Sampling style audits are dead

1
*** THIS DOCUMENT HAS BEEN CLASSIFIED FOR PUBLIC ACCESS *** Has the Big 4 accounting firms hurt Cybersecurity? Why do they believe that sampling security controls is enough? Why has the Regulators accepted Big 4 sampling for CFO certification? Has the Big 4 exposed our communities and economy to financial ruin? Why haven’t the Big 4 been held financially accountable for breaches? Its time for a change… Its time for the practice of sa mpling to end. Its time for a more holistic approach - ISO 27001! Annual CFO Certification?

Transcript of Sampling style audits are dead

Page 1: Sampling style audits are dead

*** THIS DOCUMENT HAS BEEN CLASSIFIED FOR PUBLIC ACCESS ***

• Has the Big 4 accounting firms hurt Cybersecurity? • Why do they believe that sampling security controls is enough?• Why has the Regulators accepted Big 4 sampling for CFO certification?• Has the Big 4 exposed our communities and economy to financial ruin?• Why haven’t the Big 4 been held financially accountable for breaches?

• Its time for a change…• Its time for the practice of sampling to end. • Its time for a more holistic approach - ISO 27001!

Annual CFO Certification?