menu image
AssuranceSecurityGovernanceMembers & LeadersProfessionals & PractitionersStudents & EducatorsExhibitors & Advertisers
menu shadow
Overview & History
What's New
Certification
Education & Conferences
Standards
Research
 Current Projects
 Deliverables
Publications
Chapters
Membership
Bookstore
Downloads
COBIT
Risk IT
Val IT
Career Centre
Languages
spacer image
Print this page
spacer image


IT Control Objectives for Sarbanes-Oxley 2nd Edition
PDF file Download (Registration (free) required, PDF, 940K)
PDF file Download - Italian Version (PDF, 907K)
PDF file Download - Japanese Version (PDF, 2M)
DOC Download - Appendix C and part of Appendix D (Word Doc, 598K) Member Only Member Only
Bookstore Purchase the Book

This publication provides CIOs, IT managers, and control and assurance professionals with scoping and assessment ideas, approaches and guidance in support of the IT-related Committee of Sponsoring Organizations of the Treadway Commission (COSO) internal control objectives for financial reporting. Enhancements include:

  • Focus on scoping and assistance in performing an IT risk assessment for Sarbanes-Oxley
  • Insights into cultural and people management issues to highlight the human factors that need to be considered when complying with Sarbanes-Oxley
  • Guidance on application controls added to assist companies in identifying and addressing various types of application controls and providing a business case for using application controls
  • Changes to the readiness road map to simplify the process
  • Cross references to COBIT 4.0 processes
  • Guidance on segregation of duties for significant applications
  • Issues in and approach for using SAS 70 examination reports

The second edition was also updated for recent SEC and PCAOB guidance related to entity level controls, risk based/top down approach, application controls and evaluation of deficiencies.

The IT Governance Institute, ISACA® and the contributors of IT Control Objectives for Sarbanes-Oxley have designed this publication primarily as a reference for executive management and IT control professionals, including IT management and assurance professionals, when evaluating an organization's IT controls required by the US Sarbanes-Oxley Act of 2002.

IT Control Objectives for Sarbanes-Oxley, 2nd Edition

nav menu image
spacer image
Assurance | Security | Governance
Members & Leaders | Professionals & Practitioners | Students & Educators | Exhibitors & Advertisers
Info Request | Join | Bookstore | My ISACA | About ISACA
Home | Site Map | Shopping Cart | Logout | Contact Us
spacer image
menu shadow

Terms Of Use | Privacy Policy | IP Guidelines
© 2010 ISACA All rights reserved.
3701 Algonquin Road, Suite 1010, Rolling Meadows, Illinois 60008 USA