Skip to main content

Board of Directors

Written by Brady Price

Board of Directors requirement

It's not always necessary for seed and pre-Series startups to have a board in place. In such situations, an executive oversight committee, which meets to discuss the business status, can be an appropriate substitute. As per SOC 2 requirements, these meetings should also include an independent member of the company, such as an investor or industry expert, who will contribute to discussions on security, data confidentiality, and system availability.

The auditor will expect to see evidence of at least an annual meeting between the executive leadership and senior management, where topics like financials, business goals and objectives, risks, security, legal issues, and other internal or external matters are discussed.

Therefore, our suggestion would be to arrange a meeting where these topics are addressed and to carefully document the meeting minutes for review.


Adding Board of Directors within Secureframe

To add your Board of Directors within Secureframe, please follow these steps:

  1. Click on your avatar, located in the top right corner.

  2. Choose 'Company Settings' from the dropdown menu.

  3. Navigate to the 'Configuration' tab.

  4. Under the 'Key Personnel' section, find 'Board of Directors' and click 'Add Member'.

Note: Secureframe does not provide a separate downloadable Independent Advisor Designation form. Add the independent advisor (or equivalent independent oversight member) here under Board of Directors.

Screenshot

Frequently Asked Questions (FAQ)

Where is the Independent Advisor Designation document?

  • Secureframe does not provide a separate downloadable Independent Advisor Designation form.

  • Add the independent advisor as a member under Company settingsConfigurationKey PersonnelBoard of Directors.

  • That entry is what Secureframe uses for SOC 2 documentation and related evidence, not a standalone file in the Data Room.

Did this answer your question?