PCI Successfully Completes SOC/FISMA Examinations for 2022


[ This article was originally published here ]

NORMAN, Okla.–()– is pleased to announce its successful completion of the Service Organization Controls 1 Type II (SOC 1 Type II) and Service Organization Controls 2 Type II (SOC 2 Type II) attestation issued under the American Institute of Certified Public Accounts (AICPA) and Statement on Standards for Attestation Engagements No. 18 (SSAE 18) for 2022.

After a thorough external audit, the SOC reports were prepared and issued by a leading external audit firm for the evaluation period ending in October 2022. The audit results indicate that PCI’s controls as a cloud service provider are appropriately designed and effectively executed. This marks PCI’s 11th consecutive year to be issued unqualified SOC reports.

Additionally, PCI is pleased to announce its successful completion of a compliance audit on the Federal Information Security Management Act of 2002 (FISMA) using the National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 Revision 5 framework.

After a thorough external audit, a FISMA Compliance Report was prepared and issued by the external audit firm, attesting that PCI has implemented safeguards that meet the protections required by FISMA using the NIST SP 800-53 rev.5 framework. The audit results indicate that PCI’s information security program is operating with sufficient effectiveness to provide reasonable assurance that the security, confidentiality, and integrity of nonpublic personal information is protected as of Oct. 31, 2022.

“Cybersecurity is critical to us and our clients who manage mission-critical operations by leveraging our solutions and services,” said Peter Samoray, director of IT Security at PCI. “Adhering to the latest standards and maintaining a best-practices approach is a non-negotiable commitment to our customers.”

These reports provide assurance that PCI’s hosted solutions will meet its customers’ security needs on a best-in-class cloud platform. PCI works globally with a variety of customers, including federal and state entities, and strives to comply with industry best practices to deliver secure and reliable software solutions.

If you’re interested in learning more about how your organization can protect itself against evolving cybersecurity threats, and request access to a recent webinar led by our director of IT Security.

About PCI Energy Solutions

We empower energy companies to continuously optimize all aspects of energy production, trading, transportation, and consumption. We’re a tight-knit team of 300 diligent product experts, engineers, business analysts, and more, implementing software solutions in close partnership with power generation companies from across the world — our customers literally keep the lights on for everyone. We’re based in Norman (Oklahoma) with offices in Houston (Texas), Raleigh (North Carolina), Mexico City (Mexico), Lima (Peru), and Sydney (Australia). Learn more at .

Ad





Source link