Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Exposure Draft (ED) of IT Control Objectives for Sarbanes-Oxley, 2nd Edition |
|---|---|
| Date: | Thu, 4 May 2006 23:44:10 -0400 |
F.Y.I. http://www.isaca.org/Template.cfm?Section=Home&Template=/ContentManagement/C ontentDisplay.cfm&ContentID=25036 Original Message: ----------------- From: ISACA_News@isaca.org Date: Wed, 03 May 2006 13:22:17 -0700 To: gideon@infostruct.net Subject: Exposure Draft (ED) of IT Control Objectives for Sarbanes-Oxley, 2nd Edition Dear Mr. Gideon Thomas Rasmussen, CISA,CISM,CISSP,SCSA, The exposure draft (ED) of IT Control Objectives for Sarbanes-Oxley, 2nd Edition was released 30 April 2006 on the ISACA and ITGI websites www.isaca.org and www.itgi.org . This is the first update to the very successful document that was issued in April 2004, to provide additional assistance to all issuers in the area of financial reporting compliance. As early filer issuers have experienced the compliance process, both the U.S. SEC and PCAOB provided some helpful interpretations of the Act, including guidance on the importance of all organizations taking a top-down, risk-based approach. To address the changing business environment, updates in this second edition of the publication include: * Insights into the cultural and people management issues that should be considered when complying with Sarbanes-Oxley * Additional insight on scoping, identification and defining key controls and applying a top-down, risk-based approach * Enhanced focus on entity-level and application controls * Simplified readiness road map * Greater focus on evaluation of deficiencies and lessons learned from early filers All ED comments are encouraged, and must be submitted no later than 30 June 2006. Comments on the exposure draft may be provided by the following electronic submissions methods: * Use the online submission form * Send an e-mail to research@isaca.org Please include ITCO for SOX on the subject line. After reviewing and incorporating comments/issues raised from the exposure process, the final version of the document is targeted to be released within the third quarter of 2006 in both PDF and hard copy. Thank you in advance for your interest and support of this very important activity. Regards, Thomas C. Lamm Director Research, Standards and Academic Relations -------------------------------------------------------------------- mail2web - Check your email from the web at http://mail2web.com/ .
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Active Forum for Payment Card Industry (PCI) Securty Standard Discussion - pcifile.ORG, ken |
|---|---|
| Next by Date: | Article: "Security Absurdity: The Complete, Unquestionable, And Total Failure of Information Security.", email |
| Previous by Thread: | Active Forum for Payment Card Industry (PCI) Securty Standard Discussion - pcifile.ORG, ken |
| Next by Thread: | Article: "Security Absurdity: The Complete, Unquestionable, And Total Failure of Information Security.", email |
| Indexes: | [Date] [Thread] [Top] [All Lists] |