Security · Live online
Trust in the Age of AI: Security, Ethics & Fraud for CPA Firms
Security
- When
- November 3, 2027
- Format
- Live online · 1 day · Central Time
- CPE
- Up to 8 credits
- Price
- $299 Early-bird pricing coming soon Payable with CPE Today credits · credit packages coming soon
Add to Calendar
Member of a state CPA society or professional organization? Many offer K2 programs to their members, so it's worth checking with yours. Member pricing may be available.
You're a member of . They may offer this program to members, sometimes at a better price, so it's worth a quick check with them. Visit their site
Proposed Agenda
All times Central Time. Sessions, times and credits may change before the conference.
The Threat Landscape for CPA Firms
CPA firms hold exactly what attackers want — tax data, bank credentials, and client trust — and the attacks are getting faster and more convincing. This keynote maps the threats firms face today, from ransomware and business email compromise to credential theft, vendor and supply-chain breaches, and deepfake impersonation. You'll leave knowing what IRS Publication 4557 and the FTC Safeguards Rule actually require of your firm, and where most firms fall short.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Choose one of 2 sessions
Ethics in a Digital Practice
Cloud platforms, outside IT providers, and AI tools raise ethics questions the profession's rules were not originally written for. This session applies the AICPA Code's confidentiality provisions and IRC Section 7216 consent requirements to everyday technology decisions, examines independence considerations when working with tech vendors, and addresses when and how to disclose AI use to clients. Participants will work through practical scenarios to test where their current practices stand.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Build or Refresh Your WISP
Every tax preparer is required to have a written information security plan, but many firms have one that is outdated, generic, or missing entirely. In this hands-on workshop, participants build or update their WISP step by step, conduct a practical risk assessment of their own firm, and draft an incident response playbook. You'll leave with working documents tailored to your practice, not just a template.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Choose one of 2 sessions
AI Risks and Concerns
AI tools are already in your firm, whether or not you've approved them. This session examines the real risks — client data leaking into public models, staff using unsanctioned "shadow AI" tools, and hallucinated output making its way into client deliverables. Participants will learn the essential elements of a firm AI policy that enables productive use while protecting clients and the firm.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Identity and Access
Most breaches start with a stolen or weak credential, which makes identity the front line of firm security. This session covers multi-factor authentication done right, the shift to passkeys, deploying a firm-wide password manager, and closing the access gaps left when staff and contractors depart. You'll leave with a practical checklist for tightening who can get into what across your firm's systems.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Choose one of 2 sessions
Deepfakes and Social Engineering
A few seconds of recorded audio is now enough to clone a partner's voice, and attackers are using it to authorize wires and extract client data. This session shows how voice cloning, fake executive requests, and AI-polished phishing actually work, with real-world examples targeting accounting firms. Participants will learn verification procedures that stop these attacks regardless of how convincing the request appears.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Securing Client Communications
Every document exchanged with a client is a potential exposure point, and plain email attachments remain the norm at too many firms. This session compares secure client portals, email encryption options, and e-signature platforms, and establishes file-sharing practices that protect sensitive data without frustrating clients. You'll leave with clear standards for how your firm sends, receives, and stores client information.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Fraud in the Age of AI
Old fraud schemes are being supercharged by new technology, and CPAs are often the first to see the evidence. This closing keynote walks through today's most damaging schemes — payment diversion, check washing, payroll redirect, synthetic vendors, and tax identity theft — and shows how AI makes each faster and harder to spot. Participants will learn the red flags to watch for and the internal controls that protect both their firms and their clients.
- Field of study
- To be announced
- Level
- To be announced
- Prerequisites
- None
- Advance preparation
- None
- Delivery method
- Group Internet Based
Registration Opens Soon
Get Notified for Trust in the Age of AI
We'll email you the moment registration opens. One email, no spam.