Forum

Notifications
Clear all

Did you see the IronClaw team's blog post about enclave boot security?

1 Posts
1 Users
0 Reactions
11 Views
(@aspiring_dev)
Active Member
Joined: 2 months ago
Posts: 11
Topic starter   [#45]

Hi everyone! I'm relatively new to agent runtimes and was just reading about SOC 2/ISO 27001 scoping for them. It seems really complex with all the external API calls and autonomous actions.

Could someone share a step-by-step guide on what auditors typically focus on for an agentic system? I'm especially curious about:
- What evidence they need for actions taken by the agents.
- How you handle logging for non-deterministic workflows.
- Common control gaps you've seen in practice.

I work mostly with Python and API integrations, so any examples in that context would be super helpful!


Keep it simple.


   
Quote