Risk and Compliance

  • Home
  • Risk and Compliance
Risk and Compliance

PCI Gap Assessment: A review of client’s current PCI compliance stance through interviews, documentation review, and minimal controls validation.

PCI Audit: A complete PCI audit utilizing the latest released DSS version (currently 3.2) for auditing organizations PCI environment(s) for compliance against documented requirements.

HIPAA Gap Assessment: A review of current controls and gaps as compared to HIPAA requirements.

HIPAA Audit: A complete HIPAA audit.

ISO Gap Assessment: A review of current security gaps as compared to ISO 27001.

ISO Audit: A complete ISO 27001 audit.

GDPR Gap Assessment and Validation:  General Data Protection Regulation scope identification, readiness assessment and validation (AOC) services

NIST Gap Assessment: A gap review of an organizations security posture as it relates to NIST CSF, 800-53 R4 and other NIST documentations.

CIS Top 20 CSC Gap Assessment: A gap review of an organization’s current security controls against the Center for Internet Security Top 20 list of security best practices

SOC 1,2 and 3 Readiness Assessment: A readiness assessment of an organizations current security controls against the American Institute of Certified Public Accountants (AICPA) for Security, Availability, Processing Integrity and Confidentiality into “Common Criteria” to eliminate redundancy, and to update the criteria based on the latest technologies and the ever-changing business environment

SOC 1,2 & 3 Audit: A readiness assessment of an organizations current security controls against the American Institute of Certified Public Accountants (AICPA) for Security, Availability, Processing Integrity and Confidentiality into “Common Criteria” to eliminate redundancy, and to update the criteria based on the latest technologies and the ever-changing business environment

Firewall Configuration Review: A best practices review of current firewall configurations.

Policy Audit: A review of documented polices compared against a variety of standards and compliance bodies.

image

Related Services

Network Security Testing

With our comprehensive offering of network testing options, including, Network Vulnerability Scanning and Assessment, you

Read More

Executive Advisory

Team of experienced practicing CISOs with executive leadership experience utilizing the consultants experience to coach,

Read More

Personnel Security Training

We offer a number of trainings to ensure that personnel are armed with security awareness

Read More