SERVICES
IS Audit and Compliance
(Internal & External)
Maximising the
value and effectiveness of the internal audit
function requires an understanding of an
organisation's objectives, risks, risk
management priorities, regulatory environment,
and the diverse needs of critical stakeholders
including executive management, the board,
employees, and shareholders. Ultimately, these
needs determine the risk profile of the
organisation and the strategic focus,
organisation, resources and practices required
of its internal audit department.
Information System Risk Management
BN Consulting's technology risk management professionals are formally trained in information security, IT audit and compliance, and business continuity approaches. We focus on information security assessment and controls relating to information technology environments, and are experts at eliminating or minimizing the impact of unplanned interruptions and ensuring the continuity of critical business services.
IS Audit Services
BN Consulting IT Audit Services help your information systems management to understand the existing control environment, identify high-risk areas and test to ensure that adequate controls are in place and working. We provide the following services to help clients of all sizes effectively conduct IT assessments and audits:
IT risk assessments
Computer application audits
Software licensing compliance audits
Business continuity plan (BCP) or disaster recovery plan (DRP) audits
IT general controls review
Data security audits
System development participation
Computer assisted audit techniques (CAATs)
Business Continuity
Planning
BN Consulting's Business Continuity Planning
helps minimize the effects of a disruption to
your operations from a natural disaster,
accident, sabotage, or other disturbance. We
work with clients to develop cost-effective
solutions to maintain business continuity during
and after an interruption of critical functions,
systems, or resources. We show clients how to
maintain mission-critical functions in the event
of an unplanned or unscheduled interruption to
normal operations. We emphasize all facets of
recovery and restoration, including operations,
facilities, technology and personnel.
Security
BN Consulting's Security Services support clients with technology experts who identify security-systems gaps and weaknesses, design systems and processes to address those gaps and weaknesses, and integrate effective solutions. Understanding the state of an organization's security architecture is the first step in identifying risks associated with current business operations. Specific service offerings include:
Attack & penetration analysis
Threat and vulnerability assessment
Security architecture review
Incident response
Web-based application security
Infrastructure specifications
Policies & procedures
Technology & information profile
Network security monitoring solutions
Risk/Control Assessments
BN Consulting's Risk/Control Assessment Services benefit your organization by identifying risks, facilitating risk mitigation exercises and implementing risk-reducing best-practice controls. Working with your existing internal audit function or as an independent consultant to your management team, we can perform the following risk and control services:
Enterprise risk assessments
Entity risk assessments
Process assessment/analysis
Control self assessments
Sarbanes-Oxley Section 404: Financial reporting process risk assessments
Sarbanes-Oxley
BN Consulting has the right tools, methodologies and experienced people to help your organization comply with the Sarbanes-Oxley Act. When BN Consulting helps to assess and test your internal controls, there is a clear separation between your assessment and your auditor's attestation, giving you and your executive team the independent expertise you need to comply.