ITGC

ITGC

IT general controls (ITGC) are controls that apply to all systems components, processes, and data for a given organization or information technology (IT) environment. The objectives of ITGCs are to ensure the proper development and implementation of applications, as well as the integrity of programs, data files, and computer operations.

The most common ITGCs:
* Logical access controls over infrastructure, applications, and data.
* System development life cycle controls.
* Program change management controls.
* Data center physical security controls.
* System and data backup and recovery controls.
* Computer operation controls.

General Computer Controls

ITGCs may also be referred to as General Computer Controls which are defined as:Controls, other than application controls, which relate to the environment within which computer-based application systems are developed, maintained and operated, and which are therefore applicable to all applications. The objectives of general controls are to ensure the proper development and implementation of applications, the integrity of program and data files and of computer operations. Like application controls, general controls may be either manual or programmed. Examples of general controls include the development and implementation of an IS strategy and an IS security policy, the organization of IS staff to separate conflicting duties and planning for disaster prevention and recovery.

Global Technology Audit Guide (GTAG)

GTAGs are written in straightforward business language to address a timely issue related to information technology (IT) management, control, and security. To date, The IIA has released GTAGs on the following topics:
* GTAG 1: Information Technology Controls
* GTAG 2: Change and Patch Management Controls: Critical for Organizational Success
* GTAG 3: Continuous Auditing: Implications for Assurance, Monitoring, and Risk Assessment
* GTAG 4: Management of IT Auditing
* GTAG 5: Managing and Auditing Privacy Risks
* GTAG 6: Managing and Auditing IT Vulnerabilities
* GTAG 7: Information Technology Outsourcing
* GTAG 8: Auditing Application Controls
* GTAG 9: Identity and Access Management

ee also

* Internal Audit
* Internal Control

References

GTAG 8: Christine Bellino, Jefferson Wells, July 2007GTAG 8: Steve Hunt, Enterprise Controls Consulting LP, Enterprise Controls Consulting LP, July 2007
* [http://www.isaca.org/glossary.htm ISACA Glossary of terms]

External links

* [http://www.theiia.org The Institute of Internal Auditors]
* [http://www.isaca.org Information Systems Audit and Control Association]


Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать реферат

Look at other dictionaries:

  • Information technology controls — In business and accounting, Information technology controls (or IT controls) are specific activities performed by persons or systems designed to ensure that business objectives are met. They are a subset of an enterprise s internal control. IT… …   Wikipedia

  • SOX 404 top-down risk assessment — In financial auditing of public companies in the United States, SOX 404 top down risk assessment (TDRA) is a financial risk assessment performed to comply with Section 404 of the Sarbanes Oxley Act of 2002 (SOX 404). The term is used by the U.S.… …   Wikipedia

  • List of Margate F.C. seasons — The Margate team display the Margate and District Charity Cup in 1907. Margate F.C. is an English association football …   Wikipedia

  • West Liberty Foods — Infobox Company company name = West Liberty Foods, L.L.C. company company type = Private company foundation = West Liberty, Iowa (1996) location = West Liberty, Iowa key people = Ed Garrett, President and CEO industry = Meat Packing products =… …   Wikipedia

  • Margate F.C. seasons — This is a list of seasons played by Margate F.C. (known as Thanet United F.C. between 1981 and 1989) in English football, from the club s formation to the most recent completed season. It details the club s achievements in all major and minor… …   Wikipedia

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”