Big4GuyWelcome to Big4Guy.com. Big4Guy is an online resource where I will share with you the latest news, insights, knowledge and some experiences as a Big 4 consultant. We will discuss some of the important issues which organisations are facing today in the areas of information security, security and controls in SAP R/3, Oracle Applications, J.D.Edwards, Peoplesoft and various other ERP's. You will also find information on latest complaince regulations like Sarbanes Oxley, Basel II and so on. Big4guy will also attempt to provide valuable resources for individuals interested in examinations the CISA, CISM, CISSP, PMP and various other security certifications considered essential for entry in any Big 4 accounting, auditing and consulting firms. You are invited to post your comments and viewpoints to posts here. I sincerely hope this online journal will be useful to everyone from a budding student to a professional in the accounting, auditing, management and consultancy professions.
|
Most consulting firms in the Sarbanes Oxley compliance busines, stress on process driven sarbanes oxley compliance to clients. Though most companies are now in years 3 and 4 of their SOX complaince, some are still grappling with compliance issues. Before I explain what process driven SOX compliance is, let me touch upon a few important issues. Any regulatoty compliance needs to be sponsored by the senior management. If you are interested, here is a post I did about who should be the SOX sponsor. Moving on to the tpoic of my discussion today, process driven Sarbanes Oxley compliance. There are three main things which contribute to process driven SOX compliance.
1. Clear Onwership and Responsibilities - SOX requires clear ownership by process owners of their responsibilities. It is the process owners who are finally responsible for compliance. The more they are aware of their responsibilities, the more better the overall compliance is.
2. Addressing the control environment - Process driven SOX compliance should address a company's control environment. Many companies start out strong but somehow streer away from the main objective. Successful compliance is one which focuses on the overall controls compliance.
3. Process improvement and productivity - Finally, all SOX projects need to look at overall process imporvement. This includes integrated ERP, process re-engineering and other process improvement stuff. Insight and learnings from the first couple of years of compliance should be used to improve processes and make SOX compliance easier.
Related Posts
For the Love of Sarbanes Oxley
Sampe Size Selection for Evaluating Operational Effectiveness
How to Make a Project Plan for SOX Compliance
Indirect Company Level Controls
No Comments for this post yet...
| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
|---|---|---|---|---|---|---|
| << < | > >> | |||||
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | 30 | 31 | |