Sarbanes Oxley Compliance

Sep 11, 2005 0 Replies

Sarbanes-Oxley Section 404 requires that



  1. Enterprises have an enterprise wide security policy;
  2. Enterprises have enterprise wide classification of data for security, risk, and business impact;
  3. Enterprises have security related standards and procedures;
  4. Enterprises have formal security based documentation, auditing, and testing in place;
  5. Enterprise enforce separation of duties; and
  6. Enterprises have policies and procedures in place for Change Management, Help Desk, Service Requests, and changes to applications, policies, and procedures.

See

formatting link
for Sarbanes OxleyCompliance Tool kit.


Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required