Project Brief
Interlaced is an IT consulting and managed services firm with a formal security practice and a target of achieving SOC 2 Type II certification. This internship placed a student inside that live effort, working alongside the Head of Security to prepare evidence, improve documentation, and help close gaps before audit — not a simulated compliance exercise, but work that fed a live readiness program, including audit-ready evidence packages, remediation tracking, control mapping, and internal risk documentation.
Capstone Team
Project Workstreams
Control Mapping
Mapped current security controls to SOC 2 Trust Services Criteria across Security, Availability, Confidentiality, Privacy, and Processing Integrity.
Policy Remediation
Supported updates to access control, change management, incident response, vendor management, and backup/recovery policies so documentation matched operating reality.
Evidence Collection & Risk Tracking
Built organized, audit-ready evidence packages and contributed to the internal risk register and remediation tracker, documenting risks, owners, and closure timelines.
Deliverables
Track Scope: Expected Deliverables
Skills Demonstrated