SlideShare una empresa de Scribd logo
1 de 23
Five Biggest Secrets to a Successful IT Audit  Focus on Getting and Staying CompliantCraig Tobey, VP of Sales, Aldon
Go-to-Webinar Controls Click here to minimize/maximize the Go-To-Webinar control box. Click here to type and submit your questions.
Challenges of IT Audit Compliance Five Biggest Secrets to a Successful IT Audit Aldon and Compliance Simplification Q&A Agenda
Sarbanes-Oxley  COBIT HIPAA FDA PCI Basel & Basel II SEI/CMMI ITIL Common Criteria (National Institute of Standards and Technology) Individual Internal/External Audit Compliance and Best Practices
Inventory management Process automation Deployment management Incident/problem tracking Communication tracking Workflow management Areas Auditors Review
Increased complexity of software system’s on multiple platforms (Windows, Linux, UNIX, IBM Mainframe, IBM i,  etc.) Process documentation and activity tracking while under deadline pressures Geographically distributed teams Increased business involvement Requirement management, reviews, approvals, notifications, etc. Agile development Communication with Auditors Non-Technical Auditors Adversarial relationship between auditors and IT staff Variety of audit standards The Challenges
End-to-End Change Management Managing Workflow from Incident Report to Solution Delivery
Biggest Secret to a Successful IT Audit
Biggest Secret to a Successful IT Audit
Biggest Secret to a Successful IT Audit
Biggest Secret to a Successful IT Audit
Biggest Secret to a Successful IT Audit
Biggest Secrets to a Successful IT Audit
Aldon’s Solutions
Available Through Existing Tools Microsoft Eclipse Aldon Repository RDi Rational
Use Any Version Control System Visible by Change Request!
Comprehensive Reporting
For the Auditors: Detailed Activity History Auditors can easily see who did what and when (every field change, every email, every approval, etc. with date, time and user information)
For the Auditors: Approval History
Application Lifecycle Process Automation Easy process setup Simple process maintenance ‘Set it and forget it’ process automation Re-usable process templates Automated process exception handling Sophisticated permissions/approval management Comprehensive history logging History reporting The Solution
65% are using Aldon to adhere to compliance regulations and pass audits Compliance requirements have changed things for the better Once in place, IT Compliance solutions can provide many other productivity benefits  IT Compliance Survey
Time for your Questions ?
Thank You

Más contenido relacionado

La actualidad más candente

Alignia for Business Processes
Alignia for Business ProcessesAlignia for Business Processes
Alignia for Business ProcessesLaurie LeBlanc
 
Continous Audit and Controls with Brainwave GRC
Continous Audit and Controls with Brainwave GRCContinous Audit and Controls with Brainwave GRC
Continous Audit and Controls with Brainwave GRCGraeme Hein
 
IT General Controls Presentation at IIA Vadodara Audit Club
IT General Controls Presentation at IIA Vadodara Audit ClubIT General Controls Presentation at IIA Vadodara Audit Club
IT General Controls Presentation at IIA Vadodara Audit ClubKaushal Trivedi
 
Document control management march lagos
Document  control management   march lagosDocument  control management   march lagos
Document control management march lagosPetro Nomics
 
Emergency Access Management
Emergency Access ManagementEmergency Access Management
Emergency Access ManagementXpandion
 
Surviving a HIPAA Audit: Five Crucial Steps
Surviving a HIPAA Audit: Five Crucial Steps Surviving a HIPAA Audit: Five Crucial Steps
Surviving a HIPAA Audit: Five Crucial Steps Compliancy Group
 
Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...
Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...
Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...Seapine Software
 
Intelligent Protocol Content Analysis - Efficient Data Extraction
Intelligent Protocol Content Analysis - Efficient Data ExtractionIntelligent Protocol Content Analysis - Efficient Data Extraction
Intelligent Protocol Content Analysis - Efficient Data ExtractionBialogics
 
Introduction to it auditing
Introduction to it auditingIntroduction to it auditing
Introduction to it auditingDamilola Mosaku
 
How to Spot a Good Document Control System
How to Spot a Good Document Control SystemHow to Spot a Good Document Control System
How to Spot a Good Document Control SystemEtQ, Inc.
 
