Compliance


Essential Strategies for Financial Services Compliance
By: Annie Mills
Price: £21.45 (New)
£13.00 (Used)


Building a World-class Compliance Program: Best Practices and Strategies for Success
By: Martin T. Biegelman, Daniel R. Biegelman
Price: £18.71 (New)
£14.90 (Used)


The Handbook of Compliance: Making Ethics Work in Financial Services
By: Andrew Newton
Price: £31.25 (New)
£48.12 (Used)


Financial Services Authority Regulation and Risk-based Compliance
By: Stuart Bazley, Andrew Haynes
Price: £67.50 (New)
£60.14 (Used)


IEE Exam Success: City and Guilds 2377 (Standards and Compliance)
By: Mark Coles, Jonathan Elliott
Price: £12.35 (New)
£12.00 (Used)


Data Protection and Compliance in Context
By: Stewart Room
Price: £24.42 (New)
£54.64 (Used)


The Regulatory Craft: Controlling Risks, Solving Problems, and Managing Compliance
By: Malcolm K. Sparrow
Price: £14.48 (New)
£14.49 (Used)


Web Accessibility: Web Standards and Regulatory Compliance
By: Michael R. Burks, Patrick H. Lauke, Jim Thatcher, Richard Rutter, Cynthia Waddell
Price: £10.18 (New)
£7.90 (Used)



Managing Governance, Risk and Compliance: How to Achieve Compliance Through Process Documentation, Controls and Tests
By: Kersi Porbundawalla, Dr Anthony Tarantino
Price: £33.99 (New)


Governance, Risk, Architecture and Compliance for IT Systems
By: Ed Walters, John Coleshaw
Price: £23.70 (New)

Compliance

2008 Annual Report: it Governance, Risk and Compliance - Improving Business Results and Mitigating Financial Risk

IT GRC among the most mature

Marked by a focus on operational excellence, firms with the most mature IT GRC profiles have established an integrated approach to managing risk and reward within the IT function and across the entire organization. Among these firms, senior managers in IT are employing the balanced scorecard to:

1 .Regulate reward and risk decisions impacting the organization

2 .Establish policies and objectives for IT

3 . Institute a learning and growth culture that includes continuous quality improvement within the IT function

Within the IT function, and across legal, audit, internal controls, and business lines, the management of objectives for business reward and risk are being achieved with continuous quality improvement, control objectives, frequent measurement and reporting, common procedures, and high levels of automation, all complemented by IT service level objectives and contracts with IT vendors . Within the IT operations function, the focus is on common IT procedures, more automated controls, continuous measurement, and diligent IT change management and prevention procedures. Marked by the use of Six Sigma among some firms and simpler Continuous Quality Improvement cycles among many others, the most mature organizations establish a focus on operational excellence within IT that reflects results back into the objectives established and improved through the use of a balanced scorecard. Among these firms, the hallmark of the approach is: Make it easy to understand, easy to implement, and continuously improved.

Improving business results and mitigating financial risk

The Continuous Quality Improvement effort for the governance of IT and the balancing of reward and risk associated with the use of IT takes place at all levels within IT, and across the organization, among the most mature organizations An empirical IT GRC capability maturity model Primary benchmark research conducted by the IT Policy Compliance Group during the past two years has resulted in a GRC Capability Maturity Model (GRC CMM) with specific practices, competencies, and capabilities associated with each maturity level . This fact-based GRC Capability Maturity Model can be used to assess current maturity levels and quantify the business outcomes associated with each maturity level, as well as identify desired business outcomes and the capabilities, practices, and competencies needed to improve results. The scale employed for the GRC CMM borrows from prior research, including significant contributions made by ISACA and the IT Governance Institute. Against this scale, the business results, financial losses, financial risks, business disruptions, and regulatory compliance experience of more than 2, 600 firms have been mapped, from worst (level 1) to best (level 5) results.

