Banking Information Systems Security


Banks of all sizes use information technology. Most banks are highly dependent, and in some cases totally dependent, on technology for critical aspects of their business; BUT, few have the resources for effective information systems (IS) risk assessment to ensure their data is accurate, available, secure, and un-compromised. Even large banks with internal IS audit departments struggle to keep their staff trained on all current and emerging technologies.

First hand experience


Having had an office destroyed by a tornado, KraftCPAs knows first hand the critical nature of information asset security. We also understand the risks to and vulnerabilities of systems that store, transmit, and process critical information.

Whether through natural disaster, electronic theft, physical loss, or unintentional exposure, having business information compromised or exploited will impact a bank. Depending on circumstances, the impact can range from inconvenient to catastrophic.

What information is most critical to your bank? What is the impact of having that information stolen, exposed, lost, or compromised? The larger question is:

Is your critical information secure? How do you know?


Information systems security and IS controls should support and enable business objectives -- not hinder them. Because our IS auditors understand bank operations and regulatory requirements, we can help banks achieve and maintain regulatory compliance, while keeping an eye on the cost/benefit of IS controls.  We help clients assess risks to their information systems and recommend controls to help mitigate those risks.

Sophisticated expertise


KraftCPAs has a team of professionals dedicated to information systems security. For 50 years, KraftCPAs has provided quality service and proactive advice to community banks and other financial institutions in Alabama, Arkansas, Kentucky, Louisiana, Georgia, Mississippi, South Carolina, Tennessee and Virginia.

Our information systems assurance team includes CPAs and Certified Information Systems Auditors (CISAs). In addition, we have several vendor-specific technical certifications. We invest heavily in continuing professional education for our team. They are technology, security and IS audit experts who also understand banking. At KraftCPAs, we don't just hand you an audit report and walk away.  We meet with you after each engagement to translate our findings into business terms.  We'll walk you through the potential risks we've identified and work with you on developing a corrective action plan.  Teaming with KraftCPAs enables you to leverage our people, methodologies, technology, knowledge, and expertise.