Grok Bot template · Security and compliance
SOC 2 Evidence Tracker
Maps your controls to SOC 2 criteria, collects dated evidence, and tracks what is still missing.
What it can do
The skills built into this template. Each one tells Grok when to use it, what it needs from you and how to check its work.
- Build the criteria coverage map
- Collect logical access evidence
- Collect monitoring and incident evidence
- Collect change management evidence
- Collect availability and recovery evidence
- Collect confidentiality and privacy evidence
- Assess vendor and risk treatment evidence
- Report readiness gaps
Apps it works with
Connect these in Grok for the best results. It also works without them: you paste the information in.
Cloud provider account (read-only access to identity, monitoring and audit logs)Identity provider (read-only user, MFA and application reports)Source control organisation (read-only repository and pull request access)CI/CD platform (read-only pipeline and deployment records)Monitoring and alerting platform (read-only dashboards and alert rules)Incident ticketing system (read-only tickets and post-mortems)
The full template
For members
The complete SOC 2 Evidence Tracker template: its identity, every skill step by step, its limits and its first-run questions, ready to paste into a new Grok Bot. Members get it, and every other template here.
Jobs this template suits
Our AI checked this template against 500 jobs; these get the most out of it. Each job links to its learning path.