Abstract:
Canadian companies have been struggling with the Bill 198 (CSOX) compliance. The main problem is the lack of clear guidelines and the non-existence of a specific complian...Show MoreMetadata
Abstract:
Canadian companies have been struggling with the Bill 198 (CSOX) compliance. The main problem is the lack of clear guidelines and the non-existence of a specific compliance process the IT staff could use to achieve the IT control objectives of the Bill 198. This research paper demonstrates a possibility of creating a new comprehensive framework to accomplish the compliance goal by aligning three existing effective frameworks COBIT 4.1, ITIL v3, and the ISO/IEC 27002 standard. It is shown in the paper, that relative to the current CSOX compliance practices, the new framework provides for higher efficiency and reduction of resources needed to comply with the Bill.
Date of Conference: 29-31 August 2009
Date Added to IEEE Xplore: 09 October 2009
ISBN Information: