How does SAS 70 Work?
CICA 5970 and SAS 70 are the highest available standards for measuring and improving data center operations and management. There are two specific things that a service auditor can do for you if you are interested in getting something done in regards to SAS 70. The first one is known as a Type I audit and it is performed by the service auditor at the request of the company. The service auditor is then responsible for taking a look at the mechanisms of control that were in place, looking at how suitable they are and how fair the overall presentation of the company regarding control actually is. This is a bare bones method of getting SAS 70 to work in your company, but it usually is an effective way to start.

The second thing that the service auditor can do is known as a Type II audit. The Type II audit will contain all of the same information as the Type I with the important exception that SAS 70 service auditors will actually stick around to observe the operations of the company in real time. They will then evaluate the control mechanisms that they discussed in the first part of the audit, seeing how they actually performed during the overall review process. This audit is far more involved and can take a lot longer to accomplish, but it also does bring higher certification with it.
Popularity: 21% [?]















Be The First To Comment
Related Post
Please Leave Your Comments Below