Getting started

Setting up your workspace

Your ReadySOC workspace is where your entire SOC 2 compliance program lives. Setting it up correctly from the start saves time and keeps your team organized.

Step 1 — Sign in for the first time

1
Enter your work email Go to readysoc.com/app/login.php and enter your work email address.
2
Check your inbox You'll receive a sign-in link by email. It expires in 15 minutes, so open it promptly.
3
Complete onboarding On first sign-in, you'll be asked for your name and company name. This creates your workspace.

Step 2 — Set your company name

Your company name appears on your audit report and is visible to all team members. To update it, go to Settings → General and edit the Company Name field.

Step 3 — Review your scope

ReadySOC pre-loads all 21 SOC 2 controls across all 5 Trust Service Criteria. Your first task is to mark any controls that don't apply to your business as Not Applicable.

Common examples:

  • If you don't make uptime commitments to customers, Availability controls (A1.1, A1.2, A1.3) may not apply.
  • If you don't collect personal information about individuals, Privacy controls (P1.0, P3.1, P4.1) may not apply.

Tip: When in doubt, keep a control in scope. It's better to demonstrate more controls than to have an auditor question why something was excluded.

Step 4 — Invite your team

SOC 2 is a team effort. Invite your engineering lead, security person, and anyone else involved in compliance. See Inviting your team for a step-by-step guide.

Step 5 — Assign control owners

For each control, assign an owner — the person responsible for implementing and maintaining it. This creates accountability and makes it easy to see who's working on what. See Assigning owners and due dates.