The Roadmap to SAS70 Success - Overview
or Put One Foot In Front of the Auditor
This is the first, short post on the steps to successfully “passing” a SAS70 Type II audit. Hopefully this roadmap will help organizations looking to incorporate the SAS70 into their operations. This will not cover what a SAS70 audit is. For more general information, visit
www.SAS70.org or do your Google/Wiki searches. Future blog posts will cover each of the main headings below:
- Determing the Need for a SAS70 Audit
- Selecting an External Auditor
- Determining the Scope of the SAS70 Audit
- Reviewing Existing Controls or Developing New Controls
- Testing the Control Set
- Selecting a Start Date
- Monitoring During an Audit Period
- Managing the Audit
- Reviewing the Findings
- Improving the Control Set
This list is not how everyone would do it or the order they may perform it, but I feel overall this is the best method. If you feel different or think I may have missed something, comment. I’ll either respond in comments or incorporate the comments in future blog posts.
[?]
Type in a relevant tag, and click the button, and help organize this blog's information.
[More Help]
[More Help]