Megan Kovash

Partner | CPA

Megan Kovash specializes in SOC audits with experience in financial audit, internal audit, and data analytics as well. Megan started her career in 2012 after completing her Masters of Accountancy with the University of Denver. She is a CPA that specializes in IT security audits and started her career at Ernst & Young in Denver, then moved to the Internal Audit Data Analytics group at Charles Schwab. She started with Linford & Co., LLP in 2019 and is a partner with the firm. Megan enjoys working with clients to find and implement solutions that better her client’s business while also meeting audit requirements.

All articles by Megan Kovash:

With all the commerce and other types of transactions and information that traverse the Internet, it is useful that there are organizations such as the CSA, AICPA, and many others, which are focused on serving the public’s interests. And while nothing will ever give complete assurance as to the internal controls for a service organization, [...]

One of the key points of focus when it comes to security compliance is the strength of access management controls. Whether your organization is aiming for compliance with the AICPA’s SOC criteria, NIST framework, GDPR, or HIPAA certification, to name a few, access controls play a key role in the internal control environment. Throughout this [...]

When deciding what kind of SOC report your service organization needs or what kind of report to request from your service organization, the options can be a little confusing. Especially when considering whether you need a SOC 2 vs a SOC 3 report. Many of our clients ask us what a SOC 3 report is, [...]

Risk evaluation and mitigation strategies for SOC 2 compliance is something I am being asked more frequently about by many first-time clients. In the following paragraphs, I will be discussing requirements for service organizations to consider when contemplating or undergoing a SOC 2 audit. Specifically, risk assessment and mitigation strategies in place at the service [...]

What is inherent risk and control risk and how do they relate to a SOC 2 audit? Inherent risk occurs due to the nature of the service provided and operation of the Company without consideration of any controls in place. Control risk is present as a result of the internal controls in place at the [...]

No Matches Found

But there’s still plenty worth exploring. Try a different search, or browse the Blog.

"*" indicates required fields

This field is for validation purposes and should be left unchanged.
I understand and agree to the Linford & Company LLP privacy policy.**