Service Organization Control (SOC) reports evaluate the controls at service organizations and their impact on user entities. With the Sarbanes-Oxley Act of 2002, user entities were required to thoroughly evaluate SOC reports from their service organizations. However, most user entities do not fully understand SOC reports and how to properly assess them. A comprehensive evaluation of a SOC report examines factors like the scope, standards used, control objectives tested, and any issues or deficiencies identified.