How much does it cost to be Secure?
How much does it cost to be Secure?How much does it cost to be Secure?
How much does it cost to be Secure?mbmobile
 
Gauge your speed
Gauge your speedGauge your speed
Gauge your speedNumerify
 

La actualidad más candente (20)

Alignia for Business Processes
Alignia for Business ProcessesAlignia for Business Processes
Alignia for Business Processes
 
gsa
gsagsa
gsa
 
Continous Audit and Controls with Brainwave GRC
Continous Audit and Controls with Brainwave GRCContinous Audit and Controls with Brainwave GRC
Continous Audit and Controls with Brainwave GRC
 
IT General Controls Presentation at IIA Vadodara Audit Club
IT General Controls Presentation at IIA Vadodara Audit ClubIT General Controls Presentation at IIA Vadodara Audit Club
IT General Controls Presentation at IIA Vadodara Audit Club
 
Document control management march lagos
Document  control management   march lagosDocument  control management   march lagos
Document control management march lagos
 
Emergency Access Management
Emergency Access ManagementEmergency Access Management
Emergency Access Management
 
Surviving a HIPAA Audit: Five Crucial Steps
Surviving a HIPAA Audit: Five Crucial Steps Surviving a HIPAA Audit: Five Crucial Steps
Surviving a HIPAA Audit: Five Crucial Steps
 
Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...
Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...
Breaking the Barriers to Agile Adoption in Safety- and Quality-Critical Envir...
 
CheckIt-Datasheet-2016
CheckIt-Datasheet-2016CheckIt-Datasheet-2016
CheckIt-Datasheet-2016
 
Oracle Enterprise Manager
Oracle Enterprise ManagerOracle Enterprise Manager
Oracle Enterprise Manager
 
Senseity
SenseitySenseity
Senseity
 
Income Tax Audit
Income Tax AuditIncome Tax Audit
Income Tax Audit
 
Intelligent Protocol Content Analysis - Efficient Data Extraction
Intelligent Protocol Content Analysis - Efficient Data ExtractionIntelligent Protocol Content Analysis - Efficient Data Extraction
Intelligent Protocol Content Analysis - Efficient Data Extraction
 
Introduction to it auditing
Introduction to it auditingIntroduction to it auditing
Introduction to it auditing
 
IT System & Security Audit
IT System & Security AuditIT System & Security Audit
IT System & Security Audit
 
Documents system
Documents systemDocuments system
Documents system
 
Safety Book
Safety BookSafety Book
Safety Book
 
How to Spot a Good Document Control System
How to Spot a Good Document Control SystemHow to Spot a Good Document Control System
How to Spot a Good Document Control System
 
How much does it cost to be Secure?
How much does it cost to be Secure?How much does it cost to be Secure?
How much does it cost to be Secure?
 
Gauge your speed
Gauge your speedGauge your speed
Gauge your speed
 

Similar a Five biggest secrets to an it audit webinar slides

SDLC Control
SDLC ControlSDLC Control
SDLC Controlbenji00
 
ITIL version 2: Foundation Training
ITIL version 2: Foundation TrainingITIL version 2: Foundation Training
ITIL version 2: Foundation Trainingjogemwind
 
IT frameworks
IT frameworksIT frameworks
IT frameworkscyouss
 
2010 06 gartner avoiding audit fatigue in nine steps 1d
2010 06 gartner   avoiding audit fatigue in nine steps 1d2010 06 gartner   avoiding audit fatigue in nine steps 1d
2010 06 gartner avoiding audit fatigue in nine steps 1dGene Kim
 
Itil & Process Concepts Awareness Tadawul 5 Of March 2007
Itil & Process Concepts Awareness Tadawul 5 Of March 2007Itil & Process Concepts Awareness Tadawul 5 Of March 2007
Itil & Process Concepts Awareness Tadawul 5 Of March 2007Abdulaziz AlFaify
 
Itpi metricon 0906a final
Itpi metricon 0906a finalItpi metricon 0906a final
Itpi metricon 0906a finalGene Kim
 
Msp It Goverance And Service Delivery Process
Msp It Goverance And Service Delivery ProcessMsp It Goverance And Service Delivery Process
Msp It Goverance And Service Delivery Processkadhar_masthan
 
