cc7.2-4-001

CC7.2 · D4 · f1

D4
Difficulty
4
Gaps
1
Red Herrings
51%
Avg Score

Task

You are a SOC 2 auditor evaluating Atlas Cloud's monitoring and anomaly detection controls for the Q4 2025 observation period (October 1 — December 31, 2025). Review the monitoring policy, SIEM coverage report, alert response log, exception register, and any supporting documentation. Assess whether CC7.2 requirements for monitoring and anomaly detection are met. Identify any gaps where controls are not operating as designed. Be careful to distinguish between genuine gaps and situations where apparent issues have valid explanations.

Evidence

Findings

IDTypeSeverityFinding
F-001red_herringmediumLegacy batch reconciler not integrated with SIEM
The SIEM coverage report shows legacy-batch-reconciler (AC-SVC-020) is not integrated with the SIEM. This appears to be a monitoring gap — a production service without security monitoring. However, th...
F-002gaphighNew microservice deployed 47 days without SIEM integration
The real-time-collab-service (AC-SVC-019) was deployed to production on November 15, 2025. As of December 31, 2025 — 47 calendar days later (approximately 33 business days) — the service has not been ...
F-003gapmediumTwo critical alert SLA breaches during Q4
The alert response log shows 2 Critical-severity alerts where the 15-minute response SLA was missed: ALT-Q4-044 (Tor exit node connection, responded in 19 minutes — 4 minutes late, team occupied with ...
F-004gapmediumNo evidence of monthly alert tuning reviews
The monitoring policy Section 4.3 requires monthly alert tuning reviews covering false positive rates, threshold adjustments, new detection rules, and documentation in the 'Alert Rule Change Log.' The...
F-005gapmediumNo evidence of daily log review documentation
The monitoring policy Section 5 requires daily log reviews by the Security Operations team covering alert summaries, authentication anomalies, high-privilege activity, and data access patterns. Sectio...

Results

ModelProviderScoreRecallPrec.F1GapsReported
Sonnet 4.6Anthropic89%100%80%89%4/45
Opus 4.7Anthropic67%100%50%67%4/48
GPT-5.5OpenAI67%75%60%67%3/45
GPT-4.1OpenAI20%25%17%20%1/46
Haiku 4.5Anthropic42%100%27%42%4/415
GPT-4oOpenAI20%25%17%20%1/46