SOX mapped against ISO17799 1223



  • Does anyone knows of a mapping between these two?
    /SBI



  • SOX mapped against ISO17799 - Does anyone knows of a mapping between these two?
    /SBI
    You can not map SOX with ISO 17799.
    You can comply with SOX using COSO…
    … in COSO you need high level objectives (a precondition to risk assessment)…
    … you can use the high level objectives of COBIT for your IT enviroment…
    … and you can map COBIT with ISO 17799
    How?
    itsmf.com/images/news/ITIL-COBiT.pdf



  • Thanks.
    Sorry, my descrition was to simple, you are right. I already have my high level objectives in place and had ISO mapped against these like the document you refred to.
    I really can have a very good use of the document you refred to. Thanks.
    If you have more references to documents like this please share them 😉
    e.g. COSO vs. SOX I would really appreciate it.
    Thanks for your time.
    /Soren



  • ISO 17799 is very similar to SOX. Allot of the objectives ask for similar criteria. What is it that you needed exactly?


Log in to reply