Cloud PortalUpdated July 30, 20262 min read
Security Assurance readiness
Use Security Assurance to track MFA, SSO staging, alerts, and audit export readiness - not SOC 2 certification.
Security Assurance readiness
Security Assurance (Owner/Admin) summarizes configuration and measured operational-readiness signals for enterprise controls. It does not certify your organization or Trustity against SOC 2, ISO 27001, or any auditor report.
Open the dashboard
- Sign in as Owner or Admin.
- Open Security Assurance from the sidebar.
- Review control rows such as MFA policy, SSO metadata staging, alert routing, and audit archive/export posture.
- Review measured signals: recent alert delivery rate / five-minute SLO, restore-drill age, privileged-operator count, and the current operator’s MFA assurance signal.
- Use deep links to fix gaps (Identity, Sessions, Retention, Alerts).
How to read statuses
| Status language | Meaning |
|---|---|
| Enforced / On | Control is configured for the tenant |
| Staged / Preview | Metadata or partial capability saved; full GA behavior may still be missing |
| Optional / Off | Not enabled |
| Archive mode / SHA-256 header | Export integrity metadata available - not a signed or concurrency-safe tamper-evident attestation |
Measured signals are bounded operational indicators:
- The current MFA percentage is based on the active privileged session, not yet a complete factor census for every user.
- Restore drill age is based on an operator-recorded drill.
- Alert percentages use the recent outbox sample and should not be treated as a contractual SLA.
What to request from Trustity
For procurement packages, email security@trustity.co and ask for a Security Assurance readiness package. Do not treat marketing Trust Center language as proof of a completed SOC 2 audit opinion.
