Resource review: August 2012
Here are four key sources of guidance that we have highlighted on the website over the past month:
in Tools.
Global IT governance poll finds widespread lapses
Nearly a quarter of respondents to a survey of IT governance and security concerns around the world said that management had little involvement in governance, while more than a fifth said their organisations had experienced a security breach in the previous 12 months. Nearly half of the enterprises covered in the survey had incurred an unexpected cost owing to an IT-related problem in that period.
To read the results of the Information Systems Audit and Control Association’s “2012 governance of enterprise IT survey”, visit bit.ly/Q8gHDr
IoD urges directors to up their game on risk
A new guide from Institute of Directors (IoD) has advised UK board members to improve their understanding and management of risk in order to deliver growth and prevent crises. “Business risk – a practical guide for board members”, published in association with Airmic, Chartis, PwC and Willis, can be downloaded from bit.ly/N1iGXj
US regulator issues cloud computing guidance
The US Federal Financial Institutions Examination Council has published advice on the management of cloud computing risks.
To access the guidance, visit bit.ly/NquZve
Coso publishes thought paper on cloud risks
The Committee of Sponsoring Organizations of the Treadway Commission (Coso) has published a thought paper entitled “Enterprise risk management for cloud computing”. It advises on how to follow the principles of the Coso enterprise risk management integrated framework to assess and mitigate the risks arising from cloud computing.
To access the paper, visit www.coso.org
