IT/GLBA Audit & Assessment
A CoNetrix IT/GLBA Audit and Network Assessment of your company’s Information Systems will help you comply with regulatory guidance, the Gramm-Leach-Bliley Act (GLBA), and industry best practices.
Areas Analyzed
A CoNetrix IT/GLBA Audit & Assessment includes an analysis of existing Information Technology infrastructure, compliance with the Gramm-Leach-Bliley Act, policies and procedures, and security controls. The eleven areas included in an Audit and Assessment are:
- Audit
- Management and Operations
- Vendor Management
- Information Security Program
- Development and Acquisition
- Support and Delivery
- Information Technology Infrastructure
- Data and Physical Security
- FedLine Advantage
- E-Banking
- Business Continuity Planning
In addition, we can customize a solution to fit your needs.
Regulatory Requirements
According to the FFIEC IT Examination Handbook, "The frequency of testing should be determined by the institution's risk assessment. High-risk systems should be subject to an independent diagnostic test at least once a year."
CoNetrix bank Audits are based on Federal Financial Institutions Examination Council (FFIEC), Federal Deposit Insurance Corporation (FDIC), Office of the Comptroller of the Currency (OCC), Federal Reserve (FRB), and Office of Thrift Supervision (OTS) regulations, work programs, guidance, and industry best practices.
Why CoNetrix?
Knowledge and Expertise:
- CoNetrix has conducted more than 125 IT Audit and Network Assessment engagements over the past 6 years.
- The CoNetrix staff has more than 230 years of accumulated Information Technology, Network and Security experience.
- CoNetrix’s security experts hold numerous security certifications, such as CISSP, SSCP, CISM, CISA and Microsoft’s Security Specialization.
- CoNetrix maintains a staff of multiple network engineers.
The CoNetrix Difference:
- CoNetrix provides easy-to-read reports with finding sorted by associated risk and estimated cost.
- Reports include regulatory reference, remediation recommendations and a detailed review with a CoNetrix security expert.
- A comprehensive work program is built upon:
- CoNetrix audit experience
- FFIEC Information Technology Examination Booklets
- Gramm-Leach-Bliley Act Standards for Safeguarding Customer Information
- Information Systems Audit and Control Association (ISACA) guidelines