Free Enterprise Security Readiness Check

Would your security program pass an enterprise customer's review?

The domains that appear in every enterprise security questionnaire, mapped to the SOC 2 Trust Services Criteria with ISO 27001 crosswalks. You get the gaps that stall deals, the evidence a reviewer will ask for, and the full assessment to take next.

10 review domains · 15 questions · ~8 minutes

Ready to see where you stand?

You'll get a computed readiness indicator across Governance & policy, Identity & access, Data protection, Infrastructure & application security, Monitoring & incident response, Continuity & recovery, Vendors & people, Evidence & answers, the evidence that would answer each gap, and the full assessment to take next. Any critical gap is called out on its own, even when the overall score looks strong.

Assessment methodology: aligned to the AICPA SOC 2 Trust Services Criteria (2017, with 2022 points of focus) and ISO/IEC 27001:2022 Annex A. It reports a readiness indicator from your answers; it is not an audit, an attestation or a prediction of any customer's decision.