Skip to main content
Trust centerSOC 2 readinessEvidence operations

Logs

Logging and monitoring evidence for failed logins, MFA changes, permission changes, production access, admin actions, security alerts, and audit retention.

These pages describe SignalEDI's readiness posture and evidence workflow. They are not a SOC 2 attestation or certification claim.

Evidence reviewers ask for

  • AuditLog extracts and hash-chain references
  • SIEM source inventory and alert routing export
  • Privileged/high-severity evidence export runs

Operating controls

  • Security event classification
  • Centralized alerting for critical events
  • Retained audit history for privileged actions

Owner

Engineering Lead

Cadence

Continuous collection with weekly and quarterly exports

Audience

Auditors, security reviewers, and operators

Company controls

Related company pages

9 operating areas

Policies

Policy library

Approved policy surfaces for information security, access control, acceptable use, change management, incident response, backup/restore, vendor management, and HR security.

Security

Security posture

Security posture map for identity, MFA, RBAC, tenant scoping, encryption expectations, logging, monitoring, and secure SDLC evidence.

Vendor management

Vendor register

Vendor lifecycle evidence for platform providers, subprocessors, SOC 2 reports, DPAs, BAAs where applicable, renewal review, and vendor incident handling.

Employee training

People compliance

People-compliance evidence for security awareness, policy acknowledgment, privileged-role onboarding, background-check tracking, and annual refresh requirements.

Change management

Change traceability

Traceability for production changes from request to PR, review, CI, deployment, verification, rollback planning, and emergency-change retrospective.

Incident response

IR and CAPA

Incident lifecycle evidence for severity classification, communications, post-incident review, corrective and preventive actions, and customer/regulatory notification decisions.

Access reviews

Access review

Quarterly access review evidence for users, privileged roles, MFA compliance, stale accounts, API keys, service accounts, and vendor-console admins.

Backups

Continuity evidence

Backup and disaster-recovery evidence for approved RTO/RPO, daily backup health, provider retention proof, restore drills, and tabletop validation.

Penetration tests

Testing evidence

Penetration-test planning and evidence handling for scoped external testing, remediation tracking, retest evidence, and customer-safe summaries.

© 2026 SignalEDI Inc. All rights reserved.