Upcoming Webinar | AI Meets ISO: What Makes ISO 42001 Different from ISO 27001 & 27701 on July 17th @ 1:00 PM ET

Contact Us
Services
Services
Crypto and Digital Trust
Crypto and Digital Trust
Schellman Training
Schellman Training
Sustainability Services
Sustainability Services
AI Services
AI Services
About Us
About Us
Leadership Team
Leadership Team
Corporate Social Responsibility
Corporate Social Responsibility
Careers
Careers
Strategic Partnerships
Strategic Partnerships

The Schellman Blog

Stay up to date with the latest compliance news from the Schellman blog.

Blog Feature

Compliance and Certification

By: Andrew Broderick
August 16th, 2024

When positioning your organization to achieve its SOX ITGC objectives and reporting obligations, you can’t take any chances for fear of negative fallout. And while establishing a team of dedicated internal IT audit professionals can help streamline those processes, there are challenges in maintaining such a team—just as there are advantages to substituting an independent IT audit team instead.

Blog Feature

Penetration Testing

By: Josh Tomkiel
August 16th, 2024

Penetration testing is of course a major component of any security strategy. If you're preparing for your first penetration test, it's essential to ensure you're well-prepared to maximize the value of this assessment. This article outlines five key steps to help you get ready for a successful penetration test.

Blog Feature

Federal Assessments | CMMC

By: Tim Walsh
August 13th, 2024

Looking back, December 2023 was a big month for the Department of Defense (DoD), as they released the both memorandum titled Federal Risk and Authorization Management Program (FedRAMP) Moderate Equivalency for Cloud Service Provider’s Cloud Service Offerings, as well as the 32 CFR Part 170 - Cybersecurity Maturity Model Certification (CMMC) Proposed Rule.

Blog Feature

Cybersecurity Assessments

By: COLLIN VARNER
August 8th, 2024

Back in 2017, the New York State Department of Financial Services (NYDFS) took a significant step to enhance the cybersecurity defenses of financial institutions operating in New York by introducing the NYDFS Cybersecurity Regulation. Through its set of requirements—since amended in 2023—the Regulation aims to better safeguard the sensitive information processed through these organizations which must adhere to its mandates.

Blog Feature

Healthcare Assessments

By: GARY NELSON
August 7th, 2024

Source: Pharmaceutical Compliance Monitor On March 31, 2010 the Drug Enforcement Agency’s (DEA) rule, “Electronic Prescriptions for Controlled Substances” has revised its regulations to give physicians the choice of writing prescriptions for controlled substances the traditional method or through the electronic system. Originally, the regulation restricted physicians and practitioners from writing electronic prescriptions for controlled substances (EPCS).

Blog Feature

By: GARY NELSON
August 7th, 2024

Is there a period of time that the DEA-EPCS Third Party audit is valid? On March 31, 2010 the Drug Enforcement Agency's (DEA) rule, "Electronic Prescriptions for Controlled Substances" has revised its regulations to give physicians the choice of writing prescriptions for controlled substances the traditional method or through the electronic system. Originally, the regulation restricted physicians and practitioners from writing electronic prescriptions for controlled substances (EPCS).

Blog Feature

ISO Certifications | ISO 9001

By: JORDAN HICKS
August 6th, 2024

GettiWhen you commit to getting ISO 9001 certified, you commit to meeting the needs of customers and other stakeholders regarding your product or service through a comprehensive quality management system (QMS). But it’s not enough to meet the standard—you have to get ISO 9001 certified, which involves an initial certification audit, further surveillance audits, and recertification in order to maintain an accredited certification.

{