The KNF Audit assesses the organization's compliance with the requirements of Resolution No. 411/2014 of the Polish Financial Supervision Authority of December 16, 2014, on the issuance of "Guidelines for the management of information technology areas and the security of the ICT environment in investment fund companies."
KNF Audit
The KNF Audit assesses the organization's compliance with the requirements of Resolution No. 411/2014 of the Polish Financial Supervision Authority of December 16, 2014, on the issuance of "Guidelines for the management of information technology areas and the security of the ICT environment in investment fund companies."
Ensure compliance with KNF requirements.
The audit results directly from Guideline 22 of the Resolution: "The areas of information technology and security of the ICT environment of an investment fund company should be subject to systematic, independent audits."
We provide a compliance audit with all areas included in the Polish Financial Supervision Authority guidelines.
Benefits of the KNF audit
Formal compliance with regulations
You will receive an assessment of compliance with KNF guidelines to operate safely and by the law.
Big picture of the security status
You will assess your organization's current security measures.
Support in KNF formalities
We help you complete the KNF "self-assessment" and meet legal requirements.
Investment Planning
We create a security development plan following KNF recommendations.
What is the KNF audit about?
The KNF audit includes verification of the complexity of the ICT environment and the degree of exposure to risk in terms of the security of this environment.
IT security verification
We assess the state of IT security and management procedures.
Compliance with KNF and ISO standards
We analyze compliance with KNF IT guidelines (Recommendation "D"), ISO/IEC 27001, and ISO/IEC 22301.
Assessment of data processing in the cloud
We verify compliance with KNF recommendations regarding public and hybrid cloud services.
Audit report
The audit report will provide detailed recommendations and an indication of non-compliance and threats in the IT security system.
Wondering what will be best for your organization?
Cybersecurity and data protection. Penetration, social engineering, and performance testing. Safety audits and training. Authorized OffSec partner in Poland.