A Cobit Based IT Self Assessment MethodologyThis IT self assessment tool can be used to identify gaps in capability and create the baseline for a benchmark against Cobit's standards for best practice and identify opportunities for improvement.
|
Risk and Compliance Management in Software ProcurementAvoiding risks and eliminating compliance issues in software procurement and management have been the most difficult challenges for CIOs and CPOs all over the world. This paper provides realistic solutions in times of software vendor audits and poten...
|
|
|
The Convergence of Governance, Risk and ComplianceThis paper presents the results of a global survey to assess the extent to which companies are adopting a coordinated approach to their governance, risk and compliance (GRC) activities. The research explored the costs and challenges associated with G...
|
Governance of High Risk ProjectsThe purpose of this report is to provide an independent assurance to government projects but its lessons are universally applicable - the same assurance discipline can be applied to IT investments.
|
|
|
How to Build a Strong Audit Capability?This presentation defines and clarifies the role, mission and charter of the internal audit function then describes its reporting structure and relationships with key stakeholders. It discusses best practices for executive reporting, risk assessment,...
|
Auditing IT System ConfigurationsThis presentation provides an overview of the general IT audit approach at visa and discusses standardization, audit exception reporting and audit issue remediation processes.
|
SAS 70 Practices and DevelopmentsThis presentation provides an overview of Statement on Auditing Standards aka SAS 70 auditing standard - what is SAS 70 report? what is the terminology used? how to perform a SAS 70 audit? what are the key considerations? how to use a SAS 70 report? ...
|
Guidelines for Planning an IS AuditThis presentation discusses the planning and implementation of an IT audit - what are the key considerations? how to address the requirements of an IT Audit?
|