iSnare.com - Free Content Articles Directory
Authors Contents [Advanced Search][Add OpenSearch][Job Search]
Distribute your articles to thousands of article sites for only $2 and below! Read more...

Index  Computers and Technology
 

Who Needs To Have A SAS 70 Audit Performed?

 
[ Contact the Author] [ Send to a Friend] [ Article Publisher] [Make PDF] [ Print] [ Bookmark & Share]
 
Read our Terms of Service before reprinting this article. The submitter specified above has claimed the rights to this article.
S. Kate Hobbs

SAS 70 auditing was put into force by the American Institute of Certified Public Accountants in 1992 and is something that has become especially popular in recent years. This has a lot to do with the incredible growth of legislation regarding compliance. An example of a piece of regulation that is focused on compliance is the Sarbanes-Oxley Act of 2002.

You will also find that there are other pieces of legislation such as HIPAA that have been put into place to protect individuals from being violated in some way, particularly in the area of privacy. SAS 70 does the same thing. It keeps individuals from being violated in some way. One way in particular is some sort of private information being released that could be used by others for malicious purposes.

But what does all of this mean and how does an SAS 70 audit protect consumers?

What this means is that there is corporate governance over business practices, especially those practices that could result in a consumer being harmed. The audit ensures that there are no violations taking place and, if there are, those issues can be fixed so that consumers are protected.

Who needs to have an SAS 70 Audit?

If you are required to have an SAS 70 audit, then you probably work in some sort of service organization. You may provide outsourcing services to user organizations. You could be a payroll company that deals with people's payment information. You could even be a data center providing services to a company. No matter what, you are working in an industry that handles sensitive information. If that information is released in some way, it can find its way into the wrong hands and be used to hurt a company or the consumers who entrust their information to that company.

Where SAS 70 Begins

First of all, if you are an organization that is required to be SAS 70 compliant, you will be asked to do so. You have to ask why it is you need to be compliant and what the long-term expectations are. You have to find out if you are being checked just once, if you have to be evaluated on a yearly basis, and if you need Type II compliance or Type I compliance.

The difference between Type I compliance and Type II is that the Type II audit is more extensive than Type I. Whether or not you need to have a Type II audit depends on what the entity requiring your compliance tells you. They may find that you need a more extensive audit to check the various parts of your business.

What's audited?

Your logical security, network security, physical security, executive tone, human resources, the life cycle of your systems development, environmental security, incident management, and so much more are checked for compliance. These are all components that contribute to the safety of those who work for your company and of those who are customers of your company.

So it is fair to say that if you work in the services industry, you may be asked to be SAS 70 compliant, especially if you handle consumer information such as credit card information, social security numbers, and other personal information. If you hold personal internal information that belongs to another company, you will be asked to be SAS 70 compliant. Not being compliant repeatedly could result in the closure of your operation because that is putting consumer information at risk. So it is better to find out what needs to be done to become compliant from the very beginning so that there is nothing to have to worry about if a future audit is to take place.

Important NoticeDISCLAIMER: All information, content, and data in this article are sole opinions and/or findings of the individual user or organization that registered and submitted this article at Isnare.com without any fee. The article is strictly for educational or entertainment purposes only and should not be used in any way, implemented or applied without consultation from a professional. We at Isnare.com do not, in anyway, contribute or include our own findings, facts and opinions in any articles presented in this site. Publishing this article does not constitute Isnare.com's support or sponsorship for this article. Isnare.com is an article publishing service. Please read our Terms of Service for more information.

Fusepoint delivers managed hosting and IT services for deploying and hosting e-business, business continuity solutions, security and disaster recovery solutions. PCI DSS, SAS 70 and CICA 5970 (Type II) audited data center.

Article Tags: information [See Dictionary], sas [See Dictionary], type [See Dictionary]
Got a question about this article? Ask the community!
Article published on April 08, 2009 at Isnare.com
 
Rate this article:

What Are The Benefits Of Dedicated Hosting Vs. Shared Hosting
Submitted by: S. Kate Hobbs

What are the Benefits of Dedicated Hosting vs Shared Hosting There are different types of hosting and of those types of hosting are dedicated and shared hosting...

