Posts Tagged 'ISACA'

A Risk-Based Approach to SoD

Posted by:

A Risk-Based Approach to SoD

A Risk-Based Approach to Segregation of Duties

Segregation of duties (SoD) is a hot topic of conversation among a range of professionals, from compliance managers to executive officers. The outpouring of interest in SoD is due, in part, to the requirements of the Sarbanes-Oxley
Act in the US and other similar control-driven regulations worldwide. However, there is another factor at work: the principle that no individual should have excessive system access that enables him/her to execute conflicting end-to-end transactions. If this ...

Read More
0

Information Security Governance Models

Posted by:

Information Security Governance Models

Information Security Governance Models: Empowering the Organization

Adopting an effective governance model is a foundational component to running an effective information security program. A well-structured model promotes open communication, increases effectiveness of the control environment and empowers the company by establishing a shared vision of IT risk and security. However, each organization chooses a different security governance model to address its unique requirements. While there is no right or wrong way to organize a one’s governance model, this session will explore ...

Read More
0