CPA · CISA · CISM · CDPSE · CCSE · MBA
Advisory team reviewing governance, assurance and technology deliverables across a range of engagements

CPA, Governance, Cybersecurity and Finance Technology Services

Seventeen service lines across four pillars, from tax filings to SOC 2 attestation to AI-enabled continuous audit.

The practice is organised in four tiers. The lower tiers are the licensed foundation, tax, accounting and attestation. The upper tiers are where it is distinctive.

Governance and risk, security and privacy compliance, and the finance technology that produces the numbers in the first place.

They are listed in that order deliberately. Most engagements begin in one tier and reveal that the actual problem sits in another, a company asking for SOC 2 readiness that turns out to need its access management fixed first, or a company asking for close acceleration that needs its chart of accounts rebuilt before automation is worth attempting. Being able to move across the tiers without changing firms is the point of the structure.

Financial & CPA Services

The licensed CPA foundation: tax, accounting, financial leadership, and the attestation work only a CPA firm can sign.

SOX 404 Compliance

Scoping, control design, testing and remediation for Section 404, including the first-year programmes that decide whether year two is manageable.

SOX 404 support

Governance, Risk & Transaction Advisory

Board-level governance design, risk and control frameworks, IT general controls, and the diligence work that decides whether a deal is priced correctly.

Cybersecurity, Cloud & Data Privacy Compliance

SOC 2, cybersecurity risk, cloud platform compliance and privacy law, assessed and attested by one licensed firm rather than split across two vendors.

Technology & Engineering Deployment

The build tier: AI-enabled continuous audit, ERP programmes, robotic process automation and FinOps, specified and deployed, not just recommended.

Every service, across the full service area

On site across Ventura County; on site and remote across Los Angeles County.

Choosing an engagement: common questions

Not answered here? Ask Javed directly

How do I work out which of these services I need?

Describe the problem rather than picking a service. "Our customer is demanding a SOC 2 report" or "we got a payroll notice from the EDD" identifies the engagement faster than reading four pillar pages, because most triggers map to one obvious starting point and one or two things that turn out to matter later.

Can one engagement cover more than one of these services?

Usually, and that is the point of holding the CPA licence alongside CISA, CISM, CDPSE and CCSE. A SOX programme needs ITGC work. A SOC 2 needs both the readiness and the attestation. A transaction needs the numbers tested and the IT and privacy exposure assessed. Splitting those across vendors is what creates the handoff the client ends up managing.

Do you take one-off projects, or only ongoing work?

Both. Assessments, readiness reviews, diligence and attestation engagements are finite by nature. Accounting, close support and tax are continuing. A one-off assessment does not commit you to anything ongoing, and it is often the right way to find out whether ongoing support is needed at all.

What does an engagement cost?

There are no published rates, because the honest answer depends on scope and the scope is what the first conversation establishes. What can be said in advance: the scoping conversation is not billed, the fee is agreed before work starts, and you will be told if the work you asked for is larger than the problem you have.

Will you tell me if I do not need the work?

Yes, and it happens regularly. A company convinced it needs a SOX programme sometimes needs three controls documented. A company asking for a full privacy programme sometimes needs a data inventory and nothing else that year. Declining work that is not needed costs one engagement and is the reason the next one arrives.

Organisations we have worked with

Three decades of audit, controls and finance leadership across banking, card, mortgage, insurance, staffing and semiconductor.

  • Diodes Incorporated
  • City National Bank
  • Robert Half
  • SMBC
  • PennyMac
  • American Express
  • Zenith Insurance
  • Capco Consulting Services
  • WebVision

Get in touch

Describe the problem, not the service

Tell us what is happening and the right engagement usually identifies itself.

Have a deadline, or just a question?

Send the shape of it. The first call is diagnostic, not billed, and it regularly ends with a smaller engagement than the one you asked about.

Javed Peeran CPA Request a consultation

Answered personally, within one business day. Your details are used only to reply to you, see our privacy policy.

Not sure which of these you actually need?

That is the most common starting point, and the diagnostic conversation that resolves it is not billed. It regularly concludes that a client needs less than they came for.

WhatsApp Us
Call Now