My CISO Partner SOC 2 Diagnostic
Self-assessment
A diagnostic from My CISO Partner

How ready are you for SOC 2?

A structured readiness assessment across the eight domains that determine whether you're ready for a SOC 2 report — the Common Criteria (CC1–CC9) plus the Availability, Confidentiality, Processing Integrity, and Privacy categories. You'll get a readiness score, a domain breakdown, and your most material gaps in plain language.

Free to run in about 20 minutes — no account needed.
8
readiness domains
40
evidence-based questions
0–5
maturity scale per domain
25 yrs
enterprise risk behind it

The maturity scale

Every question is scored on the same five-level scale. Answer for how things actually operate today — not the policy on paper. Score the reality, not the intent.

The eight domains

Mapped to the AICPA Trust Services Criteria (CC1–CC9 + categories)
Domain 1 of 6

Your results are ready

You've scored all six domains. Enter your email to unlock your maturity score, the domain-by-domain breakdown, and your most material gaps — we'll send a copy to keep.

Your results, plus the occasional note about the toolkit — nothing else, and never shared.
0.0
of 5.0

Your SOC 2 readiness

Maturity by domain

Where you're strongest — and where the programme is thin.

Domain scores

Averaged across the questions in each domain.

Your most material gaps

The lowest-scoring domains, framed as findings you could take to leadership.

Standards alignment

This assessment maps to the AICPA Trust Services Criteria. A high-level readiness view — the full criteria detail lives in the Controls Matrix. A SOC 2 report is issued only by a licensed CPA firm; validate against the official criteria and your auditor.

This is the diagnostic. The toolkit is the fix.

The full SOC 2 Toolkit turns this snapshot into a defensible assessment, a prioritised roadmap, and board-ready deliverables — with expert review available when you want it.

See the toolkit