NOTICE: Our response to COVID-19 | July 2020 Read the update ➜ 

Sales or Support Call Now: (813) 749-0895

Understanding Sarbanes-Oxley Act IT Compliance

Sarbanes-Oxley Act: IT Management and IT Service in Tampa

Sarbanes-Oxley Act: IT Management and IT Service in Tampa

IT Compliance for Accountants

For accountants that deal with publicly owned companies, ensuring your IT Infrastructure Management is SOx-complaint is a must.

The Sarbanes-Oxley Act was adopted as law to ensure that investors have reliable data in which to make their financial decisions. The law was, in large part, a result of the accounting scandals that took place around the turn of the century including within publicly-traded organizations such as Enron, Tyco International, Adelphia, and WorldCom.

Sarbanes-Oxley Act: IT Management and IT Service in Tampa

For accountants that deal with publicly owned companies, ensuring your IT Infrastructure Management is SOx-complaint is a must.

The Sarbanes-Oxley Act was adopted as law to ensure that investors have reliable data in which to make their financial decisions. The law was, in large part, a result of the accounting scandals that took place around the turn of the century including within publicly-traded organizations such as Enron, Tyco International, Adelphia, and WorldCom. These scandals costs investors billions of dollars and resulted in a widespread loss in confidence in American securities. To remedy this loss-of-confidence, the United States congress took swift measures in a bipartisan co-sponsored bill that amended the necessary processes that publicly traded companies reported revenue. The bill is named after its co-sponsors, Senator Paul Sarbanes (D-MD) and Representative Michael G. Oxley (R-OH) and was signed into law by President George W. Bush on July 30, 2002.

By upgrading fiscal reporting laws, many of which were over 60 years old, the Sarbanes-Oxley Act (as it was known upon ratification) changed the way that accountants were required to go about presenting information to the boards of publicly traded companies, and thus places an emphasis on IT Infrastructure Management to assist in accomplishing this task. Since the law calls for dynamic reporting requirements to be put in place, including pro-forma figures, stock transactions of corporate officers, and off-balance-sheet transactions, computing was to play a larger role than ever in the execution of proper oversite under the Sarbanes-Oxley Act.

What is SOx Compliance? IT Management

SOx Compliance is the observation of the protocols mandated by the Sarbanes-Oxley Act.

The sprawling reform, made it necessary to report all numbers to the Securities Exchange Commission (SEC) in an effort to cut back on corporate scandals that had been defrauding investors. IT Management was a enacted as a few well known publicly-owned corporations were “cooking their books” in order to retain unjustifiably high stock prices, inflating the worth of their companies. When the fraud was realized, it was too late and billions of investment dollars were lost.

In regards to technology, a SOx-compliant IT Management infrastructure is the creation and maintenance of a secure computing system that allows for privacy for secure transfer of financial information directly to accountable parties (i.e. Company officers). The creation of this infrastructure must meet the requirements of a SOx third-party auditor. These auditors are hired at the expense of the organization that requires the audit.

SOx Compliance Questions

Some of the variables that SOx auditors look for in a compliant I.T. Company infrastructure:

  • Is there an identity-based security system in place on the applicable framework?
  • Do the right people have access to the right data?
  • Are services isolated to ensure that a compromised service can’t compromise an otherwise compliant infrastructure?
  • Does the I.T. Company framework or database provide the confidentiality required by Article 404 of Sarbanes-Oxley?
  • Is there physical security in place for applicable servers?
  • Is there a firewall protecting that server from the internet, with applicable alterations that are to be made specifically for SOx compliance?
  • Are you connections to your server encrypted?

Conclusion

It’s true that the protection against the misrepresentation of revenue often lays on the shoulder of a company’s technology.

The Technology Consultants at Symmetric IT Group can clarify network security and the role it plays in regulatory compliance. Our certified technicians can help you prepare for your SOx, HIPAA, or PCI DSS audit.

For more information on Sarbanes-Oxley compliance for accounting firms and Tampa IT Services, call us today at (813) 749-0895.

Like this article?

Share on facebook
Share on Facebook
Share on twitter
Share on Twitter
Share on linkedin
Share on Linkedin
Share on pinterest
Share on Pinterest

Leave a comment

More to Explore

Do You Want To Boost Your Business?

Tampa Managed IT Service Experts providing Enterprise-Level IT Solutions and IT Support

Blog: Managed IT Services & Managed IT Support

Schedule Your
Free Consultation

Are you exposed to cybersecurity, or technology obsolescence risks? Are their ways to reduce your ongoing Managed IT Support costs or improve business operations?

Managed IT Service Solutions

Schedule Your
Free Consultation

Are you exposed to cybersecurity, or technology obsolescence risks? Are their ways to reduce your ongoing Managed IT Support costs or improve business operations?

Managed IT Support and Managed IT Services