When deciding on a compliance automation software it is usually recommended that you simply try to find one particular that gives: Includes a new illustrative report Which may be applied when undertaking and reporting on the SOC 2+ evaluation. PCI DSS fines can vary from payment processor to payment processor, https://www.nathanlabsadvisory.com/soc-2.html