Privacy and Consumer Information Compliance Audit
Process and Methodology
NETBankAudit conducts an objective and independent evaluation of the Privacy and Consumer Information Compliance function, including testing for compliance with applicable regulations and an evaluation of management information systems (MIS). The audit covers:
- Gramm-Leach-Bliley Act (Privacy - Regulation P)
- Fair and Accurate Credit Transaction Act (FACT Act), including Identity Theft and Red Flags
- Fair Credit Reporting Act
- Children’s Online Privacy Protection Act (COPPA)
- Right to Financial Privacy Act
- Controlling the Assault of Non-Solicited Pornography and Marketing Act of 2003
- Telephone Consumer Protection Act
Scope of the Audit
- Compliance management, oversight, and administration
- Risk assessment
- Policies and procedures
- Form review (applications, statements, disclosures, etc.)
- Marketing review
- Internal controls and transactional testing (where applicable)
- Review and quality control
The audit methodology is based on the Compliance Handbook, FFIEC, and CFPB guidance. Sampling, if required, uses COSO criteria. A detailed report and supporting workpapers are provided upon completion.