporting course offered by Schellman Training.

This course is eligible for continuing professional education (CPE) hours: 20 hours

Professional Fees: $2095 per student
Minimum Class Size: Five (5) students

Details

The SOC Reporting Bootcamp is provided through either an onsite or remote offering. This is a highly interactive instructor-led course designed to deliver or build upon prior understanding of SOC reporting fundamentals and prepare students on the most effective usage of SOC reports. This course is intended for both organizations considering SOC reporting, undergoing SOC examinations and want a deeper understanding,
and auditors seeking a better understanding of other SOC reporting options. All students will gain an understanding of the key planning, execution, and reporting considerations and decision points. Real-world scenarios, illustrations, challenge questions, and examples are part of the courseware.

This course is offered exclusively through Schellman’s LEAD instructors. Your instructor has years of relevant experience in the execution of all phases of SOC reporting, including the planning, execution, and reporting phases, both as an assessor and the recipient of these assessments. Students will have opportunities to ask questions directly to an assessor and subject matter expert in the field of SOC reporting.

Additional Course Options

This course can be delivered remotely or onsite, if preferred. A minimum class size of five (5) students is required for the course to run.

Course Materials

No prerequisites. Course materials will be presented by the instructor. CPE certificates to be issued within two (2) business days of event conclusion and satisfactory completion of student participation.

Additional Course Options

This course can be delivered remotely or onsite, if preferred. A minimum class size of five (5) students is required for the course to run.

In this course, students will:

  • Understand the qualifying (report failure) conditions and how to avoid them
  • Understand the SOC 2 description criteria and the controls criteria
  • Understand the SOC auditor’s primary requirements
  • Understand the common minimum evidentiary matter guidelines for satisfying auditor requests
  • Identify the appropriate ways to market and communicate the completion of your SOC examination (sales and marketing)
  • Understanding when it is appropriate / inappropriate to request a SOC from your vendor
  • Understand who is authorized to use the report, and how to become an authorized user
  • Understand the components of the auditor’s opinion letter and what the opinion means to vendor risk management
  • Understand the components of the report (including complementary user entity controls) and what the opinion means to vendor risk management
  • Identify the criteria for choosing the correct report
  • Understand the process for requesting the SOC report(s)
  • Understanding bridge or gap letters
  • Identify the assurance gap the SOC reporting brands are intended to close
  • Identify the primary participants and users of SOC reporting
  • Understand the SOC reporting brands available
  • Understand the primary similarities and differences across the five (5) SOC reporting brands
  • Identify the components of each SOC report
  • Identify the major scoping aspects for each report
  • Identify the primary use cases for each report
  • Identify the primary purpose and intended use of each SOC report
  • Understand the primary similarities and differences of the SOC compared to the other SOC reporting brands
  • Understand the organization’s obligations in the SOC examination process
  • Identify the major planning considerations for the SOC report
  • Identify the necessary documents not included in the SOC report
  • Understand the common pitfalls in the SOC reporting process
  • Identify the principal service commitments and requirements and their relevance in the SOC 2 reporting process
  • Understand the qualifying (report failure) conditions and how to avoid them
  • Understand the SOC 2 description criteria and the controls criteria
  • Understand the SOC auditor’s primary requirements
  • Understand the common minimum evidentiary matter guidelines for satisfying auditor requests
  • Identify the appropriate ways to market and communicate the completion of your SOC examination (sales and marketing)
  • Understanding when it is appropriate / inappropriate to request a SOC from your vendor
  • Understand who is authorized to use the report, and how to become an authorized user
  • Understand the components of the auditor’s opinion letter and what the opinion means to vendor risk management
  • Understand the components of the report (including complementary user entity controls) and what the opinion means to vendor risk management
  • Identify the criteria for choosing the correct report
  • Understand the process for requesting the SOC report(s)
  • Understanding bridge or gap letters

Stay up-to-date

Don't see a course option above that fits? Subscribe here to be kept in the loop on all of the new and upcoming training opportunities.

Stay up-to-date

Don't see a course option above that fits? Subscribe here to be kept in the loop on all of the new and upcoming training opportunities.