Member-only story

Understanding SOC 2 reporting dates

Understanding SOC2 Type 2 reporting dates

What is SSAE 18?

The full form of SSAE is the Statement on Standards for Attestation Engagements. It was developed by the American Institute of Certified Public Accountants (AICPA). It was previously called SAS 70 and SSAE16. SSAE18 is an attestation standard that establishes requirements and provides application guidance for performing and reporting on examination, review, and agreed-upon procedures engagements. In short, it contains the rules/criteria against which the AICPA member performs an attestation engagement. Let’s take an example of attestation engagement- a company named “World-Backup” goes to a CPA Firm named “Delttree” to hire an accountant so they can conduct an examination, review agreed-upon procedures report on the subject matter.

Download your copy from AICPA website- click here

Is SSAE 18 a Certification?

This is not a certification. SSAE 18 attestation states an auditor’s opinion on a service organization’s internal controls and security practices for a specific period of time.

Understanding SSAE 18 Service Organizations

What is a SOC?

The full form of SOC is Service Organization Controls. There are three different types of SOC reports- (1)…

--

--

Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT
Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT

Written by Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT

Over 18 years of experience in a wide variety of technical domains within information security including information assurance, compliance, and risk management.

No responses yet