Who Invented Dell Computers?
Submitted by: S. Kate Hobbs

The invention and the history of the Dell computer is quite interesting First of all, it was in 1984 when Michael Dell, a student at the University of Texas at Austin, created the company PC’s Limited...

5 Tips On Choosing A Managed Hosting Service
Submitted by: S. Kate Hobbs

When you get managed hosting, it is important to realize that there are many options available to you...

Blackberry Applications Commonly Used At Work
Submitted by: S. Kate Hobbs

Blackberry has changed the lives of people in the corporate world, in more than one way With Blackberry, loaded with applications, the executives can carry their office with them, wherever they go...

Design Your Dream Deck With A Computer
Submitted by: Jesse Akre

When going about adding a deck to your home, you want it to be perfect It must fit in with the scheme of your home, and you don’t want it to be too big or too small...

Youtube Video: How to Convert Articles to Youtube Video?
Submitted by: Said Karimli

Youtube video marketing has become one of the most popular online promotion methods for both companies and individuals...

Using IP Cameras in Prisons and Correctional Facilities
Submitted by: Wesley Fernley

In prison and correctional facilities, it's critical to have a proper video surveillance system This is why more and more prisons are opting for the IP Camera which works like a normal surveillance camera but with the added benefit of internet access...

How Anti-Virus Softwares Detect Threats on Your Computer?
Submitted by: Seomul Evans

Antivirus software authors are constantly looking directions to better the functioning of their scanning engines...

How to Find Out if Your Computer is Infected With Spyware?
Submitted by: Seomul Evans

Spyware is computer software that is installed sneakily on a personal computer to stop or take unfair ascendance over the user's interaction with the computer, without the user's informed consent" The risks of a Spyware infected computer vary in nature and severity...

Finding the Best Computer Protection Against Viruses
Submitted by: Seomul Evans

Wherever do you search the finest computer virus security When you're a regular on the Internet, you need the security from nothing lower than the finest computer virus protection, as the truth is that, there are a lot of terrors out there, and you need protection to assure your online safe...

How to Remove Trojans From Your Computer
Submitted by: Seomul Evans

OK...

Hightech Cameras Making Sport Training Easier
Submitted by: Jesse Akre

Lately, the advances in commonly used everyday items has increased dramatically We have cell phones that can double as MP3 players, as well as having internet capabilities, video consultations on our computers, digital cameras that can download right to the computer and then be sent in for printing, and so on...

Choosing a Guillotine Style Paper Cutter
Submitted by: Jeff McRitchie

An important piece of equipment to have in your copy room or work area is a guillotine paper cutter Guillotine paper cutters can help you quickly trim large stacks of paper...

MBM Destroyit 3803 Shredder Review
Submitted by: Jeff McRitchie

The Destroyit 3808 is a heavy duty shredder that the manufacturer posits as a centralized, heavy-use office shredder...

MBM Destroyit 4005 Shredder Review
Submitted by: Jeff McRitchie

Strengths: 1 The MBM Destroyit 4005 offers a super-wide 16 inch feed opening...

MBM Destroyit 4605 Shredder Review
Submitted by: Jeff McRitchie

The Destroyit 4606 is a high-capacity industrial shredder with a top-loading mechanism that is rated for continuous use...

DFG E Titan Wire Review
Submitted by: Jeff McRitchie

DFG's E Titan Wire is an electric wire binding system that is meant for ultra heavy duty use In this review, we will take a closer look at this machine a list what we consider to be some of its strengths and weaknesses...

DFG Titan Coil Binding Machine Review
Submitted by: Jeff McRitchie

The DFG Titan Coil is a well-constructed binding system aimed at filling the needs of medium sized organizations who want to have the ability to bind their own documents in the spiral coil style...

DFG Titan Comb Review
Submitted by: Jeff McRitchie

The DFG Titan Comb is a well-constructed, heavy duty plastic comb binding option aimed at smaller binderies, print shops, and other organizations who want the ability to bind booklets, proposals, presentations, and reports in a large variety of sizes and thicknesses...

Isnare.com Footer Divider

© 2004-2009. Isnare Free Articles - An Isnare Online Technologies Free Articles Project. All Rights Reserved.   Privacy Policy