Bookmark and Share

SSAE 16 and SAS 70 Audit

In today's world, companies are focusing on their core operations and on maximizing efficiency on an enterprise wide basis. This focus has resulted in more functions, and processes, being outsourced to third party vendors, who through efficiency of scale, are able to provide cost containment benefits. This increased level of outsourcing has highlighted the importance of Service Audits. Service Audits (SSAE 16 and SAS70 engagements) provide valuable information to companies concerning the control environment in place at third party service organizations. These Service Audits highlight the Business Process and Information Technology controls in place and also indicate the level of effectiveness of the controls. Like the SAS 70 Standard before it, SSAE 16 reports provide a valuable tool for companies to use to evaluate the controls in place at their service providers, to protect their sensitive data.

Our Service Audit Specialists are well versed in the important changes and additional responsibilities placed upon service organizations in the new SSAE 16 standard. The extensive experience of our team, in this highly specialized area of auditing, provides valuable benefits to service organizations and can make all the difference.

The Service Audit team at WithumSmith+Brown can put you in a position of strength. We understand that your time and employee resources are limited. We also understand that compliance is only sustainable when it fits realistically with the needs of the organization. Our efficient customized work programs are designed to fit your business model, so you can develop realistic and sustainable best-practice methodologies.

Named in numerous trade publications as one of the most innovative and influential firms in the technology area, we have the credibility and resources required to examine both technical and financial systems that can put you and your customers at risk. We provide services which include pre-service audit assessments of your business, as well as Type I and Type II service audits and post-audit program implementation.