Anda di halaman 1dari 1

All large, publicly traded US companies need to comply

Contains 11 Sections, where "Section 404" is focused on IT; "Management Assessment of IT Controls"

Internal Control Frameworks Governance Frameworks to meet Sarbox's requirements For Information Technology (IT) Control objectives as "guidance" 4 Domains & 34 Processes For enterprises

Enron Tyco Worldcom Andersen ....


Corporate & Accounting Scandals

COBIT
Controlled Objectives for Information and related Technologies

COSO
Umbrella Framework for IT Governance

SARBOX

Focused on financial controls and disclosures

"Integrator" of Senator different Sarbanes and Aims to restore Major practices Rep. Oxley Provisions market or authored this investor bill "Sarbanes- confidence & * creation of public accounting body ITIL (PCAOB) Oxley Act of public trust Best practices for * certification by CEO/CFO of 2002" ISO 17799/27001 Service Mgt financial statements (service support & Focused on * effectiveness of internal controls CMMI service delivery) Information * protection of whistleblowers" Best practices Security * avoid inside trading for SW Engg * independent audit * PMI Proj Mgt * additional disclosure Framework * Etc... * IIBA BABOK

Anda mungkin juga menyukai