{{item.title}}
To satisfy regulators’ and other stakeholders’ demands for assurance around internal controls over operational activities, an ISAE 3000 report can be prepared to focus on controls specific to security, availability, processing integrity, confidentiality, and privacy. The scope can include those categories relevant to the subject matter of the report, as selected by the service organization.
PwC can help you by performing:
PwC has engaged recurring third party assurance report engagements with different organizations ranging from back office solutions, research and development, healthcare, and technology service providers among others. By bringing together our industry-specific skills in technology, regulatory compliance, finance and accounting and other business processes, our team has helped multiple clients identify and mitigate risk and enhancing trust and transparency with their customers.
We have also worked with other PwC offices (under direct supervision) in assessing the Global ISAE 3402 Type 2 and GS007 reports over the Share Service Center's (SSC) controls related to the trade operations across different market segments.
Our team's combined credentials are composed of the following:
The following selected citations represent engagements where we have helped clients:
PwC helped a Mobile Payment Innovation and Software Maintenance Company in performing a SSAE 16 (SOC 1) Type 2 engagement of the Company’s controls over its mobile payments gateway system relating to Information Technology General Controls (ITGCs) in 2012.
A Payroll Process Outsourcing Company engaged PwC in a SSAE 16 (SOC 1) Type 2 engagement that focuses on the review of the ITGCs and payroll processing system in 2013.
SSAE 18 (SOC 1) Type 2 engagement was performed over a Leading BPO Company’s controls related to the outsourced data entry and verification process for insurance claims with recurring engagements with recurring engagements since 2014.
PwC partnered with a Leading BPO on healthcare solutions in its SSAE 16 (SOC 1) Type 2 engagement over the Company’s controls related to the Medical Coding and Revenue Cycle Management system including relevant Information Technology (IT) General Controls over the Network Infrastructure in 2015.
ISO 27001/27002 readiness assessment was performed by PwC on a Leading BPO in technologies and customer care services' Information Security Management System (ISMS) and its related controls over information assets and information processing facilities relevant to a support service provided for a credit card company client.