Skip to Content
Compliance by Design: IT Controls that Work
book

Compliance by Design: IT Controls that Work

by Chong Ee
September 2011
Intermediate to advanced
244 pages
4h 1m
English
IT Governance Publishing

Overview

Reconsider how you view compliance – and your business will reap the rewards!

A must have book for anyone who is looking to develop awareness and deeper insight into IT controls, strategies and techniques to solve compliance challenges!

What does 'compliance' mean to you? Is it a burden, a box-ticking exercise, or a way to avoid the penalties of non-compliance? Or do you see the opportunities it presents for your business?

In Compliance by Design, Chong Ee will show you how your organisation can benefit from becoming compliant with the relevant national and international standards. You will discover how integrating controls into your processes will improve your security, increase your productivity, save you time and money, and increase your profits.

Drawing on personal experience and using up-to-date, practical examples, the book considers the elements and principles of controls, and offers strategies to put them in place. It will show you how to:

  • implement changes that will improve your processes
  • allay fears and overcome resistance from your stakeholders
  • integrate controls into your everyday processes
  • achieve synergy from interconnected processes
  • assess your priorities and handle conflicting objectives
  • analyse and manage risks
  • establish a system of controls that is right for your business
  • manage your technology to make it work for you.
  • Moving away from traditional efforts

    Traditional efforts in attaining or sustaining IT compliance employ an outside-looking-in approach, characterised by capturing varied compliance requirements and/or frameworks and applying these within the organisation. This book advocates an inside-looking-out approach, emphasising fundamental ideas of good control design as the basis for developing effective and sustainable IT compliance strategies.

    Tools and techniques

    Intended to arm you with the tools and techniques to put in place the right system of internal controls, the focus is on IT controls, but with plenty of references to business and entity controls, too.

    What others are saying about this book ...

    'As the title implies Chong Ee offers the reader a "Journey to unravel the essence of IT Controls." The book moves quickly and raises a lot of thought provoking questions, providing windows into compliance: Elements, Principles and Strategies. Not a classic check list of controls, this book encourages thinking, which I see as very beneficial when designing IT controls. It is well worth the read.'

    Michael P Cangemi CPA,Author of Managing the Audit Function and former long time Editor-in-Chief of the ISACA JournalBuy this book and see how compliance can work for you!
    Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
    and much more.

    Read now

    Unlock full access

    More than 5,000 organizations count on O’Reilly

    AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

    QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
    Julian F.
    Head of Cybersecurity
    QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
    Addison B.
    Field Engineer
    QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
    Amir M.
    Data Platform Tech Lead
    QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
    Mark W.
    Embedded Software Engineer

    You might also like

    It Compliance And Controls: Best Practices for Implementation

    It Compliance And Controls: Best Practices for Implementation

    James J. DeLuccia
    Auditing IT Infrastructures for Compliance

    Auditing IT Infrastructures for Compliance

    Martin Weiss, Michael G. Solomon

    Publisher Resources

    ISBN: 9781849282970