Audits are decidedly imperfect, but on balance people tend to toe the line better on good practices when they know they're being audited.
arkadiyt 10 minutes ago [-]
For anyone unaware, a SOC3 is just a SOC2 with the audit details removed - it includes a high level statement from the company (Apple) and from the auditor (EY), that's it.
Also Apple certainly does invest heavily in security and privacy but SOC2's are so commoditized that it's like saying "look I can afford 50k", it's not particularly interesting
jtrn 3 minutes ago [-]
High security for a low value product.
qurren 11 minutes ago [-]
I thought they were working on M5 already? Why are they still auditing M3?
bstsb 32 minutes ago [-]
the page keeps 301ing to the home page for me - could be a region issue
Audits are decidedly imperfect, but on balance people tend to toe the line better on good practices when they know they're being audited.
Also Apple certainly does invest heavily in security and privacy but SOC2's are so commoditized that it's like saying "look I can afford 50k", it's not particularly interesting
https://archive.ph/JYC9B