Question

In: Operations Management

Summarize the purpose, approach, goals, and scope of SSAE 18.

Summarize the purpose, approach, goals, and scope of SSAE 18.

Solutions

Expert Solution

Statement on Standards for Attestation Engagements is an auditing standard for service organizations and SSAE 18 came after SSAE 16. In April 2016, American Institute of Certified Public Accountants (AICPA) Auditing Standards Board (ASB) issued SSAE 18. This is valid for report dates of May 1 2017 and after.

Now, what are this attestation standards? They establish requirements and provide application guidance to auditors for performing and reporting on examination, review, and agreed-upon procedures engagements, including Service Organization Controls (SOC) attestations. SSAE 18 completely replaces SSAE 16 and many other SSAEs into a combined standard.

There are changes in SSAE 18 that affects the fashion in service organizations deal with sub-service organizations. Under this a service organization should

Identify all sub-service organizations

Include description of sub-service organization controls that the service organization relies on to provide the primary services to its customers.

SSAE 18 requires that

  1. Service organization implement controls to monitor the effectiveness of relevant controls at the subservice organization; and
  2. Service auditor to report on the controls the service organization implemented to monitor the relevant controls at the subservice organization.

Monitoring controls could include one or any combination of the following:

  1. Reviewing and reconciling output reports or files
  2. Periodic discussion with subservice organization personnel
  3. Regular site visits
  4. Testing controls at the subservice organization
  5. Monitoring external communications
  6. Reviewing SOC reports of the subservice organization’s system

Related Solutions

Summarize the goals of cognitive behavioral therapy (CBT), and contrast it with the psychodynamic approach.
Summarize the goals of cognitive behavioral therapy (CBT), and contrast it with the psychodynamic approach.
Project Scope Statement: The scope statement is the “top-level document for articulating the overall project goals,...
Project Scope Statement: The scope statement is the “top-level document for articulating the overall project goals, objectives, and mission-critical parameters, such as overall timing and resource constraints. It defines the project baseline for all other documentation and management actions.” (Thamhain, 2005, p. 148) The scope of a project defines what is included in and excluded from the project. Based on your project proposal and the information provided in the project charter, submit a list of what will be included in...
The context and purpose of financial reporting 1 The scope and purpose of, financial statements for...
The context and purpose of financial reporting 1 The scope and purpose of, financial statements for external reporting (a) Define financial reporting – recording, analysing and summarising financial data. (b) Identify and define types of business entity – sole trader, partnership, limited liability company. (c) Recognise the legal differences between a sole trader, partnership and a limited liability company. (d) Identify the advantages and disadvantages of operating as a limited liability company, sole trader or partnership. (e) Understand the nature,...
How do the operational goals of STARBUCKS align with the financial goals? Can anyone summarize it...
How do the operational goals of STARBUCKS align with the financial goals? Can anyone summarize it after viewing the 10K Annual report of STARBUCKS?
PURPOSE The purpose of this assignment is to enable students in understanding an organisation’s financial goals...
PURPOSE The purpose of this assignment is to enable students in understanding an organisation’s financial goals through the preparation of functional and cash budgets that together integrate into a business plan. Explain how cash budgets help in: (i) forecasting future needs; (ii) controlling cash expenditure; (iii) evaluation of performance; and (iv) acting as a sound dividend policy.
What is the purpose of the following code and a detailed testing scope that can be...
What is the purpose of the following code and a detailed testing scope that can be made by looking at the following code to check for bugs or software testing measures  such as statement coverage or branch coverage checks in the code. import java.io.*; public class Cal { public static int cal (int month1, int day1, int month2, int day2, int year) { //*********************************************************** // Calculate the number of Days between the two given days in // the same year. //...
Go into detail about the scope and purpose of a global marketing strategy
Go into detail about the scope and purpose of a global marketing strategy
Define the following items for an organization you are familiar with: Scope Goals and objectives Frequency...
Define the following items for an organization you are familiar with: Scope Goals and objectives Frequency of the audit Duration of the audit Identify the critical requirements of the audit for your chosen organization and explain why you consider them to be critical requirements. Choose privacy laws that apply to the organization, and suggest who is responsible for privacy within the organization. Develop a plan for assessing IT security for your chosen organization by conducting the following: Risk management Threat...
Summarize how financial goals follow from one’s values.
Summarize how financial goals follow from one’s values.
A brief concise explanation regarding the purpose and goals of HIPAA
A brief concise explanation regarding the purpose and goals of HIPAA,Also include the roles of the following regulators:Department of Health and Human Resources.Center for Medicare and Medicaid Services,Office of Inspector GeneralOffice of Civil Rights.
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT