Security certification services are used to provide assurance that products and services meet minimum standards of due care related to security programs and practices. These services include certification and attestation against voluntary or mandated standards and guidance, the most common of which are the: • International Organization for Standardization (ISO) 27001 • Payment Card Industry (PCI) Data Security Standard (DSS) • Health Information Trust Alliance (HITRUST) • Health Insurance Portability and Accountability Act (HIPAA) • Health Information Technology for Economic and Clinical Health (HITECH) • Cloud Security Alliance (CSA) Security, Trust and Assurance Registry (STAR) • System and Organization Control (SOC) 2
"Profound Experience and Discipline Key Takeaways from Schellman"
It is not often I give five star reviews. However they are absolutely deserved in this case. From pre-contract planning until Report delivery we were thoroughly briefed on what to expect. We had every opportunity to get clarification when needed. The document request list was well organized and we were given a generous amount of time to gather and upload. The Schellman portal AuditSource is dependable and easy to navigate. The experience and discipline of the entire team stood out and made our team feel at ease and in good hands.
"Very trustworthy third-party auditors."
They perform third party audits for ISO certifications of our company. They are very objective and serious in the accomplishment of their work.
"Great partnership. We have come from far and now are TOP class. "
Great company will knowledgeable teams. Happy to proactively progress the contracted services in our company. Not reluctant to adapt their practice to customer objectives to ensure project success.
"Excellent Service in terms of Risk Management and GRC"
GT is best in class risk advisory provider of security certification services. they have in depth knowledge on risk assessment, risk management, risk treatment, vulnerability assessment and penetration testing and red teaming.
"Good knowledge and experience in IT attestations"
They have good knowledge and experience in IT atestations. They are an intrnational company and can bring a consultant from another country if the local consultants has lack of experience.
"Go-to service provider for combined audit engagements across multiple standards. "
Great audit team with expertise across a multitude of security frameworks.
"Reliable service provider"
We have been working with IARM for more than 3 years and we have always found their support very helpful and most suited for our requirements.
Competitor or alternative data is currently unavailable
See All Alternatives"Good SOC1 Auditors"
PwC performed the audit of SOC1 controls for the services we offer in the Data Center for some years.
"Good Experiences with A-LIGN from Beginning to End"
A-LIGN was very easy to work with from end to end. All of their personnel are friendly and professional. Their prices are competitive, and their experts are able to explain difficult topics with ease.
"Implementation was great! I wonder what it would have been like if I didnt have a partner"
From beginning to end it was a seemless experience, but we used a liason from a partner to help bridge the gap. They were more experienced with the platform.
"Proceed with caution, extremely disjointed and poor service. "
Very poor overall experience. The only positive element was the auditor was professional during the audit process itself. Once the initial audit had been completed, that was when the problems started. Completely disjointed management, no communication at all resulting in my team having to chase continuously. Poor quality report once it had been delivered as it had clearly been rushed.
Competitor or alternative data is currently unavailable
See All Alternatives