{"product_id":"n8n-workflow-collect-soc-2-iso-27001-evidence-github-aws-google","title":"n8n Workflow: Collect SOC 2 \u0026 ISO 27001 Evidence (GitHub, AWS, Google)","description":"\u003ch3\u003eRun a monthly SOC 2 + ISO 27001 evidence collection check across GitHub, Google, and AWS—then share the gaps to Slack.\u003c\/h3\u003e\n\u003cp\u003eThis n8n workflow automatically gathers compliance-relevant evidence from \u003cstrong\u003eGitHub\u003c\/strong\u003e, \u003cstrong\u003eGoogle Workspace (Admin SDK Directory)\u003c\/strong\u003e, and \u003cstrong\u003eAWS IAM\u003c\/strong\u003e, logs results into \u003cstrong\u003eGoogle Sheets\u003c\/strong\u003e, archives a period-stamped JSON snapshot to \u003cstrong\u003eGoogle Drive\u003c\/strong\u003e, and posts an \u003cstrong\u003eOpenAI-generated compliance gap digest\u003c\/strong\u003e to \u003cstrong\u003eSlack\u003c\/strong\u003e.\u003c\/p\u003e\n\n\u003ch3\u003eWhat this workflow does\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003eRuns monthly:\u003c\/strong\u003e scheduled for the \u003cstrong\u003e1st of every month at 6:00 AM\u003c\/strong\u003e.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eGitHub evidence:\u003c\/strong\u003e fetches all repositories in a GitHub organization, filters to active repos, and checks \u003cstrong\u003edefault-branch protection settings\u003c\/strong\u003e via the GitHub API.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eGoogle Workspace evidence:\u003c\/strong\u003e lists active users using the \u003cstrong\u003eGoogle Admin SDK Directory API\u003c\/strong\u003e, evaluates \u003cstrong\u003e2-Step Verification enrollment and enforcement\u003c\/strong\u003e, including checks for \u003cstrong\u003eadmin accounts\u003c\/strong\u003e.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eAWS IAM evidence:\u003c\/strong\u003e generates and downloads an \u003cstrong\u003eAWS IAM credential report\u003c\/strong\u003e, then evaluates root hardening, user MFA, access key rotation age, and stale accounts against configured policy thresholds.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eControl mapping + readiness stats:\u003c\/strong\u003e merges evidence, maps each check to \u003cstrong\u003eSOC 2\u003c\/strong\u003e and \u003cstrong\u003eISO 27001\u003c\/strong\u003e control IDs, and calculates per-control and overall readiness.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eReporting:\u003c\/strong\u003e appends evidence rows to an \u003cstrong\u003e“Evidence Log”\u003c\/strong\u003e tab and upserts summaries into a \u003cstrong\u003e“Control Dashboard”\u003c\/strong\u003e tab in Google Sheets.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eArchive + digest:\u003c\/strong\u003e saves a formatted JSON evidence snapshot to \u003cstrong\u003eGoogle Drive\u003c\/strong\u003e and uses \u003cstrong\u003eOpenAI\u003c\/strong\u003e to draft a monthly gap analysis posted to \u003cstrong\u003eSlack\u003c\/strong\u003e.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eUse cases\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003eMonthly internal audits for \u003cstrong\u003eSOC 2\u003c\/strong\u003e and \u003cstrong\u003eISO 27001\u003c\/strong\u003e readiness using real operational evidence.\u003c\/li\u003e\n  \u003cli\u003eAutomating recurring compliance monitoring for SaaS operators that use \u003cstrong\u003eGitHub\u003c\/strong\u003e, \u003cstrong\u003eGoogle Workspace\u003c\/strong\u003e, and \u003cstrong\u003eAWS IAM\u003c\/strong\u003e.\u003c\/li\u003e\n  \u003cli\u003eCentralizing control dashboards and stakeholder updates through \u003cstrong\u003eGoogle Sheets\u003c\/strong\u003e and \u003cstrong\u003eSlack\u003c\/strong\u003e.\u003c\/li\u003e\n\u003c\/ul\u003e\n\n\u003ch3\u003eTechnical details\u003c\/h3\u003e\n\u003cul\u003e\n  \u003cli\u003e\n\u003cstrong\u003en8n schedule + workflow logic\u003c\/strong\u003e: set, code, wait, merge, slack, sticky note.\u003c\/li\u003e\n  \u003cli\u003e\n\u003cstrong\u003eIntegrations\u003c\/strong\u003e: GitHub API (branch protection), Google Admin SDK Directory (2FA enforcement), AWS IAM credential report (MFA\/root\/access key rotation\/stale accounts), Google Sheets, Google Drive, Slack, and OpenAI.\u003c\/li\u003e\n\u003c\/ul\u003e","brand":"N8N Commerce","offers":[{"title":"Default Title","offer_id":46172919693491,"sku":"N8N-20606","price":27.99,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0749\/6279\/6723\/files\/wjTYp6zwrr6RsIy7LcTEM_J1zKKKmJ.png?v=1791363811","url":"https:\/\/buyflowscripts.com\/products\/n8n-workflow-collect-soc-2-iso-27001-evidence-github-aws-google","provider":"N8N Commerce","version":"1.0","type":"link"}