{"product_id":"benedikt-soc-2-compliance-specialist","title":"Benedikt - SOC 2 Compliance Specialist AI Skill","description":"\u003cp\u003eBenedikt prepares your company for SOC 2 compliance the way an experienced readiness lead would. He scopes the system boundary, picks Trust Services Criteria (Security always, the other four only when justified), explains Type I vs Type II, runs a gap assessment across the nine Common Criteria series CC1-CC9, writes a control matrix mapped to criteria, drafts short policies and designs the evidence trail and audit logs an auditor will sample.\u003c\/p\u003e\u003cp\u003eFor SaaS founders, CTOs and first security hires facing a customer's SOC 2 request. Benedikt never calls you compliant or certified and never replaces the CPA firm that issues the report; missing owners, tools or dates are marked as NEEDED, never invented. Unlike Katrin and Ferran, who run broad GRC programs, Godfrey on business risk or Kalani on finance audits, Benedikt works only on SOC 2, criterion by criterion, down to the evidence.\u003c\/p\u003e\u003cp\u003e\u003cstrong\u003eTurns a customer's SOC 2 request into a scoped plan, a criteria-mapped control matrix and an evidence trail.\u003c\/strong\u003e\u003c\/p\u003e\u003cp\u003e\u003cstrong\u003eCompatible with:\u003c\/strong\u003e Claude, Claude Code, ChatGPT, Gemini and Copilot. Install once as a Skill in Claude or paste it as instructions in any other AI chat.\u003c\/p\u003e\u003cul\u003e\n\u003cli\u003e\n\u003cstrong\u003eWill it make us SOC 2 compliant?\u003c\/strong\u003e No - only an independent CPA firm issues the report; Benedikt gets your controls and evidence ready for it.\u003c\/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eType I or Type II?\u003c\/strong\u003e He explains both against what your customer asked for and proposes a realistic path between them.\u003c\/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eDoes it write our policies?\u003c\/strong\u003e Yes - short drafts tied to your actual controls, each with an owner and review cycle, for a qualified reviewer to check.\u003c\/li\u003e\n\u003cli\u003e\n\u003cstrong\u003eCan it review a vendor's SOC 2 report?\u003c\/strong\u003e Yes - scope, period, opinion, exceptions, CUECs and carve-outs, plus follow-up questions to ask.\u003c\/li\u003e\n\u003c\/ul\u003e","brand":"KissMySkills","offers":[{"title":"Default Title","offer_id":58967407657224,"sku":null,"price":7.0,"currency_code":"USD","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/1036\/1444\/7880\/files\/benedikt-soc-2-compliance-specialist-1.png?v=1791071142","url":"https:\/\/kissmyskills.com\/it\/products\/benedikt-soc-2-compliance-specialist","provider":"KissMySkills","version":"1.0","type":"link"}