9. Internal Control and Security
Privacy laws and increased accessibility to data have necessitated increased security. Accounting scandals and governmental regulation such as the Sarbanes-Oxley Act have placed increased importance on building and maintaining adequate systems of internal control. The quality assurance function can contribute to meeting those objectives by assuring that IT has adequate processes governing internal control and security.
Principles and Concepts of Internal Control
· Internal Control and Security Vocabulary and Concepts
· Preventive, Detective and Corrective Controls
Risk and Internal Control Models
· COSO Enterprise Risk Management (ERM) Model
· COSO Internal Control Framework Model
· CobiT Model (Control Objectives for Information and related Technology Model)
Building Internal Controls
· Perform Risk Assessment
Building Adequate Security
· Where Vulnerabilities in Security Occur
· Establishing a Security Baseline
· Security Awareness Training
· Security Practices



Recent comments
1 min 20 sec ago
1 min 41 sec ago
2 hours 12 min ago
7 hours 19 min ago
16 hours 16 min ago
18 hours 48 sec ago
18 hours 4 min ago
18 hours 21 min ago
22 hours 1 min ago
22 hours 1 min ago