Create an account Home  ·  Topics  ·  Downloads  ·  Your Account  ·  Submit News  ·  Top 10  
Modules
· Home
· Content
· Directory
· Downloads
· FAQ
· Forums
· Search
· Sox_Admin
· Statistics
· Submit News
· Surveys
· Top 10
· Your Account

Sarbox Compliance
The appropriately named Sarbanes-Oxley Compliance Toolkit includes a whole range of materials specifically put together to both introduce, and take you through this most important of legislation.

For detailed information see the toolkit's own website: Sarbanes-Oxley Compliance


SOX Act and Security
As security is such a major theme on the Act, many organizations are using the international ISO standards. The ISO 27001 Portal outlines these. A copy of the standards, and security policies, can be obtained via the ISO 17799 Toolkit.

The SOX email storage requirements can be fulfilled using the GFI MailArchiver


SOX Advertisers


Sarbanes What?
Our server logs indicate some interesting mis-spellings: Sarbannes Oxley, Sorbane Oxley, Sarbanne Oxley, Sarbaines Oxley, Sarbanesoxley, Sorbanes Oxley, Sabanes Oxley, Sarbane Oxley, and Sarbanes Oaxley, to name but a few!

Sarbanes-Oxley Act Forum: Forums

The Sarbanes Oxley Act :: View topic - Audit Process (IT)
 Forum FAQForum FAQ   SearchSearch   UsergroupsUsergroups   ProfileProfile   Login to check your private messagesLogin to check your private messages   LoginLogin 

Audit Process (IT)

 
Post new topic   Reply to topic    The Sarbanes Oxley Act Forum Index -> Sarbanes-Oxley: Audit Issues
View previous topic :: View next topic  
Author Message
JLewis
Soxer
Soxer


Joined: Jun 17, 2008
Posts: 37
Location: Vancouver

PostPosted: Mon Jun 30, 2008 12:55 pm    Post subject: Audit Process (IT) Reply with quote

Just wondering if anyone could point me in the direction of both the external and internal auditing process, specificly in relation to the IS Department.
After searching this forum i found an awesome link to the PCAOB documentation on their audit process. (Thanks again Harry) This document seems to relate directly to the Finance side of compliancy, my question being will this document cover all things needed to gain approval on the IT side of the equation? If not, is there anything out there that can aide me in this process?

Thanks for the assistance.

JL
Back to top
View users profile
milan
SoxGuru
SoxGuru


Joined: Oct 17, 2005
Posts: 415
Location: NY

PostPosted: Tue Jul 01, 2008 9:24 am    Post subject: SOX - IT Controls Reply with quote

Hi,

In addition to the feedback provided by Harry, you might also check out the following:

wwwDOTsecuritymanagement.com/files/Protiviti_Sarbanes0604.pdf

The resource is slightly dated, but the general principles have not changed and the Q&A addresses many facets of SOX compliance for IT controls.

Milan
Back to top
View users profile Send email
urbanaconsulting
Newbie
Newbie


Joined: Jul 01, 2008
Posts: 6

PostPosted: Wed Jul 02, 2008 3:25 am    Post subject: Check this out Reply with quote

I was suprised it was free (as it should be). There is an executive summary and a detailed standard outlined in the Cobit docs that can be found by going to the Control Processes forum and following the directions in t he post entitled:
Sticky: Free COBIT 4.x PDF copy by registering with ISACA

This should serve as the skeleton for the processes.
Back to top
View users profile Send email Visit posters website


Display posts from previous:   
Post new topic   Reply to topic    The Sarbanes Oxley Act Forum Index -> Sarbanes-Oxley: Audit Issues All times are GMT - 6 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©

 
Trademarks referenced on the SOX Act Forum are property of their respective owners. Comments are property of their respective posters.
Sarbanes-Oxley Act Implementation Portal: Sarbanes Oxley compliance, information, software, & internal audit committee resources. Sarbox.
Site source is copyright nuke (c)2003, and is Free Software under the GNU / GPL licence agreement. All Rights Are Reserved.