← ControlsCritical gap
CC6.1
Logical Access Controls
SOC 2 · Security
AI
AI explanation
Three privileged accounts currently don't meet the MFA requirement. Two are AWS IAM users with console access and one is a GitHub organization owner.
Remediation
- 1Enable MFA enforcement
- 2Review privileged accounts
- 3Remove unused administrator access
- 4Re-run automated test
Evidence
- AWS IAM configuration
- Google Workspace MFA policy
- GitHub organization settings
Affected systems
AWSGitHubGoogle Workspace