The Top Five I.T. Control Weaknesses

November 30th, 2005 | No Comments | Posted in Security and Compliance

I am surprised I didn’t post this one. In any case, here it is.

The Top Five I.T. Control Weaknesses by BEN WORTHEN.

  1. Failure to segregate duties within applications, and failure to set up new accounts and terminate old ones in a timely manner.
  2. Lack of proper oversight for making application changes.
  3. Inadequate review of audit logs.
  4. Failure to identify abnormal transactions in a timely manner.
  5. Lack of understanding of key system configurations.

This is the sidebar for the article How To Dig Out From Under Sarbanes-Oxley.

Another sidebar for the same article, Sarbanes-Oxley Compliance and the CIO: Year Two.

Comments are closed.