PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT...

11
PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com PKF Avant Edge COMPANY PROFILE 2015 PKF Avant Edge

Transcript of PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT...

Page 1: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

PKF Avant Edge

COMPANY PROFILE 2015

PKF Avant Edge

Page 2: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

PKF Tax PKF

Covenant PKF Audit

PKF

Advisory

PKF Avant

Edge

INTRODUCTION

Page 3: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high

quality and exceptional services in the Information Technology (IT) consulting industry. IT

consulting has blossomed over the years in this region, where firms such as Accenture, IBM, the

Accounting Big 4 and other well known companies have taken advantage of the massive need for

proper IT guidance. IT itself has come to the forefront of the board agenda, and in due course,

information will be a currency that many companies will trade on. Therefore it is extremely critical

that IT hardware and software is not just invested in, but proper professional services as well. We

intend to be the partner of choice for our clients, in not just giving extraordinary services, but at a

value that makes business sense to our customers. Unlike current service firms, our pricing and

costing can be geared towards the SMEs.

PKFAE is the Information Technology (IT) Advisory Group of PKF Malaysia, and we are part of an

extensive international network of business advisors and consultants. PKFAE focuses on providing

IT services and solutions to its clients, and that include IT due diligence and audit, IT governance

and compliance to industry standards (such as PCI-DSS, ISO20000 and ISO27001), IT education

and enablement, IT Business and Solutions consulting and IT Enterprise Risk Management. The

group comprises experienced professionals certified in various industries certifications, such as

Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM),

Certified in Governance of Enterprise IT (CGEIT) and Certified Information Systems Security

Professional (CISSP).

PKF AVANT EDGE INTRODUCTION

Page 4: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

Traditionally, Information Technology has been viewed as an attachment to the core business, or

at most, a peripheral enabler. Today, we realise that IT is the key to our survival, as technology

becomes integrated to our business, the consequences of a technology fracture becomes higher.

IT can help save costs, increase productivity and efficiency and drive business goals. On the other

hand, IT risks must be managed to ensure the preservation of information confidentiality, integrity

and availability.

We believe Technology alone is not enough. Enterprise must apply Technology effectively and drive

value from IT.

We collaborate with other groups, recognising the far impacting influence of IT, ensuring that

technology changes and implementation are managed holistically and brings business (not IT)

benefits.

Our Value Pillars: IT Strategic Alignment will drive Measurable Value, requiring Resource

and Risk Management.

OUR BELIEFS, OUR VALUES

Page 5: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

Experience:

We have managerial and ground level experience in every IT field. We are not just compliance,

on-paper technology theoreticians, but in-the-field, real world IT practitioners. We are lead

programmers, security architects, database experts, IT directors, service managers, IT risk

consultants and compliance directors who bring in actual real-life case studies from first hand

experiences, not just theoretical ‘best practices’.

Methodologies:

We combine our experiences in the field with globally accepted frameworks to better

understand how to harness technology for the benefit of our client’s business. The

methodologies are honed over years of practice and success stories, and are continually

improved.

Accreditation:

For assurance, we are certified CISA, CISM, CGEIT and CISSP. We have project

management certifications MSP and PMP. For compliance, we are also

ISO27001/20000/9000/14001 auditors and implementers. As a company we are MSC Status

as well as certified under the Ministry of Finance (MOF) of Malaysia.

OUR 3 VALUE PROPOSITIONS (3VP)

Page 6: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

ASSURANCE & COMPLIANCE

PROJECT

MANAGEMENT TECHNICAL

• IT Audit and Assessment (COBIT)

• ISO27001 (ISMS) Services

• PCI-DSS Services

• WebTrust Assessment & Audit

• Personal Data Protection Act (PDPA)

Services

• BSA Audits and Compliance Review

• Local compliances (GPIS etc)

• Technology Project Management

• Compliance Project Management

• Project Viability Audit

• Project Resource Outsourcing

• Training and Education

• Penetration Testing

• Vulnerability Assessment

• Digital Forensics

• Technology Support and

Troubleshooting

AvantEdge

Services are

defined in 3 broad

categories:

OUR VALUE SERVICES

Page 7: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

ASSURANCE AND COMPLIANCE

Service Description

IT Audit and Assessment

Using our combined knowledge in COBIT, ISO27001 and PCI-DSS, we create risk-based technology audit programs for our clients, to ensure the tenet of data confidentiality, integrity and availability is maintained. We offer Baseline IT audits to advanced customised technology audits based on our client’s business needs and risks. We are members of ISACA (Information Security Audit Control Association) and are certified to their stringent and international qualifications to conduct these exercises.

ISO27001 (ISMS) Services

We are certified Lead Auditors for the growing ISO27001 standard, also known as Information Security Management System. The ISO27001 is considered as a holistic security standard covering 11 security domains, technical and non-technical. It is required by all Critical National Information Infrastructure (CNII) industries in Malaysia. We take our clients from initial gap assessment to guidance of implementation and management of the certification process by the certification body.

PCI-DSS Services

PCI-DSS or Payment Card Industry Data Security Standard is the de-facto standard that all merchants, payment providers and banks are required to comply to as a contractual obligation for the major card brands such as Visa, Mastercard and Amex. Since 2010 we have are the exclusive partner of leading Qualified Security Assessor, Control Case International for the region. We are also certified PCI Professionals and have undertaken various successful PCI projects for banks, merchants and payment service providers.

