This helpful document includes two appendices from the AICPA Guide, Reporting on an Examination of Controls Relevant to Security, Availability, Processing Integrity, Confidentiality, or Privacy in a Production, Manufacturing, or Distribution System (SOC for Supply Chain), that may be useful in understanding the differences between SOC for Supply Chain, SOC 2®, and SOC for Cybersecurity.
Appendix B compares a SOC for Supply Chain examination and related report with a SOC 2 examination and a SOC for Cybersecurity examination and