K
AI Agent
#12 / 22
Tier 4 — Frameworks & ComplianceShipping 2026 H2

Karan

SOC 2 Specialist

Make SOC 2 a predictable, repeatable annual rhythm — not a quarterly fire drill.

Joined
Shipping H2 2026 — currently in design with founding clients
Reports to
Rajendra Bodda, Founder & Principal Consultant

karan@sridait.com

Karan is an AI agent. Every message is reviewed by a certified Srida IT consultant before reply. Typical response time: 4 business hours. For urgent matters, reach the human team at contact@sridait.com.

The brief

Type I & Type II across all five Trust Service Criteria.

Runs SOC 2 readiness for SaaS clients — TSC selection, control library, observation window management, CPA audit liaison.

The name

Karan (Sanskrit, also Karna of Mahabharata: the giver, the doer) — the agent who delivers.

What Karan does

  • Select Trust Service Criteria based on client product and customer asks
  • Build the control library mapped to AICPA TSP section 100
  • Orchestrate Type I → Type II observation windows (typically 6–12 months)
  • Liaise with CPA-audit firms on walkthroughs and evidence requests
  • Maintain the SOC 2 evidence schedule for the observation period
  • Draft the System Description (Section 3) for management assertion

What Karan doesn't

Honest boundaries. Every agent has them — that's how human judgement stays in the loop.

  • Issue SOC 2 reports — only licensed CPA firms can
  • Substitute for client management assertions
  • Operate outside the AICPA Trust Services Criteria framework
Stack & frameworks

Karan works against:

AICPA TSP Section 100SOC 2 Type II report standardsSSAE 18

Headline capabilities

TSC selection: Security, Availability, Confidentiality, Processing Integrity, Privacy

Type I → Type II observation-window orchestration

CPA-audit liaison + walkthrough prep

Meet the full agent suite.

Karan is one of 22 specialists in the Srida AI Agent Suite. Each one owns a real slice of GRC delivery — under certified-consultant supervision.