Domain.Posture

SOC 2

The SOC 2 controls behind your domain-security answers.

Domain Posture runs an external security scan of your domain — DNS, email authentication, TLS, and more — and maps each finding to the SOC 2 Trust Services Criteria it supports, stamped beside the verdict, so your auditor sees the mapping without a manual cross-walk. (Domain Posture is not a SOC 2 audit and does not replace an auditor.)

Per-control mapping

CheckControlEvidence
CC6.6Authoritative DNS records demonstrate domain ownership and DNS hygiene.
CC6.7Mail-server topology is part of inbound boundary documentation.
CC6.1TLS certificate validity is a precondition for encrypted transport.
CC7.2TLS-RPT delivers operational telemetry on email transport failures.
CC2.3Domain registration data documents ownership and expiry.

The pack manifest cites the same controls per finding. See methodology v1.

Scanning this for client after client? Get a free scan across five client domains — one report, your firm on the cover, these control references already stamped beside each finding.