DORA → SOC 2 crosswalk
A control-by-control mapping between Digital Operational Resilience Act (EU 2022/2554) and SOC 2 (AICPA Trust Services Criteria). 4 mappings.
| DORA | SOC 2 | Relationship | Notes |
|---|---|---|---|
| Art. 10 Detection | CC7.2 Security event monitoring | PartialCurated | Journalisation, surveillance et détection |
| Art. 6 ICT risk management framework | CC1.1 Integrity and ethical values | RelatedCurated | Gouvernance et politique de sécurité |
| Art. 9 Protection and prevention | CC6.1 Logical access security controls | PartialCurated | Contrôle d'accès et identité |
| Art. 9 Protection and prevention | CC6.7 Restricting data transmission | PartialCurated | Cryptographie et protection des données |
Mappings marked “Official” derive from standards-body informative references; “Curated” mappings are authored by Cyber Compliance and provided for guidance only.