CLEVELAND, Ohio, Dec 7, 2017 – Certified Security Solutions, Inc., a company committed to simplifying the proper application of digital security to protect its clients’ identities, data, and business processes, today announced that it has successfully completed their annual System and Organization Controls (SOC) 2® Type II Audit examination for their Public Key Infrastructure Managed Service System, CMS Sapphire.
Certified Security Solutions, Inc. retained international business advisory firm Skoda Minotti for its SOC 2® audit work. Certified Security Solutions, Inc. selected Skoda Minotti after an intensive search based on their reputation as a leading risk advisory and compliance firm.
Ben Osbrach, CISSP, CISA, QSA, CICP, CCSFP, partner-in-charge of Skoda Minotti’s risk advisory group says, “We were excited to work with CSS from the very start. They are an intriguing organization delivering high quality services and their business adds to our growing SOC reporting practice.”
SOC 2® engagements are performed in accordance with the American Institute of Certified Public Accountants’ (AICPA) AT-C 205, Reporting on Controls at a Service Organization and based on the trust service principles outlined in the AICPA Guide, Reporting on Controls at a Service Organization Relevant to Security, Availability, Processing Integrity, Confidentiality, or Privacy. The SOC 2® Type II report is performed by an independent auditing firm and is intended to provide an understanding of the service organization’s suitability of the design and operating effectiveness of its internal controls. A service organization may select any or all of the trust service principles applicable to their business and CSS chose to report on security. The successful completion of this voluntary engagement illustrates CSS’ ongoing commitment to create and maintain a secure operating environment for their clients’ confidential data.
Skoda Minotti’s testing of CSS’ controls included examination of their policies and procedures regarding network connectivity, firewall configurations, systems development life cycle, computer operations, logical access, data transmission, backup and disaster recovery, and other critical operational areas of their business. Upon completion of the audit, CSS received a Service Auditor’s Report with an unqualified opinion demonstrating that their policies, procedures, and infrastructure meet or exceed the stringent SOC 2® criteria.
“The successful completion of our SOC 2® Type II examination audit provides CSS’ clients with the assurance that the controls and safeguards we employ to protect and secure their data are in line industry standards and best practices,” said Christopher Hickman, VP, Managed Services.
About – Certified Security Solutions, Inc.
CSS is a C Corporation under the United States federal income tax law, incorporated in the state of Oregon, with its principal place of business at 6050 Oak Tree Blvd., Suite 450, Independence, OH 44131. CSS was founded in 2000.
CSS’ solutions simplify the design, deployment, monitoring, and management of trusted digital identities making them scalable, flexible, and affordable for the most demanding enterprises. CSS software and solutions enable digital authentication, encryption and signing technologies that safeguard access to identities, data, devices, and applications. By protecting clients’ most valuable resources, CSS helps companies minimize risk, protect assets, and reduce operational expense by safeguarding access to information.
About – Skoda Minotti
Skoda Minotti is a Certified Public Accounting Firm based in Cleveland, OH offering a variety of tax, finance, and business advisory services in virtually every area of business. The Risk Advisory practice specializes in SOC Reporting, PCI DSS Compliance, FISMA, NIST, and other regulatory information security assessments. Staff in Skoda Minotti’s Risk Advisory hold several industry certifications including Certified Information Systems Auditor (CISSA), Certified Information Systems Security Professional (CISSP), Qualified Security Assessor (QSA), GIAC Penetration Tester (GPEN), and GIAC Web Application Penetration Tester (GWAPT). For more information about Skoda Minotti’s Risk Advisory Services, please visit risk.skodaminotti.com.