The competencies, capabilities, and practices associated with each maturity level in the GRC CMM are those of the firms with specific business results at each level. This basis for the practices, capabilities, and competencies in the GRC CCM delivers empirical insight into what is working and not working, based upon primary research and facts, not hypothesis .

Implications and analysis

The way to improve business results and to reduce risk, loss, and expense is to increase or enhance the IT GRC competencies, practices, and capabilities governing the business rewards and risks associated with the use and disposition of IT . While most organizations will need to improve results, operating at the highest maturity level may be inappropriate for some firms . For some, the desired objective may be to operate at level 4 .5 or 4 .0 on the GRC CMM maturity scale . As a result, improving the balance between business reward and risk for a specific organization is going to be a journey that must be taken relative to the industry within which it competes.

Organizational competencies The organizational competencies implemented by the most mature firms include leadership by IT, legal, audit and finance functions; employee training and a culture of compliance; improvements to specific practices and capabilities within IT operations; IT assurance and audit; and a continuous quality improvement effort . Organizational competencies • IT, legal, internal audit, and finance leadership

• Employee training and a culture of compliance

• Improvements to IT risk assessments, data protection, IT audit, risk, and compliance practices and capabilities

• Adjustments to spending in IT to support needed capabilities

• A continuous quality improvement program for IT GRC

• An integrated IT GRC program

These are the hallmarks of an integrated IT GRC program being implemented by the most mature firms .

To know more details click here

2008 Annual Report: IT Governance, Risk and Compliance - Improving Business Results and Mitigating Financial Risk



Compliance Webcast and Video

IT Governance, Risk and Compliance: What the best performing firms do in IT to deliver better business results and lower risk



Benchmarking IT Risk & Compliance

Article Source: ArticlesBase.com

Related Compliance Videos


Next page: Compliant


Compliance News


Police arrest woman for allegedly stealing $101 in merchandise

Sapulpa police arrested aâTulsa woman for allegedly shoplifting at a local retailer Wednesday evening.

Read more...


Asset Protection Agency forces RBS to appoint external advisers in dispute over toxic loans

Agency that insures British banks' troubled loans remains confident that asset protection scheme will make £5bn profit for taxpayer Royal Bank of Scotland has been forced to appoint external advisers to settle disputes overs loans insured by the asset protection scheme, it emerged today, as the UK body set up to insure the toxic assets at the heart of the credit crunch reiterated that the ...

Read more...


In Brief: Police charge four Target workers

Olive Branch Police arrested four Target employees charging them with stealing several hundred dollars worth of electronic items including iPods and GPS units.

Read more...


Boaz police help bust interstate theft ring

Boaz police officers arrested five suspects, including two men dressed as women, linked to a string of cell phone thefts at Wal-Marts in Alabama and Georgia.

Read more...


Madoff Investors Should Be Wary of Last Minute Asset Protection

LOS ANGELES , July 28 /PRNewswire/ -- Bernard Madoff continues to cause pain and misery for his former investors. A recent announcement by the bankruptcy trustee in the Madoff bankruptcy case advised former investors that any distributions that they may have received from Madoff are in jeopardy of attachment. The bankruptcy trustee has the power to recoup distributions made to investors from the ...

Read more...


Roundup: July 31, 2010

Woman shot after fight earlier in day LORAIN - A 23-year-old Lorain woman was shot in her lower back early Friday in what police believe was retaliation for a fight she had with another woman in Elyria earlier. A witness told police a red SUV had pulled up to the intersection of West 13th Street and Lexington [...]

Read more...


Newsbriefs

TWO JAIL OFFICERS and two prison guards of Cavite provincial jail were charged with gross negligence and gross misconduct on Wednesday following the escape of a Korean facing charges of syndicated estafa and illegal recruitment.

Read more...


Permalink: Compliance | Copyright © 2010 www.hideitnow.com All Rights Reserved

  Home   Sitemap   Develop Your Domain Names   This Site is For Sale