Innovative Engineering Workshop Npi 30march10
Innovative Engineering Workshop   Npi   30march10Innovative Engineering Workshop   Npi   30march10
Innovative Engineering Workshop Npi 30march10mccall1966
 
IT Audit For Non-IT Auditors
IT Audit For Non-IT AuditorsIT Audit For Non-IT Auditors
IT Audit For Non-IT AuditorsEd Tobias
 
How to Allocate Your Close Time More Effectively
How to Allocate Your Close Time More EffectivelyHow to Allocate Your Close Time More Effectively
How to Allocate Your Close Time More EffectivelyAlithya
 
Business Process Modeling & Automation: Where are we?
Business Process Modeling & Automation: Where are we?Business Process Modeling & Automation: Where are we?
Business Process Modeling & Automation: Where are we?Denis Gagné
 
Best Practices for Rating and Policy Administration System Replacement
Best Practices for Rating and Policy Administration System ReplacementBest Practices for Rating and Policy Administration System Replacement
Best Practices for Rating and Policy Administration System ReplacementEdgewater
 
Info Security & PCI(original)
Info Security & PCI(original)Info Security & PCI(original)
Info Security & PCI(original)NCTechSymposium
 
Test Automation using UiPath Test Suite - Developer Circle Part-1.pdf
Test Automation using UiPath Test Suite - Developer Circle Part-1.pdfTest Automation using UiPath Test Suite - Developer Circle Part-1.pdf
Test Automation using UiPath Test Suite - Developer Circle Part-1.pdfDiana Gray, MBA
 
Implementing security and controls in people soft best practices - may 2017
Implementing security and controls in people soft   best practices - may 2017Implementing security and controls in people soft   best practices - may 2017
Implementing security and controls in people soft best practices - may 2017Smart ERP Solutions, Inc.
 
Best Customer Complaints Management Software
Best Customer Complaints Management SoftwareBest Customer Complaints Management Software
Best Customer Complaints Management Softwarerobinwilliams8624
 
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...IBM Software India
 
Сергей Баранов. Enterprise DevOps
Сергей Баранов. Enterprise DevOpsСергей Баранов. Enterprise DevOps
Сергей Баранов. Enterprise DevOpsScrumTrek
 
QA Trends 2010
QA Trends 2010 QA Trends 2010
QA Trends 2010 Galit Fein
 

Similar a Five biggest secrets to an it audit webinar slides (20)

SDLC Control
SDLC ControlSDLC Control
SDLC Control
 
ITIL version 2: Foundation Training
ITIL version 2: Foundation TrainingITIL version 2: Foundation Training
ITIL version 2: Foundation Training
 
IT frameworks
IT frameworksIT frameworks
IT frameworks
 
2010 06 gartner avoiding audit fatigue in nine steps 1d
2010 06 gartner   avoiding audit fatigue in nine steps 1d2010 06 gartner   avoiding audit fatigue in nine steps 1d
2010 06 gartner avoiding audit fatigue in nine steps 1d
 
Itil & Process Concepts Awareness Tadawul 5 Of March 2007
Itil & Process Concepts Awareness Tadawul 5 Of March 2007Itil & Process Concepts Awareness Tadawul 5 Of March 2007
Itil & Process Concepts Awareness Tadawul 5 Of March 2007
 
Itpi metricon 0906a final
Itpi metricon 0906a finalItpi metricon 0906a final
Itpi metricon 0906a final
 
Msp It Goverance And Service Delivery Process
Msp It Goverance And Service Delivery ProcessMsp It Goverance And Service Delivery Process
Msp It Goverance And Service Delivery Process
 
Innovative Engineering Workshop Npi 30march10
Innovative Engineering Workshop   Npi   30march10Innovative Engineering Workshop   Npi   30march10
Innovative Engineering Workshop Npi 30march10
 
IT Audit For Non-IT Auditors
IT Audit For Non-IT AuditorsIT Audit For Non-IT Auditors
IT Audit For Non-IT Auditors
 
How to Allocate Your Close Time More Effectively
How to Allocate Your Close Time More EffectivelyHow to Allocate Your Close Time More Effectively
How to Allocate Your Close Time More Effectively
 
Business Process Modeling & Automation: Where are we?
Business Process Modeling & Automation: Where are we?Business Process Modeling & Automation: Where are we?
Business Process Modeling & Automation: Where are we?
 
