Compliance as a Service (CaaS) means that the IT service provider’s people, processes, technologies, and facilities are audited annually by a third-party firm. Providers must be audited to the same standards that regulated entities are.
While these organizations are not financial institutions themselves, they provide bedrock capabilities that are the basis for compliant IT environments. These include hardened facilities that have impenetrable physical security, uninterruptable power, and redundant connectivity that meet the mandated needs of financial institutions.