The AICPA has issued Technical Questions and Answers (TQAs) 9560.01−.06 related to the inclusion of information about controls over cryptographic keys in management’s description of a service organization’s system in a SOC 1 report. An examination of management’s description of a service organization’s system and the suitability of the design and operating effectiveness of controls included in the description is performed under AT-C section 320, Reporting on an Examination of Controls at a Service Organization Relevant to User Entities’ Internal
Resources
TQA Section 9560.01−.06
Sep 30, 2023 · 239.2 KB Download
AICPA MEMBER
ACCESS
Resource available
Download the TQAs 9560.01-.06 full questions and answers
File name: tqa-section-9560-01-.06.pdf
Reserved for AICPA® & CIMA® Members
Already a member of the AICPA or CIMA?
Log in with your account
Not a member of the AICPA or CIMA?
To gain access to exclusive content, your first step is to join the AICPA or CIMA.