10 Steps to Assess SOC Maturity in SMBs
10/7/2019Facing a system and organization controls audit doesn't have to be stressful for small and midsize businesses if they follow these guidelines.
Post a Comment
Dark Reading is part of the Informa Tech Division of Informa PLC
This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.
Andrew Houshian is an Associate Director/Practice Lead of SOC and Attestation Services at A-LIGN. Andrew's responsibilities include supporting and managing the completion and review of SOC and attestation reports, building out practice content and materials, publishing relevant attestation whitepapers and blogs, supervising teams in the field, and maintaining key client relationships. Andrew has over 11 years of experience performing SOC and attestation engagements.
Prior to his role at A-LIGN, Andrew was a Senior Manager in the Risk Advisory practice at Ernst and Young supporting projects relating to IT governance and IT internal controls. Over his 9 years at Ernst and Young, he supported and managed the IT testing for SOC 1 and SOC 2 reports, external financial audits (including SOX 404), internal audits, and pre-assessments that identified the major risks and gaps in IT controls. Andrew has provided professional services to clients in several industries including technology, healthcare, and airlines.