Compliance and Security Controls

Assessing ICFR in IT systems can be difficult. IT professionals have several different frameworks that they can use for reviewing IT controls, some of which you are already familiar with. Many of these frameworks help companies decide which controls to implement.

COBIT

In 1996, the Information Systems Audit and Control Association (ISACA) released the first version of “Control Objectives for Information and Related Technology” (COBIT). Several versions of COBIT have been released. Even though ISACA has moved away from use of the term control objective in its framework, it has kept the popular term COBIT for the name of the framework. The most recent version of COBIT was released in 2019.39

The COBIT 2019 framework ...

Get Legal and Privacy Issues in Information Security, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.