Beyond the Checklist - The Strategic Value of SOC Reports Webinar
Overview
As organizations increasingly rely on third-party service providers, cloud platforms, and outsourced business functions, understanding and evaluating SOC reports has become an essential component of risk management and internal control oversight. This course provides a practical guide to the SOC reporting landscape, helping participants understand the different types of SOC reports, determine which reports are most relevant to their organizations, and evaluate key report components. The session also explores emerging risks associated with AI adoption and practical steps organizations can take to strengthen vendor oversight and reduce third-party risk. Discover:
- Why third-party controls matter in today’s technology-driven business environment
- The different types of SOC reports and how to determine which reports to request and review
- Practical techniques for evaluating SOC reports, identifying control gaps, and managing vendor and AI-related risks
Objective
To provide CPAs and other finance professionals with a practical understanding of SOC reports and third-party risk management, enabling them to evaluate vendor controls, interpret SOC report findings, and strengthen organizational oversight of outsourced services and emerging technology risks.
Emphasis
- Modern control challenges:
– Third-party software
– Critical operations outside company walls
– Why vendor controls matter - SOC report landscape:
– Understanding different report types
– Knowing which report to request - Evaluating SOC reports:
– Understanding structure
– Auditor’s opinion
– Complementary User Entity Controls (CUECs)
– Subservice organizations (CSOCs) - AI implementation and practical steps to reduce risk
Speakers
Faten AlKhattar, Director, Citrin Cooperman Advisors LLC
This course is included in the following subscriptions:
Need more than one course? Upgrade to a subscription and save.
View Subscriptions