Spry Control has several services to small and medium public companies or private companies with regulatory compliance requirements. We provide extensive and affordable services for Information Technology governance, internal control strengthening, IT audit as part of internal audit, and information systems security. In addition, we also help in fraud prevention and detection to offer a wide range of services with common theme of internal control for information technology. Our services are targeted to companies to use information technology control for business advantage and regulatory compliance.
Corporate Governance and Regulatory Compliance Services
We work together with board of directors, Audit committee and executive management for good governance and effective internal control, including
Information Technology (IT) Governance where we offer more extensive services.
Internal control services are culmination of information technology and financial reporting to ensure that companies have effective internal control as part of regulatory compliance including SOX, GLBA, HIPAA, Privacy Laws, and others. We help clients for compliance to HIPAA, GLBA, AML, Privacy Laws and other statutory regulations as part of our
Other Compliance Services using our IT Audit and Systems Security skills.
We provide several services for
Compliance to Sarbanes Oxley (SOX) including preparations (documentation and testing), as part of SOX 404 certifications (control testing and remediation plan), and also part of IT Audit.
Information Technology (IT) Audit Our
IT Audit services serve several of companies needs including internal audit, SOX 404 certification, SAS 70 preparations, regulatory compliance needs. We provide IT Audit services covering IT General Control and IT Application Controls using risk based approach. IT audit services are rendered using
modular approach and meeting your specific needs such as full outsourced IT audit services or specific components of IT audit, or special purpose audit including regulatory compliance (SOX, HIPAA, PCI, GLBA).
Information System Security Assessment Organizational, administrative, technical and physical
security review and remediation plan based on the risk for the company or a site.
Limited Scope engagements entail a detailed review and strengthening of specific components of information security such as security policy, access control, application controls, penetration testing or other areas.
Larger scope engagements are for helping the clients in information risk assessment, security audit, and disaster recovery plan (DRP) including control self assessment (CSA).
Fraud and Investigation related services Fraud Prevention and Detection services are for companies to focus on key fraud related preventive controls and monitor and isolate transactions as part of detection system for proper investigation.
Accouting Forensic services are to investigate specific transactions or transaction cycle for internal or external investigations and corrective actions using our methodology and expertise.
Digital Forensic or IT Forensic services are part of investigation services to identify the source and extent of malicious attacks, misuse of IT assets, or compromise on integrity of information or intellectual property.
Electronic discovery has put Information Technology as a stakeholder of litigation for being custodian of electronically stored information (ESI)and our services are for readiness and maintaining ESI for prompt eDiscovery work.