Regulatory Compliance, Governance and Security:

ITKE grandparent


January 17, 2009  8:00 PM

Payment Card Compliance | PCI DSS | Tips on Passing your PCI DSS Assessment



Posted by: Charles Denyer
change mangement for pci dss, payment card industry data security standards, pci compliance, PCI DSS, sas 70 audits, sas70, two-factor authentication for pci dss

Regarding PCI DSS, as a PCI QSA i'm often asked what's the most difficult hurdle that organizations need to overcome for ensuring PCI DSS compliance. Well, we could talk at length about some of the technical, I.T. challenges, such as two-factor authentication, encryption (though not...

January 17, 2009  3:26 AM

PCI DSS Compliance for Merchants and Service Providers | Compliance is MANDATORY



Posted by: Charles Denyer
governor tim pawlenty pci dss, merchants, MN plastic card security act, PCI DSS, service providers

That's right. Compliance for the Payment Card Industry Data Security Standards, simply known as PCI DSS, is mandatory for all merchants and many service providers. How mandatory? Enough for MN Governor Tim Pawlenty


January 17, 2009  12:21 AM

Payment Card Industry Data Security Standards | PCI DSS | It’s the LAW in Minnesota



Posted by: Charles Denyer
Gov. Tim Pawlenty and PCI DSS, merchants, MN PCI DSS, Payment Card Industry Data Security Standards MN, PCI DSS, service providers, The Minnesota Plastic Card Security Act

The Minnesota Plastic Card Security Act, signed by MN Governor Tim Pawlenty, essentially has codified various parts of the Payment Card Industry Data Security Standards (PCI DSS) into law....


January 16, 2009  3:46 PM

SAS 70 Audits & Data Centers | Tips on Preparing for the Audit



Posted by: Charles Denyer
change management sas 70, co-locations, environmental security, incident management, incident management sas 70, managed services sas 70, payment card industry, PCI, PCI DSS, physical security, SAS 70, sas 70 data centers, sas70

Today's data centers and managed services providers are complex businesses, providing customers with a wide array of services. As such, SAS 70 audits have become the standard compliance audit for assessing internal controls for data centers and managed...


December 31, 2008  11:36 PM

SAS 70 Audit Reports | Learn About SAS 70 by Obtaining a Sample Report



Posted by: Charles Denyer
SAS 70, SAS 70 Type I, sas70, type ii audit

Many service organizations who have to undergo a SAS 70 Type I or Type II audit have never had the ability to see or read what a final report looks like after the audit has been completed. With this now available, service organizations can gain...


December 31, 2008  11:30 PM

SAS 70 Audits | Understanding PRICING for SAS 70 Engagements



Posted by: Charles Denyer
cpa firm, Sarbanes-Oxley, sas 70 audit, sas 70 type i type ii, sas70, SOX

SAS 70 Type I and Type II audits have become common for many organizations providing critical outsourcing services to companies. Known as service organizations, they have all landed on the regulatory radar of having to be SAS 70 compliant, due...


December 31, 2008  11:25 PM

SAS 70 Audits and PCI DSS Compliance |What you NEED to Know



Posted by: Charles Denyer
asv, payment card industry data security standards, PCI DSS, pciassessment.org, qsa, SAS 70, sas 70 type ii audit, sas70.us.com

As an auditor, I am constantly approached by my clients desperately wanting to know if efficiencies can be obtained within the audit and assessment process for companies undergoing both a SAS70 audit and a PCI DSS...

Bookmark and Share     0 Comments     RSS Feed     Email a friend


December 31, 2008  11:19 PM

SAS 70 and Regulatory Audits | What is the Impact to our Economy?



Posted by: Charles Denyer
glbay, HIPAA, impacts of audits to economy, payment card industry, PCI, Sarbanes-Oxley, SAS 70, sas70, section 404, SOX

The impacts, in my opinion, are the following. Interestingly, the last decade has seen somewhat of a shift in auditing. That's not to say there has been a decrease in this specialized service, quite to the contrary. The shift has occurred as financial statement auditing has begun to see somewhat...


December 30, 2008  3:21 PM

SAS 70 | PCI DSS | 2009 Regulatory Compliance Checklist



Posted by: Charles Denyer
audits, payment card industry, payment card industry data security standards, PCI, pci assessment, pci compliance, PCI DSS, pci dss qsa, regulatory compliance, SAS 70, sas 70 audit report, SAS 70 checklist, sas 70 control objectives, SAS 70 readiness questionnaire, sas 70 sample report, SAS 70 Type I, sas 70 type ii, sas70, sas70 sample reports, Security, SOX, What is SAS 70?

When ushering in the new year festivities, keep in mind that a number of regulatory compliance issues will be facing your organization also as 2009 looms just around the corner. No, they're not stocking stuffers, rather, they can be considered expensive, time-consuming, and arduous, to say the...


December 30, 2008  2:37 PM

SAS 70 Audit Reports | Obtain a Sample SAS 70 Type II Audit



Posted by: Charles Denyer
SAS 70, sas 70 audit report, sas 70 control objectives, SAS 70 download, SAS 70 overview presentation, sas 70 sample report, SAS 70 Type I, sas 70 type ii, sas70, sas70 pricing, sas70 sample reports, What is SAS 70?

If you are seeking to learn more about SAS 70 Type I and SAS 70 Type II audits, then one of the most effective ways for truly gaining an understanding of the auditing standard is to see what the finished product looks like-that is, a final SAS...