Archive for the 'glossary' Category

What is the difference between Regulations, Legislation, and Guidance

Different types of documentation serve different purposes. As the following list explains, some documentation is internally driven and some is externally driven. To prepare for the interview process for an information security position, you need to understand what types of internal security documentation the organization may have and what external security-related regulations the organization must […]

Popularity: 34% [?]

Disadvantage of Sarbanes Oxley Act

Some of disadvantage of Sarbanes Oxley that will make you confuse. Here is the list. The original list of 5 reason why implementing SOX is difficult can be found here.
1. Multi interpretation statement
SOX RCM Guidance is multi interpretation. If you hire a person from ABC audit firm to help you design RCM, than after a […]

Popularity: 66% [?]

The 8 Purposes of the Sarbanes Oxley Act

What is the purpose of Sarbanes Oxley Act? putting auditor department busy every day? or added many task for your operation departments? here some of purpose of the Sarbanes Oxley Act.

Avoid financial fraud and misleading of financial reporting
Increase company internal control
Promotes standards and approaches for documentation, control design evaluation, and control effectiveness testing
Establishes and applies […]

Popularity: 50% [?]

Complete definition of Sarbanes Oxley Act

Sarbanes Oxley Act or people usually simplify as SOX, Sarbox or SOA is a US law enacted on July 30, 2002. The Act is designed to oversee the financial reporting landscape for finance professionals. However there are many definition of this law. Here is some of definition
The Sarbanes-Oxley Act of 2002 (Pub.L. 107-204, 116 Stat. […]

Popularity: 39% [?]

What is a Walkthrough?

During Sarbanes Oxley compliances the auditor should perform a walkthrough against internal control. So what is walkthrough? Michael Ramos in his book about SOX implementation said that basically a walkthrough is a procedure in which trace a transaction from its origination through the company’s information processing system, and all the way to its reporting in […]

Popularity: 57% [?]

SOX or SOA

In some company, Sarbanes Oxley usually refers as SOX and in some other as SOA. The most common usage is of course SOX, because SOA usually refer to Service Oriented Architecture. However in some of Asian company, SOA term is more popular to be used then SOX to refer to Sarbanes Oxley. The reason? Simple, […]

Popularity: 80% [?]

J-SOX, Japanese version of SOX

Also taken from discussion in securityprocedure.com, Sarbanes Oxley Act enacted on July 2002, and after that many version released in every regional trying to comply this standard. One of the versions of SOX is J-SOX or Japanese version of Sarbanes Oxley Act, and also not forgets to mention other version such as European SOX.
The Big […]

Popularity: 28% [?]