Johnson Wong

Johnson Wong

Assurance Principal; Third-Party Attestation & IS Assurance Regional Leader

BDO New York - Park Avenue Office



Executive Summary

Johnson Wong has more than 15 years of experience in information systems and evaluating internal controls and is responsible for managing the Information Systems (IS) Assurance practice for BDO’s Northeast region.  His areas of specialty include internal control reviews and analysis, IS auditing, Sarbanes-Oxley (SOX) compliance reviews, operational and compliance audits, security reviews, corporate and information technology (IT) governance, process improvement through re-engineering and technology changes,
Health Insurance Portability and Accountability Act (HIPAA) security reviews, data privacy, and IS consulting. 
Johnson is also responsible for delivering Statement on Standards for Attestation Engagements (SSAE) 16 and International Standards for Assurance Engagements (ISAE) 3402, as well as System and Organization Controls (SOC) 2 and 3 attestation services for the financial services, cloud services, hosted application, data center hosting, health care, and telecommunications industries.
Johnson provides services to clients in various industries, including retail, manufacturing and distribution, nonprofit, pharmaceuticals, government, financial services, and technology. Serving clients in BDO’s New York, Boston, Woodbridge, Melville, Stamford and Greater Washington D.C. offices, Johnson is responsible for the quality and timely delivery of IS assurance services to some of the firm’s largest audit clients. He currently conducts IT audits for a handful of Fortune 1000 clients. His experience covers legacy systems, virtual technology and the growing area of cloud computing.
In addition to serving clients, Johnson spends a significant amount of time working on BDO national projects, including developing standardized audit programs for the firm’s SOX 404 compliance methodology and developing and delivering training for both audit professionals and IS auditors.
Prior to joining BDO, Johnson held positions at Ernst & Young and KPMG, where he served clients in the technology, insurance and financial services industries.

Professional Affiliations

Information Systems Audit and Control Association
The Institute for Internal Controls 


B.S., Management – Financial Systems, Rensselaer Polytechnic Institute