Big4Guy

Welcome to Big4Guy.com. Big4Guy is an online resource where I will share with you the latest news, insights, knowledge and some experiences as a Big 4 consultant. We will discuss some of the important issues which organisations are facing today in the areas of information security, security and controls in SAP R/3, Oracle Applications, J.D.Edwards, Peoplesoft and various other ERP's. You will also find information on latest complaince regulations like Sarbanes Oxley, Basel II and so on. Big4guy will also attempt to provide valuable resources for individuals interested in examinations the CISA, CISM, CISSP, PMP and various other security certifications considered essential for entry in any Big 4 accounting, auditing and consulting firms. You are invited to post your comments and viewpoints to posts here. I sincerely hope this online journal will be useful to everyone from a budding student to a professional in the accounting, auditing, management and consultancy professions.

Post details: Sustainable SOX Compliance Operating Model

11/10/06

Permalink 09:47:08 am, Categories: Sarbanes Oxley, 233 words   English (US)

Sustainable SOX Compliance Operating Model

For companies to effectively comply with Sarbanes Oxley, a sustainable SOX compliance operating model needs to be developed. Developing a operating model for SOX is nothing new for many companies. With the SOX compliance operating model, focus is more on a common integrated platform, simplified processes and key controls. Automation through technology and proactive risk management are some of the key areas of the sustainable compliance model. Below, I am listing down some of the key areas which form part of the Sustainable SOX Compliance Operating Model.

1. Tone at the Top - Tone at the Top starts with executive sponsorship and enforcement alongwith IT an business integration.

2. Process Driven - Sustained compliance requires clear ownership and responsbilities by process owners. Focus needs to be on the control environment alongwith insight into improving the overall compliance process.

3. Cultural Change - The model also requires a company wide change management. Integrating compliance into the day to day activities of the business is a key step towards sustained compliance.

4. Integrated Technology Platform - Simplification through automation is the mantra today. Consolidating all common application components into a single common platform for easy compliance can make compliance easy.

5. Regular Audits - The last loop in the model is conducting regular audits, which focus on risk based audit approach, self assessments, compliance audits, sign-offs and certifications.

Related Posts

COSO Component - Information & Communication
Definition of Internal Control
7 Control Deficiencies in an ERP Environment

Comments:

No Comments for this post yet...

Official Websites

Search

Google

Web Big4Guy.com

September 2008
Mon Tue Wed Thu Fri Sat Sun
<<  <   >  >>
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30          

Misc

Syndicate this blog XML

What is RSS?