Best Practices for Rating and Policy Administration System Replacement
Best Practices for Rating and Policy Administration System ReplacementBest Practices for Rating and Policy Administration System Replacement
Best Practices for Rating and Policy Administration System Replacement
 
Info Security & PCI(original)
Info Security & PCI(original)Info Security & PCI(original)
Info Security & PCI(original)
 
Test Automation using UiPath Test Suite - Developer Circle Part-1.pdf
Test Automation using UiPath Test Suite - Developer Circle Part-1.pdfTest Automation using UiPath Test Suite - Developer Circle Part-1.pdf
Test Automation using UiPath Test Suite - Developer Circle Part-1.pdf
 
Implementing security and controls in people soft best practices - may 2017
Implementing security and controls in people soft   best practices - may 2017Implementing security and controls in people soft   best practices - may 2017
Implementing security and controls in people soft best practices - may 2017
 
Best Customer Complaints Management Software
Best Customer Complaints Management SoftwareBest Customer Complaints Management Software
Best Customer Complaints Management Software
 
Security audit
Security auditSecurity audit
Security audit
 
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
 
Сергей Баранов. Enterprise DevOps
Сергей Баранов. Enterprise DevOpsСергей Баранов. Enterprise DevOps
Сергей Баранов. Enterprise DevOps
 
QA Trends 2010
QA Trends 2010 QA Trends 2010
QA Trends 2010
 

Último

Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...Roland Driesen
 
Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...
Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...
Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...lizamodels9
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableDipal Arora
 
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...Any kyc Account
 
Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...
Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...
Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...Dave Litwiller
 
A305_A2_file_Batkhuu progress report.pdf
A305_A2_file_Batkhuu progress report.pdfA305_A2_file_Batkhuu progress report.pdf
A305_A2_file_Batkhuu progress report.pdftbatkhuu1
 
Cracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxCracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxWorkforce Group
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Dipal Arora
 
Best Basmati Rice Manufacturers in India
Best Basmati Rice Manufacturers in IndiaBest Basmati Rice Manufacturers in India
Best Basmati Rice Manufacturers in IndiaShree Krishna Exports
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataExhibitors Data
 
Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...
Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...
Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...anilsa9823
 
Pharma Works Profile of Karan Communications
Pharma Works Profile of Karan CommunicationsPharma Works Profile of Karan Communications
Pharma Works Profile of Karan Communicationskarancommunications
 
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876dlhescort
 
Unlocking the Secrets of Affiliate Marketing.pdf
Unlocking the Secrets of Affiliate Marketing.pdfUnlocking the Secrets of Affiliate Marketing.pdf
Unlocking the Secrets of Affiliate Marketing.pdfOnline Income Engine
 
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptxB.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptxpriyanshujha201
 
Monte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSMMonte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSMRavindra Nath Shukla
 
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRLMONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRLSeo
 
M.C Lodges -- Guest House in Jhang.
M.C Lodges --  Guest House in Jhang.M.C Lodges --  Guest House in Jhang.
M.C Lodges -- Guest House in Jhang.Aaiza Hassan
 
Insurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageInsurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageMatteo Carbone
 
A DAY IN THE LIFE OF A SALESMAN / WOMAN
A DAY IN THE LIFE OF A  SALESMAN / WOMANA DAY IN THE LIFE OF A  SALESMAN / WOMAN
A DAY IN THE LIFE OF A SALESMAN / WOMANIlamathiKannappan
 

Último (20)

Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...
 
Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...
Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...
Call Girls In Holiday Inn Express Gurugram➥99902@11544 ( Best price)100% Genu...
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
 
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
 
Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...
Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...
Enhancing and Restoring Safety & Quality Cultures - Dave Litwiller - May 2024...
 
A305_A2_file_Batkhuu progress report.pdf
A305_A2_file_Batkhuu progress report.pdfA305_A2_file_Batkhuu progress report.pdf
A305_A2_file_Batkhuu progress report.pdf
 
Cracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxCracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptx
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
 
Best Basmati Rice Manufacturers in India
Best Basmati Rice Manufacturers in IndiaBest Basmati Rice Manufacturers in India
Best Basmati Rice Manufacturers in India
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 
Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...
Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...
Lucknow 💋 Escorts in Lucknow - 450+ Call Girl Cash Payment 8923113531 Neha Th...
 
