Course

SOC for Cybersecurity Certificate

View All Professional Development

Event Details

Location

Facility Pending

On-Demand Only

Field of Study

  • Auditing

CPE Credit

14 hours CPE credit

Course Code

-AIS0094

Level of Knowledge

Intermediate

Vendor

AICPA

Description

Cybersecurity threats are escalating, unnerving the boards of directors, managers, investors and other stakeholders of organizations of all sizes-whether public or private. Organizations are under increasing pressure to demonstrate that they are managing threats, and that they have effective processes and controls in place to detect, respond to, mitigate and recover from cybersecurity events.

To meet this need, we have introduced SOC for Cybersecurity, a solution that builds upon the profession's experience in auditing system and organization controls. For clients whose cybersecurity risk management programs are mature, an independent CPA can perform an examination, in which the CPA expresses an opinion on the client's description of its cybersecurity risk management program and an opinion on the effectiveness of the controls within that program. This certificate will enable you to understand how to perform SOC for Cybersecurity attestation examinations using the AICPA's new cybersecurity risk management reporting framework.

Highlights

Cyberthreat landscape and the terminology used to describe various aspects of cybersecurity
Various SOC services
Components of cybersecurity risk management program
How to use the description criteria
How to use the control criteria to assess an entity's controls over cybersecurity
Key considerations prior to accepting a cybersecurity examination engagement and key planning considerations
Key steps involved in performing the cybersecurity risk management examination
Key factors to consider while forming the opinion and preparing the practitioner's report

Objectives

Understand the AICPA's Cybersecurity Risk Management reporting framework and how it may be used by organizations and practitioners to evaluate controls and communicate certain cybersecurity information to interested parties.
Analyze the components of an organization's cybersecurity risk management program.
Recognize the performance and reporting requirements of a SOC for Cybersecurity examination.

Designed For

This is designed for public accounting practitioners who are interested in providing cybersecurity attestation services (SOC for Cybersecurity) and want to build their competencies in and understanding of this service. Likely participants may already have SOC for Service Organizations practices and are looking to expand into cybersecurity attestation services. Participants must have either IT expertise or access to IT professionals who possess the skills to perform this work.
Management accountants and internal auditors who want to understand the SOC for Cybersecurity examination service available to their organizations related to their cybersecurity risk management program.

View All Professional Development