Crypto and Digital Trust | SOC Examinations
By:
Schellman
January 19th, 2024
These days, blockchain providers find themselves in an interesting position—you have a revolutionary service to offer, but the market is still coming around to it. You need a way to validate your product so they will. Luckily, there is something you can do—you can take the initiative to acquire a SOC report.
SOC Examinations | Audit Readiness | SOC 2
By:
Chad Goubeaux
January 18th, 2024
When pursuing a SOC 2 examination, a popular first step for many organizations—particularly those just stepping into the world of compliance for the first time—is a SOC 2 readiness assessment. But for those first-timers who don’t know what to expect from this process, it might help to have a roadmap.
By:
Schellman
January 17th, 2024
As you may remember, when Tom Sawyer was asked to paint a fence, he ended up outsourcing the job and even got his chosen “vendors” to pay him for the privilege. What was an assigned chore ended up being done by others and turning a profit for Tom.
Assurance / Service Audits | Audit Readiness
By:
Robert Tylka
January 11th, 2024
In the dynamic world of business, where compliance is becoming more important either as requested assurance from customers or a key market differentiator, more and more organizations are turning to assessment firms to help them communicate these advantages. And while some will always look at compliance in the most oversimplified, checkbox manner, many customers and regulators recognize good (and poor) quality of delivery.
By:
Matthew Gierl
January 9th, 2024
Like many of the other ISO standards, ISO 22301 features introductory clauses (1-3), and it also has its own fundamental clauses (4-10)—of these, clause 8 (Operation) is key to standing up the Business Continuity Management System (BCMS) and achieving ISO 22301 certification.
Cybersecurity Assessments | SchellmanLife
By:
Ryan Ratty
January 4th, 2024
Though perhaps not as prominent as the widely known Certified Information Systems Auditor (CISA) and Certified Information Systems Security Professional (CISSP) certifications, the Certificate of Cloud Security Knowledge (CCSK) can also be helpful to cybersecurity professionals.
SchellmanLife | Audit Readiness
By:
Megan Sajewski
January 2nd, 2024
Benjamin Franklin once said, “By failing to prepare, you are preparing to fail.”
By:
Clint Mueller
December 28th, 2023
If you’re a penetration tester, you know that for any test or phishing campaign, you begin with setting up your infrastructure with a domain name and redirectors. You might also know that this step is straightforward, and many have created walkthroughs on different ways to architect and automate infrastructure deployments.