While the top three initiatives in 2012 were 1) information security, 2) remote access and
3) control and use of mobile devices, the top three in 2011 were 1) control and use of
mobile devices, 2) information security and 3) data retention policies and structure. What
this comparison shows is that information security and control and use of mobile devices
remain among the top concerns of CPAs. This year, remote access replaced data retention
policies in the top three, which may not be surprising, given CPAs’ continuing concerns
about remote access issues such as cloud computing.