Regulatory Compliance, Governance and Security:

type II

1

November 25, 2009  8:20 PM

SAS 70 Audits and PCI DSS Assessments | Expert Advice from an Auditor



Posted by: Charles Denyer
charles denyer, payment card industry data security standards (PCI DSS), PCI DSS, pci dss assessments, SAS 70, type II

SAS 70 audits and PCI DSS assessments are truly starting to dominate the regulatory compliance landscape. For a large number of our firm's clients, we actively assess them for yearly SAS 70 and PCI DSS compliance. The chatter of late is surrounding what efficiencies of scale, if any, can be had...

November 17, 2009  7:33 PM

SAS 70 Audits | How Expensive are They and What is the true Cost?



Posted by: Charles Denyer
charles denyer, cost of sas 70 audit, How expensive is a SAS 70, SAS 70, SAS 70 CPA firm, Statement on Auditing Standards No. 70, type i, type II

As a SAS 70 auditor for a nationally recognized boutique CPA firm, i can honestly attest to the fact that SAS 70 pricing is still all over the map. I hear of SAS 70 Type I audits costing as little as $12,000 to SAS 70 Type II reports costing as much as $70,000. That's not too say these prices are...


September 28, 2009  12:44 AM

PCI DSS | SAS 70 | Finding Resources to Learn about Compliance



Posted by: Charles Denyer
audits, charles denyer, PCI DSS, SAS 70, type i, type II

PCI DSS and SAS 70 Type I and Type II audits are a mainstay in today's regulatory arena. As such, i'm often asked what are some of the best resources available to learn about the Payment Card Industry Data Security...


September 25, 2009  1:24 PM

SAS 70 Training Videos | The Best Way to Learn about Type I and Type II Audits



Posted by: Charles Denyer
audit cost, audit fieldwork, planning, sas 70 training videos, type i, type II

SAS 70 training videos are simply the best way to truly gain an understanding of the inner workings on Statement on Auditing Standards No. 70. As an auditor, i've been asked many times on this post and others if...


August 23, 2009  8:47 PM

Will HIPAA compliance ever have any Teeth like SAS 70 and PCI DSS?



Posted by: Charles Denyer
162, 45 CFR Parts 160, and 164, charles denyer, health insurance portability and accountability act, Health Insurance Reform: Security Standards, HIPAA, payment card industry data security standards, PCI, PCI DSS, SAS 70, The Department of Health and Human Services, type II

HIPAA, The Health Insurance Portability and Accountability Act, has been with us for years now. Upon reading through the vast and cumbersome documentation, one quickly realizes that HIPAA has many moving parts, enough to make you...


August 3, 2009  7:25 PM

SAS 70 Audits and PCI DSS Assessments | What you NEED to Know



Posted by: Charles Denyer
merchants, payment card industry data security standards, PCI DSS, pci dsss level 1 assessments, SAS 70, sas70, service organizations, service providers, type i, type II

SAS 70 audits and PCI DSS Assessments are on everybody's radar screen today, or though it seems. Particularly, SAS 70 Type II Audits and Payment Card Industry Data Security Standards (PCI DSS) Level I assessments. And why? Because many service organizations, merchants, and service providers are...


July 8, 2009  7:27 PM

SAS 70 Compliance | Why a Readiness Assessment is Essential for the Audit



Posted by: Charles Denyer
control environment, gap analysis, SAS 70, sas 70 readiness assessment, sas 70 resource guide, sas70.us.com, type i, type II

Many service organizations having to undergo SAS 70 Type I or SAS 70 Type II compliance would greatly benefit from a SAS 70 Readiness Assessment. So, let's clear the air as to what this actually is. A SAS 70 Readiness Assessment should be a proactive exercise which actually benefits the overall...


June 26, 2009  3:37 PM

SAS 70 Audit | Why a Readiness Assessment is Crucial



Posted by: Charles Denyer
charles denyer, internal control framework, sas 70 audit, sas 70 readiness assessment, type i, type II

If your organization is seeking to become SAS 70 Type I or Type II compliant in the near future, then it is a wise decision to embark on a SAS 70 Readiness Assessment. These assessments essentially help...


June 20, 2009  3:20 AM

SAS 70



Posted by: Charles Denyer
charles denyer, control environment, general controls report, sarbanes oxley act of 2002, SAS 70 Type I, sas70, Statement on Auditing Standards No. 70, type II

Statement on Auditing Standards No. 70, simply known as SAS 70 to many, has had a profound impact on regulatory compliance since the passage of the Sarbanes Oxley Act in 2002. As a SAS 70 auditor for many years, i've been asked a broad and wide range of...


May 4, 2009  4:20 PM

SAS 70 Certification | Expert Advice on Type I and Type II SAS 70 Audits



Posted by: Charles Denyer
audit scope, charles denyer, sample sas 70 type II report, sas 70 certification, sas 70 compliant, SAS 70 Type I, type II

SAS 70 Certification is everywhere these days, or so it seems. From small start-up organizations to large multi-national corporations, many people have been hit by the SAS 70 bug. What's also interesting to note are the vast differences you can see when...


1