--- tags: [实体, 组织] created: 2026-09-16 updated: 2026-09-16 sources: [raw/notes/2026-09-16-what-is-soc-2-compliance.md] --- # AICPA > 美国注册会计师协会,[[SOC 1]] 与 [[SOC 2]] 两类服务组织控制标准的制定者。 ## 简介 AICPA(American Institute of CPAs)在本文中的角色是**标准来源**:SOC 系列报告均由它开发并发布。理解合规体系时,这是链条的起点 —— 标准定义了什么算合规,[[Trust Services Criteria]] 则是标准内部的具体准则。 ## 关键信息 - **类型**:组织(行业协会) - **领域**:会计、审计、合规标准制定 - **产出**:[[SOC 1]]、[[SOC 2]] 等报告框架 - **相关概念**:[[Trust Services Criteria]] - **出处**:本文(Fortinet 术语页)仅在「Developed by the American Institute of CPAs (AICPA)」语境中出现,未展开介绍该机构本身 ## 详细内容 - SOC 2 是「developed by the American Institute of CPAs (AICPA)」的自愿性标准。 - SOC 1 与 SOC 2「both come from the AICPA」,但目标不同 —— 同一个制定者、两套并行体系。 ## 不同素材中的观点 暂无其他素材提及该机构。 ## 相关页面 - [[SOC 2]] - [[SOC 1]] - [[Trust Services Criteria]] - [[合规与审计]]