EthicsPoint's SAS 70 Type II Certification
EthicsPoint has successfully completed the rigorous SAS 70 Type II certification, an internationally recognized auditing standard developed by the American Institute of Certified Public Accountants (AICPA). The SAS 70 process assures our clients that we meet the highest standards for security and have the appropriate controls and safeguards in place.
EthicsPoint’s SAS 70 audit considers a broad number of business processes that include:
- Internal procedures, corporate ethics, and defined workplace codes
- Internal monitoring and oversight
- Data security and integrity
- Physical security
- Design, development and change cycles for hardware and software systems
- Records maintenance
What is SAS 70?
Statement on Auditing Standards (SAS) No. 70 is an internationally recognized auditing standard developed by the American Institute of Certified Public Accountants (AICPA). A SAS 70 audit (or service auditor’s examination) is widely respected because it demonstrates that a service organization has been through an in-depth audit of their control activities, which generally includes controls over information technology and related processes.
SAS 70 Type I vs. SAS 70 Type II
SAS 70 Type I outlines the procedures, policies and controls that are necessary to ensure effective performance. SAS 70 Type II is an independent audit of these procedures, policies, and controls to verify and validate that the organization is actually following them.
EthicsPoint engaged Plante & Moran, a Detroit-based national Certified Public Accountant firm, to perform the audit.
|