Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Information-Security-News
[Top] [All Lists]

[ISN] UK could learn from Sarbox mistakes

Subject: [ISN] UK could learn from Sarbox mistakes
Date: Wed, 10 May 2006 01:09:32 -0500 (CDT)
http://www.accountancyage.com/accountancyage/analysis/2155644/uk-learn-sarbox-mistakes

Paul Grant
Accountancy Age
04 May 2006

The worst seems to be over for US companies forced to comply with the 
burdensome Sarbanes-Oxley Act, with further evidence emerging that 
auditing costs related to section 404 of the rules are dropping.

The general opinion now is that, as well as identifying efficiencies 
during the second year under the new laws, the higher costs first time 
around were also attributable to many mistakes made by companies 
trying to implement the new rules. UK companies could do well to learn 
from this, according to Dawn Cresswell, part of UHY Hacker Young's 
Sarbox advisory team.

 From 15 July, UK companies with a listing in the US will also have to 
face the same tough rules on internal controls. But as Cresswell said: 
'UK companies have the advantage of being able to see what mistakes 
have been made in the US and making sure they don't make the same 
ones.

'US companies found they had misallocated a lot of their time and 
money in trying to achieve the first year of Sarbox compliance. They 
have now learnt from these mistakes and the dramatic reduction in 
costs in the second year reflects a more considered approach.'

This view is backed by a recent report from consultants CRA 
International. Using data from Big Four clients, it found that audit 
costs for section 404 compliance among a sample of Fortune 1000 
companies had dropped 44% on the previous year to an average of $4.8m 
(£2.7m).



_________________________________
Attend the Black Hat Briefings and
Training, Las Vegas July 29 - August 3
2,500+ international security experts from 40 nations,
10 tracks, no vendor pitches.
www.blackhat.com

<Prev in Thread] Current Thread [Next in Thread>
  • [ISN] UK could learn from Sarbox mistakes, InfoSec News <=