Enrolment Author John Higgins, CPA, CITP Overview ‘Is it secure?’ That is one of the top questions asked by CEOs, CFOs, and other key decision-makers about cloud-based software applications. There is no simple answer, rather you and your organisation need to invest in conducting due diligence on any product prior to making a purchase to make sure you are satisfied with the integrity of the service provider and the security of your data. This course will focus on the key steps that you should take when performing the appropriate due diligence review of any cloud application. Topic discussed - What data security measures to look for in a cloud application
- Understanding the data backup and recovery policies and procedures
- Evaluating the internal controls in place with Statement of Controls (SOC) reports
- Understanding the role of data encryption
- Understanding the service provider's Terms & Conditions
Learning Objectives - Evaluate the security controls of a cloud application provider
- Understand key cloud security concepts
- Separate from a cloud services provider
- Analyse Statement of Controls (SOC) reports in compliance with SSAE 16
- Understand the nature of the Service Level Agreement (SLA)
|