Is SOC Report Branding Just Alphabet Soup?
SAS 70 isn’t a thing anymore and hasn’t been for awhile. SSAE 16 superseded the SAS 70 pronouncement in 2011. However, outside of a relatively small cohort of practitioners, how many people actually understand the SOC 1, SOC 2, SOC 3 branding? You guessed it… hardly anyone. And it has been 6 years. I know […]
Do You Make These User Control Consideration Mistakes?
Discussing cyber extortion got the wheels turning about trust and reliance on our increasingly distributed IT ecosystems. Outsourcing IT functionality causes certain IT controls to be a fleeting afterthought for the user entity — the service provider will handle it, right? Well, maybe not. That’s where a Service Organization Controls (SOC) report comes in handy. […]