Page 8: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

ASSURANCE AND COMPLIANCE

Service Description

WebTrust Assurance

We are licensed to perform SysTrust and WebTrust services giving assurance attesting to an entity's compliance with the Trust Services Principles and Criteria published by AICPA/CICA. We have various programs for consumer and business to business sites, as well as certification authorities. This include programs relating to Privacy Availability Security Processing Integrity, confidentiality and systems reliability. We are qualified to provide a WebTrust seal that can be displayed on the client's web site giving assurance that the site is certified to WebTrust’s stringent security and privacy standards, accepted worldwide.

Personal Data Protection Act (PDPA) Services

In Malaysia, the Personal Data Protection Act affects every single commercial business. Privacy is now paramount on the government’s agenda, with offenders liable to RM500,000 fines and up to 3 years imprisonment. We have developed our PDPA assessment materials and programs since 2012, and have jointly conducted workshops around the country, along with the national enforcers, the Personal Data Protection Department of Malaysia, to clarify the myths of PDPA and to ensure practical implementation to comply to PDPA. We have 4 types of PDPA packages: Starter, Checklist, Assessment and Custom. Working with the Department, we ensure compliance to this new act is both practical and beneficial to our clients, without hitting the bottom line too hard.

BSA & Local Compliances

We do BSA (Business Software Alliance) Assessments, to ensure that our clients are ready for the BSA compliance audits. Aside from that, we have also performed assurances and audits based on Bank Negara’s GPIS1 security guidelines and Security Commissions’ security and project requirements.

Page 9: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

TECHNICAL SERVICES

Service Description

Penetration Testing & Vulnerability Assessments

One of our key technology services, we use both freeware and commercial products to do PCI accepted penetration tests and vulnerability assessments. Our qualified personnel ensure that penetration testing methodologies such as Open Source Security Testing Manual Methodology (OSSTMM), Open Web Application Security Project (OWASP) and NIST 800-42/115 are being followed. We have certified “pentesters” with peer-reviewed tools, and field experience, having done massive projects with more than 1,000 IPs in testing scope. Our international certifications are Certified Ethical Hacker (CEH) and Licensed Penetration Tester (LPT) from EC-Council (www.eccouncil.org), Certified Information Systems Security Professional (CISSP) from ISC2 (www.isc2.org), and GIAC Certified Penetration Tester (GPEN) from GIAC (www.giac.org)

Digital Forensics

When there is fraud, there needs to be evidence. Our forensics team has been trained to provide digital forensics services to recover information and data that has been deleted or lost. We supplement our audit investigation team to look for the proverbial smoking gun and that data is properly documented through chain of custody, and to ensure primary evidence lifecycle is preserved to be acceptable in court. We work closely with enforcement agencies as well as government service providers such as Cybersecurity to ensure that proper tools, lab settings and expertise are used together, to piece critical evidence for a case.

Technology Support and Troubleshooting

Sometimes our customers just require guidance and advice on setting up their network or systems, or implementing their ERP software. With network and security experts, we can provide custom technology support as and when needed by our clients.

Page 10: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

PROJECT MANAGEMENT SERVICES

Service Description

Technology Project Management

Our Project Management team members have expertise in a wide area of technology, including business intelligence software such as SAS, to ERP systems like Oracle, Sage and Microsoft. We provide certified Project Management Professionals (PMP) to coordinate projects from the start to the end of the project lifecycle, to deliver projects on time, within budget and with the acceptable or exceeding quality. We provide guidance to evaluating vendors, gathering requirements, documenting and facilitating communications, manage implementation and testing.

Compliance Project Management

At times, project management is required to run a compliance program as opposed to just technology implementation. A compliance program might consist of several implementation project. We have experienced in large scale PCI Program implementation for banks, ISO27001 compliance project for public listed companies and GST project management and advisory. GST is one of the main topic on the boards’ agenda in 2014, and we have a service program to ensure GST compliance requirements are met by our clients.

Project Viability Audit

We provide audits on projects to ensure if the project is viable to begin, or to be continued. We utilise the requirements Project Management Body of Knowledge (PMBOK) and map it to the project, providing our clients with an objective and quantifiable measurements of a project health and ultimately enabling top management decision on project viability.

Project Resource Outsourcing

Due to the demand for highly qualified and experienced Project resources, we have had our professionals outsourced completely to projects, either leading as Project Directors and managers, or facilitating as Business Analysts and project member. Depending on the needs of our clients, we provide them with a steady stream of project resources that can be increased or decreased on demand.

Training and Education We provide technical and project management training to our clients, where required.

Page 11: PKF Avant Edge - PKF Malaysia AvantEdge Services 2015 WEB.pdf · PKF Avant Edge Sdn. Bhd. PKF AVANT EDGE SDN BHD (PKFAE) was incorporated in 2010 with the vision to provide high quality

PKF Avant Edge Sdn. Bhd. www.pkfmalaysia.com

PKF Avant Edge Sdn. Bhd. (892515-W)

Email: [email protected]

Web: http://www.pkfmalaysia.com

Address: Level 33, Menara 1MK,

Kompleks 1 Mont’ Kiara,

No.1, Jalan Kiara, Mont’ Kiara

50480 Kuala Lumpur

Telephone: +603 6203 1888

Facsimile: +603 6201 8880

FOR MORE INFORMATION