Menu Close

Controls and Compliance Attestations

Our Control Assurance and Compliance Attestation Solution comprises the following activities:

  • Design and implementation of pragmatic risk control and governance frameworks for clients
  • Assessing effectiveness of existing risk and internal control frameworks
  • Internal control remediation programmes
  • Provision of training solutions from board level to wider organisation
  • Sarbanes Oxley Act (Sox) 404 internal control assessments
  • ISAE 3402, SSAE 18, SOC 2 and SOC 3 readiness assessments
  • Internal control remediation activities and independent audits

Internal Controls Assurance methodology
Internal Controls Assurance methodology

Controls and Compliance Attestations Services

As more and more organisations outsource their processing to third parties it is even more important that they maintain effective oversight and have sufficient assurance that their suppliers’ internal controls are effective.

The control assurance audits we undertake enable suppliers to satisfy customer requirements and avoid the need to entertain multiple review and audit visits from customers or their agents.


  • Design and implement internal controls for “greenfield” and established processes and procedures
  • Internal controls assessments: Assessment of design and operating effectiveness of internal controls and Internal controls health check covering key areas of the organisation
  • High level assessements of the organisation’s governance framework, its approach to controls and feedback on the control environment. 
  • Internal control remediation programmes
  • Undertaking service organisation control assurance audits – International Standard for Assurance Engagements (ISAE) 3402, Statements on Standards for Attestation Engagements (SSAE) 18, SOC 2 and SOC 3 audits 
  • ​Readiness assessments, including where appropriate internal control remediation activities
  • Independent service auditor testing and opinion

Benefits to you

  • Thought leadership
  • Experience
  • Best practice
  • Independent assessments
  • Audit assurance
  • Training and coaching

Related Xcina Consulting services