Glossary

SOC 2 Type 1

A SOC 2 Type 1 is an attestation report in which an auditor evaluates whether a company’s security controls were suitably designed — and its system fairly described — as of a single date. It examines design only; a SOC 2 Type 2 goes further and tests whether controls operated over a period.
Assemble Your GRC Team
Last updated July 26, 2026