PassportCard

Scaling InsurTech Strengthens SOX ITGC with Enterprise-Grade Control Oversight

As PassportCard grew from an insurance agency into a regulated insurer, its SOX requirements quickly outpaced manual ITGC processes. By implementing Scytale’s AI GRC platform, PassportCard established scalable governance, continuous control oversight, and year-round audit readiness to support its next stage of growth.

quote icon
PassportCard

Dolev Weiss

Corporate SOX Manager
PassportCard

“As PassportCard transitioned into a full-fledged insurance company, we faced new SOX compliance challenges. Our manual, reactive audit process made it hard to stay on top of issues. With Scytale’s real-time monitoring, we can address issues as they arise and ensure smooth audits and effective compliance all year long.” 

Challenges

PassportCard’s legacy approach relied on periodic data pulls, manual controls, and sample-based testing. This reactive model limited visibility into control performance, increased audit preparation effort, and made it difficult to identify deficiencies before year-end.

As the business expanded, leadership required a more reliable, enterprise-grade approach to SOX ITGC management that could deliver consistent assurance throughout the reporting cycle.

Solution

PassportCard adopted Scytale’s automated ITGC platform to modernize its SOX control environment. Continuous monitoring replaced periodic testing, enabling real-time visibility into control effectiveness across critical systems.  

With automated evidence collection and structured workflows, the team could identify, investigate, and remediate issues as they arose, maintaining audit readiness year-round instead of reacting during audit season.

Highlights

  • Continuous monitoring replaced periodic testing cycles, giving leadership a live view of control performance and reducing last-minute audit risk.
  • Automated evidence collection and structured workflows replaced manual sampling and documentation, improving accuracy and consistency.
  • Early detection and remediation of control gaps strengthened SOX assurance, enabling PassportCard to scale governance without increasing headcount.

Key Results & Successes

By partnering with Scytale, PassportCard shifted from reactive, point-in-time audits to a continuous, structured ITGC program. Automated evidence collection and system integrations now enable ongoing evaluation of key controls across the environment. 

This shift strengthened confidence in the ITGC environment and improved its reliability, giving leadership clear, timely insight to support faster, more informed decision-making. 

As a result, PassportCard scaled governance alongside growth, significantly reducing audit preparation effort and maintaining effortless, continuous SOX ITGC compliance.