Cybersecurity Services for RSM US (Security Practice)
National accounting and consulting firm with a dedicated cybersecurity practice delivering security assessments, penetration testing, compliance, and incident response for middle-market companies.
CWS is not affiliated with RSM US (Security Practice). This page describes cybersecurity delivery services CWS offers to channel partners.
RSM US (Security Practice) at a glance
- Founded
- 1926
- Operates in
- Chicago, Illinois (headquarters, 30 South Wacker Drive), 81 offices across the United States and Canada, India, El Salvador
- Attestations
- PCI DSS Qualified Security Assessor, Authorized HITRUST External Assessor, FedRAMP third party assessor, CMMC third party assessor, ISO 27001 certified lead auditor, Certified Information Privacy Professional
Compiled from public sources: https://rsmus.com/about.html, https://en.wikipedia.org/wiki/RSM_US, https://rsmus.com/newsroom/mcgladrey-changes-its-name-to-rsm-in-global-branding-initiative.html, https://rsmus.com/services/risk-fraud-cybersecurity/cybersecurity-business-vulnerability.html, https://rsmus.com/services/risk-fraud-cybersecurity/cybersecurity-business-vulnerability/cybersecurity-risk-compliance.html, https://rsmus.com/services/managed-services/security-risk-defense.html, https://rsmus.com/locations.html, https://pcaobus.org/Inspections/Reports/Documents/104-2016-173-RSM.pdf.
The Challenge for Enterprise Resellers
RSM US traces to 1926, when Ira B. McGladrey acquired a seven person accounting office in Cedar Rapids, Iowa. Some version of the McGladrey name stayed on the door for nearly nine decades. The headquarters moved to Chicago in 2012, and on October 26, 2015 McGladrey LLP became RSM US LLP as RSM International pulled its member firms under one brand. Security sits inside that partnership, next to audit and tax
Accreditation is the constraint. RSM is a PCI DSS Qualified Security Assessor, an Authorized HITRUST External Assessor and a FedRAMP and CMMC third party assessor, and those programs limit how much of a control environment one firm can build and then attest to for the same client. That caution bites at exactly the moment a middle market client stops wanting a grade and starts wanting somebody to build the thing. Then there is geography. Eighty one offices across the United States and Canada means a partner in one city sells work that has to be delivered by people sitting in another, on a partnership utilization model that does not flex easily for a six week deployment
CWS is the bench that does not create that problem. Our engineers deploy under the RSM name at arm's length from the attestation work, to one delivery standard across the United States and Canada, and in French where Quebec or Canadian federal clients require it, which matters for a firm that counts Canadian offices in its own footprint. Corova handles scoping, quoting and tracking, so a partner can price an engagement locally without waiting on a national resourcing call
Relevant CWS Services for RSM US (Security Practice)
Based on RSM US (Security Practice)'s specializations, the following CWS service lines align with their cybersecurity practice.
Why This Matters for RSM US (Security Practice)
Independence is an asset right up to the point where it becomes a bottleneck. The same clients asking RSM to assess them are asking who will fix what the assessment found, and the second answer cannot always come from the first team. CWS lets the firm give both answers without either one weakening the other
Does this page belong to you?
If you work at RSM US (Security Practice) and want to explore what CWS can do for your cybersecurity services practice, claim this page. We will set up a dedicated partner profile, custom pricing, and a direct line to our delivery team.
Claim This Page