@attritionorg @alexhutton SAS70 is only dead from the false "look how secure I am" side, it still exists from the financial audit side.
RT @alexhutton: If SAS 70 is dead, then why is it still offered to me as assurance? <-- still money to be made.
-
-
-
@RandomlyAnnoyed@attritionorg@alexhutton no it's dead. Been dead for at least a few months. Not that a type 1 was worth anything anyway -
@jadedsecurity@attritionorg@alexhutton Not arguing it was worthless. SAS70 is still used to intrepret from User Auditor perspective. AFAIK -
@RandomlyAnnoyed@attritionorg@alexhutton no it's been end of lifed http://ssae16.com/ -
@jadedsecurity@attritionorg@alexhutton As one who formally issued both of these, there is lots of confusion around this area. -
@jadedsecurity@attritionorg@alexhutton if you're a financial auditor technically not dead, 4 anyone else, yes it's replaced#acipasucks
End of conversation
New conversation -
-
-
@attritionorg@alexhutton@jcran A SAS70 is a marketing doc with User Controls Considerations that say we are not responsible for anything.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@attritionorg@alexhutton If a CPA is trying to sell it to you as a security service, throat punch them and never use them...ever.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.