Internal Audit’s Role in Third Party Data Protection

Internal Audit’s Role in Third Party Data Protection

The SIG Resource Center is moving to The SIG Community. If you are a SIG Member, or enrolled in SIG University, and don’t have access yet, you can do so here. Already have access? Log in and visit the new SIG Resource Center.

Original Source: MIS|IT Training Institute

“Companies that outsource payroll, healthcare processing, and other processes containing PII can obtain a SOC 2 report. Based on the AICPA’s WebTrust principles, a SOC 2 report is an independent certification of outsourced service providers (OSP) non-financial reporting controls, including security, processing, confidentiality, and privacy controls. The OSP (i.e. third party) engages a firm to perform the attestation (audit), and then provides the detailed audit results to any interested customer…”

Contributors:
Categories: ,
SRC Type: , ,

Please log in to download the document.

Please log in to view the video.