|
Tuesday, May 29, 2007 In summarizing the results, Lord & Benoit suggests this list should be used by CFOs as a starting point for a macro-level risk assessment at smaller public companies. Identifying potential concerns, developing action plans to remediate these risks, and taking quick action can minimize the likelihood of an adverse Section 404 report at the end of the first year of compliance. 10 Threats to SOX Compliance for Smaller Public Companies Labels: as5, pcaob, sec, small business Previous articles Getting SOX Right
|
Sponsored by:
Kumquat: Get the feedback you deserve
Learn more
FREE to Inside Sarbanes Oxley readers

|
About inside Sarbanes-Oxley inside Sarbanes Oxley is dedicated to finding the best sources of news and information on the changing landscape of Sarbanes Oxley and compliance. Whether you call it SOX, Sarbox, or the Sarbanes-Oxley Act of 2002, look no further than inside Sarbanes Oxley. More Copyright © 2004-2006, Inside Sarbanes-Oxley
|
Additional resources Try these recently updated resources: RSS Feed Interested in staying up-to-date on all the latest Sarbanes-Oxley news? Subscribe to the inside Sarbanes-Oxley RSS feed and get all of the latest news on SOX delivered directly to your feed reader. inside
Sarbanes-Oxley RSS Feed
|
I feel that big and small companies should try to spend some resources on adhering to standards like SOX to avoid any security breach and should need to conduct annual risk assessment. A crosswalk poster between different regulations is a very useful tool for IT & compliance team member, specially when it is available at no cost. This poster is crosswalk between: Sarbanes Oxley (SOX), ISO 17799, COBIT 4.0, HIPAA, Payment Card Industry (PCI), GLBA, NERC standards CIP and PIPEDA (Canada) http://www.compliancehome.com/symantec/
Contingency plan templates created by www.training-hipaa.net can jump start HIPAA, Sarbanes Oxley (SOX), FISMA, ISO 17799 and many other regulations/standards contingency plan project which includes risk assessment, business impact analysis (BIA), business continuity plan (BCP), disaster recovery program (DRP), emergency mode operation plan (EMOP), data backup plan, testing and revision procedures and many other projects. These templates can also be used by IT departments of different companies, security consulting companies, manufacturing company, servicing companies, financial institutions, educational organizations, law firms, pharmaceuticals & biotechnology companies, telecommunication companies and others. Any organization large or small can be use these templates
http://www.training-hipaa.net/template_suite/enterprise_contingency_plan_template_suite.htm