Pharma Works Profile of Karan Communications
Pharma Works Profile of Karan CommunicationsPharma Works Profile of Karan Communications
Pharma Works Profile of Karan Communications
 
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
 
Unlocking the Secrets of Affiliate Marketing.pdf
Unlocking the Secrets of Affiliate Marketing.pdfUnlocking the Secrets of Affiliate Marketing.pdf
Unlocking the Secrets of Affiliate Marketing.pdf
 
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptxB.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
 
Monte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSMMonte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSM
 
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRLMONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
 
M.C Lodges -- Guest House in Jhang.
M.C Lodges --  Guest House in Jhang.M.C Lodges --  Guest House in Jhang.
M.C Lodges -- Guest House in Jhang.
 
Insurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageInsurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usage
 
A DAY IN THE LIFE OF A SALESMAN / WOMAN
A DAY IN THE LIFE OF A  SALESMAN / WOMANA DAY IN THE LIFE OF A  SALESMAN / WOMAN
A DAY IN THE LIFE OF A SALESMAN / WOMAN
 

Five biggest secrets to an it audit webinar slides

  • 1. Five Biggest Secrets to a Successful IT Audit Focus on Getting and Staying CompliantCraig Tobey, VP of Sales, Aldon
  • 2. Go-to-Webinar Controls Click here to minimize/maximize the Go-To-Webinar control box. Click here to type and submit your questions.
  • 3. Challenges of IT Audit Compliance Five Biggest Secrets to a Successful IT Audit Aldon and Compliance Simplification Q&A Agenda
  • 4. Sarbanes-Oxley COBIT HIPAA FDA PCI Basel & Basel II SEI/CMMI ITIL Common Criteria (National Institute of Standards and Technology) Individual Internal/External Audit Compliance and Best Practices
  • 5. Inventory management Process automation Deployment management Incident/problem tracking Communication tracking Workflow management Areas Auditors Review
  • 6. Increased complexity of software system’s on multiple platforms (Windows, Linux, UNIX, IBM Mainframe, IBM i, etc.) Process documentation and activity tracking while under deadline pressures Geographically distributed teams Increased business involvement Requirement management, reviews, approvals, notifications, etc. Agile development Communication with Auditors Non-Technical Auditors Adversarial relationship between auditors and IT staff Variety of audit standards The Challenges
  • 7. End-to-End Change Management Managing Workflow from Incident Report to Solution Delivery
  • 8. Biggest Secret to a Successful IT Audit
  • 9. Biggest Secret to a Successful IT Audit
  • 10. Biggest Secret to a Successful IT Audit
  • 11. Biggest Secret to a Successful IT Audit
  • 12. Biggest Secret to a Successful IT Audit
  • 13. Biggest Secrets to a Successful IT Audit
  • 15. Available Through Existing Tools Microsoft Eclipse Aldon Repository RDi Rational
  • 16. Use Any Version Control System Visible by Change Request!
  • 18. For the Auditors: Detailed Activity History Auditors can easily see who did what and when (every field change, every email, every approval, etc. with date, time and user information)
  • 19. For the Auditors: Approval History
  • 20. Application Lifecycle Process Automation Easy process setup Simple process maintenance ‘Set it and forget it’ process automation Re-usable process templates Automated process exception handling Sophisticated permissions/approval management Comprehensive history logging History reporting The Solution
  • 21. 65% are using Aldon to adhere to compliance regulations and pass audits Compliance requirements have changed things for the better Once in place, IT Compliance solutions can provide many other productivity benefits IT Compliance Survey
  • 22. Time for your Questions ?

