Basically you can put all the internal disciplines you like into that framework and then demonstrate to an independent auditor that you are complying with it," he points out. Some regulations span all sectors, such as Sarbanes-Oxley, the US public...
To help wrap your brain around the meaning of those controls, here's a brief overview of assessment and testing. Once the team finishes documenting the company's processes, it's time to start the identifying control activities and assessing control...
The Sarbanes-Oxley Act of 2002 implies that strict retention policies and procedures must be in place. If you haven't heard of Sarbanes-Oxley, HIPAA, FERPA, or Gramm-Leach-Bliley, you've either just recently re-entered the workforce after a very...
Sarbanes-Oxley compliance Dew says that BOC has spent a lot of time making sure it is compliant with the requirements of Sarbanes-Oxley corporate governance regulations. BOC is "getting towards the end of the first phase" of bringing in the company...
According to Metzger, SAP is now undergoing half-year SOX 404 audits by its external auditor KPMG, and expects to obtain the first certification of compliance early next year. Like it or not, the clock is ticking for non-US companies that need to...
You can adopt a compliance-based approach and tick every box in the Sarbanes Oxley rule book, or you can take a risk-based approach," he says. In terms of the technical controls - the procedures to be followed by staff - the material in its sister...