Home > CIO News > Sarbanes-Oxley: Seven steps to CYA
CIO News:
EMAIL THIS

Sarbanes-Oxley: Seven steps to CYA

By Linda Tucci, Senior News Writer
15 Jun 2005 | SearchCIO.com

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

Companies are breathing a sigh of relief after a year of scrambling and spending for SOX compliance.

Next year, however, is not expected to be a piece of cake. Compliance spending is expected to go up this year and next as SMBs and foreign registrants enter the fray. Experts advise companies see SOX as a business process, not a series of tactical problems. Here are seven ways to survive year two of compliance.

  1. Foundation: SOX is a process, not a project. Build compliances requirements into the foundation of how you run your business.
  2. SOX Office: Establish a SOX office staffed by people involved in year 1 compliance and fresh recruits, including, if necessary, new hires with specific skills.
  3. Dashboards: Sustain SOX compliance by making it front and center for your company through the use of portals, dashboards and/or scorecards. Expect to spend between $50,000 to $250,000
  4. Automate: Automate rather than replace. Don't toss out what you did last year. Experts estimate that automation technology can save upwards of 25% of SOX costs.
  5. Embed: Embed testing of internal controls in business processes or use a LAN that sits outside business processes to verify controls.
  6. Testing: Test all transactions, not just samples on a continuous basis.
  7. Monitor: Monitor controls that were put in place late last year to meet the deadline and make sure they continue to mature.

Sources: AMR Research; Pricewaterhouse Cooper; ACL Services Ltd., Iron Mountain Inc.

Tags: Compliance strategies and best practicesInformation technology lawsVIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Compliance strategies and best practices
Enterprise risk management solutions for CIOs
Addressing compliance requirements in cloud computing contracts
Avoiding gotchas of security tools and global data privacy laws
Information security and IT governance guides for CIOs
CIO turns to identity and access management to solve business problem
Log management tool, SIM boxes combine to form security architecture
Economic downturn hits IT budgets
Tips on how to dodge the scariest of IT worst-case scenarios
Health care CIO tackles complex security, privacy mandates
PCI DSS compliance requirement looms but lacks punch, critics charge

Information technology laws
Avoiding gotchas of security tools and global data privacy laws
Information security and IT governance guides for CIOs
E-discovery and litigation guide for CIOs
Document retention and disposal strategy
Top 10 reasons to give thanks you're in IT
PCI compliance deadlines have retailers scrambling
Customized e-discovery tool lightens law firm's litigation load
Firms bridging the gap between IT and the law
Avoid lawsuit nightmares: New rules of engagement for e-discovery
Regulatory compliance management guide for CIOs

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
GRC (governance, risk management and compliance) software  (SearchCIO.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



CIO solution center has news, research, and guides to assist the unique challenges of the CIO
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2007 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts