← Crosswalk explorer

ISO/IEC 42001 SOC 2

1 canonical controls in Keel's library satisfy clauses of both ISO/IEC 42001 and SOC 2. Implement each once, attach the evidence once, and it counts toward each standard. The overlap is the work you don't repeat.

1 shared controls ISO/IEC 42001 · 2023: 15 in library SOC 2 · 2017 TSC (rev. 2022): 25 in library
Start free with ISO/IEC 42001 + SOC 2 See all pairs

Controls that satisfy both

Canonical control ISO/IEC 42001 clauses SOC 2 clauses
Internal audit program
A risk-based internal audit program evaluates conformity and effectiveness at planned intervals.
9.2 CC4.1

Clause identifiers (ISO/IEC 42001 and SOC 2) are referenced factually for mapping. Keel is not affiliated with or endorsed by the bodies that publish these standards. Control descriptions are Keel's own; a framework's full authored control count is on its framework page.

Why this is one project, not two

On a crosswalk-native model, SOC 2 mostly lights up controls you already built for ISO/IEC 42001. You're not re-uploading the same screenshot for a second audit. You apply the framework and see the genuine delta worth working. That's the whole idea behind collect once, comply everywhere.