![Page 1: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/1.jpg)
Surviving a Software Audit
Or
How to Avoid One
![Page 3: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/3.jpg)
Experience
• Years ago started at a firm just after an audit
• Attended the Software Publishers Association Software Management Course
• Implemented several software licensing management programs
![Page 4: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/4.jpg)
Agenda
• Understanding the audit process
• Understanding the rules
• Avoiding the audit or minimizing its impact
![Page 5: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/5.jpg)
Who Will Audit?
• Software and Information Industry Association (SIIA) – SPA is a Division of this organization
• Business Software Alliance (BSA)
![Page 6: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/6.jpg)
How Does this Happen?
• 1-800 number
• Disgruntled employee
• Not so disgruntled employee
• Vendor
• Anyone can call
![Page 7: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/7.jpg)
Anti-Piracy Actions
• Cease and desist letter– Minor infringements– Further action based on response
![Page 8: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/8.jpg)
Scare Letters
• How is your firm doing?
• Do I respond?
![Page 9: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/9.jpg)
Anti-Piracy Actions
• Self audit– Voluntary– Confidential– Proof of ownership
![Page 10: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/10.jpg)
Proof of Ownership
• Dated invoices, purchase orders and/or receipts showing the product and quantity
• Dated software or hardware reseller reports itemizing the products and quantity purchased
![Page 11: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/11.jpg)
Proof of Ownership
• Does NOT include original software
• Does NOT include original manuals or license certificates
• No mixing and matching
![Page 12: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/12.jpg)
Anti-Piracy Actions
• Litigation– Summons and Complaint
• Self Audit
• Penalties based on the US or Canadian Copyright Act plus court costs and attorneys’ fees
• Destroy illegal copies
• Purchase all necessary software
– A matter of public record
![Page 13: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/13.jpg)
Anti-Piracy Actions
• Ex-Parte Search and Seizure Order– Surprise Audit– Pay penalties based on US or Canadian Copyright
Act, court costs and attorneys’ fees– Destroy illegal copies– Purchase all necessary software
• A matter of public record
![Page 14: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/14.jpg)
What are the Penalties?
• Cooperative Audit– Penalty of 3 times the manufacturer’s suggested
retail price of the software to SPA– Purchase all necessary licenses– Total = MSRP X 4
![Page 15: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/15.jpg)
What are the Penalties?
• United States– Civil Penalties up to US$150,000 for each
infringed title– Criminal Penalties up to US$250,000 for each
infringed title and jail time of up to 5 years
![Page 16: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/16.jpg)
What are the Penalties?
• Canada– Civil Penalties up to CDN$20,000 for each
infringed title– Criminal Penalties up to CDN$1,000,000 for
infringed title and jail time of up to 5 years
![Page 17: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/17.jpg)
Understanding Licensing
• It’s not the intent that counts
• Read the agreement carefully
• Get vendors to answer licensing questions in writing
![Page 18: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/18.jpg)
Understanding Licensing
• It’s not as easy as it looks– Concurrent– Home/remote/laptop use– Network licensing– Traditional or competitive upgrades– Client/Server licenses– ASP licenses
![Page 19: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/19.jpg)
Understanding Licensing
• Individual and machine licenses– Individual licenses (one person, one workstation –
never on a server)– Machine licenses (one machine)– Suites (applications cannot be split)– Competitive upgrades
![Page 20: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/20.jpg)
Understanding Licensing
• Font licenses– CPU based– Printer based
![Page 21: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/21.jpg)
Understanding Licensing
• Network licensing– Concurrent user licensing - metering– Network license
• The publisher defines “network”
![Page 22: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/22.jpg)
Understanding Licensing
• Site licenses
• Enterprise licenses
• Volume license agreements
• Client/Server licenses
![Page 23: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/23.jpg)
Understanding Licensing
• Groupware– Concurrent usage– Number of users– Number of installations
![Page 24: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/24.jpg)
Understanding Licensing
• Shareware
• Freeware
• Public domain software
![Page 25: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/25.jpg)
Understanding Licensing
• The legal industry types– By timekeeper (Elite)– By DMS user (Workshare, changed)
![Page 26: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/26.jpg)
Understanding Licensing
• OEM copies
• Transfer and resale
![Page 27: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/27.jpg)
We’re being Audited!
• Negotiate the process
• Self-audit
• Gather the documentation
• Assess the damages
• Negotiate any penalties
• Cooperate!
![Page 28: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/28.jpg)
Avoiding the Audit
• Documentation– Start with your accounting department
• Paid Invoices
• Purchase Orders
• Fixed Asset Systems
• Organizing the records
![Page 29: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/29.jpg)
Avoiding the Audit
• Software manager– Trained on software management and licensing
• http://www.siia.net/piracy/seminars/csm.asp
– Keeper of documentation– Watch dog over IT staff– Keeper of the media– Educator
![Page 30: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/30.jpg)
Avoiding the Audit
• Purchasing process– Use purchase orders– Disallow purchases via credit card where possible– Have a small number of people who can purchase
![Page 31: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/31.jpg)
Avoiding the Audit
• Self audit– SMS– Track-it
![Page 32: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/32.jpg)
Avoiding the Audit
• Establish a policy– Make sure all employees are aware– Sign off on the policy– Visit http://www.siia.net/piracy/policy/default.asp
for sample policies
![Page 33: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/33.jpg)
Avoiding the Audit
• Education– Start with your IT Staff!– Next tackle management
• Demonstrate the costs in penalties• Educate them on how easy it is to be a target
– New hire training– Ongoing reminders– Announced and surprise audits
![Page 34: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/34.jpg)
More Information
• Title 17of the U.S. Code, Sections 101, 106, 117, 501, 504 and 506 and Title 18 of the U.S. Code, Section 2319
• The Software and Information Industry Association (SIIA) http://www.siia.net/default.asp
• Business Software Alliance (BSA) http://www.bsa.org/usa/antipiracy/
• The European Leisure Software Publishers Association (ELSPA) http://www.elspa.com/
![Page 35: Surviving a Software Audit Or How to Avoid One. Athelene Gieseman agieseman@stinsonmoheck.com](https://reader035.vdocuments.us/reader035/viewer/2022062618/5514ea7f550346a80c8b4a8b/html5/thumbnails/35.jpg)
Final Words
• Law firms can be special targets
• Start with your own attitude
• Go to a software management class