Notas del editor

  1. First Secret: Get rid of binders and process sheets. Establish and encapsulate compliance processes into an automated system. Documentation of a process is often created, put on a shelf, and never touched again—except during audits.  As processes change, the documentation becomes obsolete.  Implementing an automated compliance solution allows an organization to encapsulate its processes within the system.  As processes are updated, they are viewable directly through the compliance system from a web interface where you can see, view, and update as needed.
  2. Second Secret: Don’t Panic.  There is a starting point. Sit down as a team and create structured, controlled software development processes.In a nutshell, repeatable and measurable processes—structured, defined, implemented, and enforced—are key to effectively and easily complying with regulatory requirements.  Determining the most effective change processes and then ensuring they are used consistently not only reflects IT best practices, it also reduces the cost of compliance.
  3. Third Secret: Applying Best Practice Methodologies Over the last 60 years, we have learned a great deal about how to rapidly create high quality applications.  Those lessons have been encapsulated in many of the existing and readily available IT best practices standards.  The top best practice frameworks stress automated, structured, repeatable processes within IT—the very thing the regulations demand. Six Sigma, COSO, COBIT, ITIL, and CMMI, to name a few, all strive to make software development and frequent service delivery true business processes that can be tracked, measured, and controlled. Although each standard has its own approach and objectives, they have many requirements in common.  In many cases, a single IT best practice standard will address compliance requirements for a number of different regulations and standards.
  4. In order to meet the service levels required by most compliance standards, business users and IT staff must work closely throughout the software change lifecycle. It is essential to keep everyone in the loop to avoid re-work and missed objectives, and to ensure that the entire organization is moving in the same direction.
  5. Spend a little to save a lot.  Too often, IT is the last place to get the benefits of the kind of value technology can produce.  They rely on Open Source Tools just a little too much.  But just as technology can help the business serve its customers, technology can help IT serve its end users.  Using technology to implement the secrets outlined above can significantly enhance the productivity and morale of IT organizations, while at the same time, meeting the compliance objectives of the company.  There are a variety of technologies or approaches to consider.  Application Lifecycle Management (ALM) solutions, Service Desk software, Project Management and Asset Management programs will provide the basic infrastructure necessary.   A strong software compliance solution should:•    Establish repeatable, automated compliance and change processes•    Link change lifecycle workflow to Best Practice Methodologies•    Include compliance-related report templates supporting standards•    Create centralized management and visibility of IT assets, and progress reporting for auditing and performance improvement•    Provide a collaborative communication infrastructure that ensures IT services and software initiatives support overall business goals•    Reduce IT costs by ensuring project teams build the application correctly the first time around•    Enable communication between stakeholders of all changes in projects, and ensure appropriate notification, reviews and approvals•    Provide a secure, visible repository of all application artifacts.
  6. You are one step ahead of the game if you work with your auditors to determine exactly what information they need and when they need it. Because once you have a centralized repository of information with structured, repeatable processes (if you have followed tips 1 through 5), you can pre-define reports and queries for your auditors. These can simply be scheduled to run at the appropriate time or can be executed on demand. Management can check compliance on an ongoing basis via dashboards or other customizable reports. With IT and business users working together, you can establish built-in, structured, repeatable, and auditable change processes and appropriate workflows for everyone involved. Ongoing compliance is simply a matter of using point-and-click procedures to maintain processes and populate and generate the necessary reports.
  7. We did a survey last year on how many of our customers use Aldon for IT compliance. The number impressed us.  Nearly 65% said they are using Aldon in some form to adhere to compliance regulations and make their auditors happy.  In the past when teams talked about compliance issues, the discussions revolved around all the struggles, like enforcing rigid processes, manually documenting everything, complex training of staff, buying new technology, etc.  But it doesn’t have to be all bad.  In fact, many IT organizations have found ways to turn their biggest compliance pains into strategic corporate gains, while passing IT audits with ease.  The trick is getting that compliance pendulum to swing to your side.We hear it all the time from our large Fortune 500 customers to small IT organizations —that compliance requirements have ultimately changed everything for the better.  Once strategic processes and technology are in place to deal with those requirements, IT shops are often left with a bunch of other productivity benefits they now can’t live without.  Think of it like starting an exercise program to reduce your blood pressure and the next thing you know you are in the best shape of your life!
  8. Michelle: That concludes our webinar – now it’s time for your questions! If you haven’t asked a question already and would like to submit one, you can open the question/answer panel on your GotoWebinar interface and submit your question now. We’ve had a few questions come in since the start of the webinar: (Ask 2 canned questions). Now I’m going to hand it over to Joe for a few more questions. Joe?
  9. For Questions:Can I manage other kinds of user requests (non-software)Administrator – looking at pending approvalsEmails replies attached to textCan you link into other systems?