<?xml version="1.0" encoding="utf-8"?><rss version="2.0"><channel><title>All Deliverables</title><link>http://www.isaca.org/_layouts/feed.aspx?xsl=1&amp;web=/Knowledge-Center/Research&amp;page=f824000b-3d6a-4d0a-9db5-47190ca86432&amp;wp=85377c89-89d2-42f1-8e43-27d575ca06cf</link><description></description><ttl>60</ttl><item><title>Responding to Targeted Cyberattacks</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Responding-to-Targeted-Cyberattacks.aspx</link><description /><pubDate>Tue, 14 May 2013 19:04:36 GMT</pubDate></item><item><title>Cloud Governance: Questions Boards of Directors Need to Ask</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Cloud-Governance-Questions-Boards-of-Directors-Need-to-Ask.aspx</link><description /><pubDate>Tue, 30 Apr 2013 18:38:09 GMT</pubDate></item><item><title>Big Data: Impacts and Benefits</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Big-Data-Impacts-and-Benefits.aspx</link><description>Experienced business and IT professionals know that optimizing their use of big data as a resource will deliver real business value to the enterprise stakeholders.</description><pubDate>Mon, 08 Apr 2013 19:24:13 GMT</pubDate></item><item><title>Software Assurance Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Software-Assurance-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 12 Feb 2013 20:53:53 GMT</pubDate></item><item><title>Identity Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Identity-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 12 Feb 2013 20:54:14 GMT</pubDate></item><item><title>Advanced Persistent Threat Awareness Study Results</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Advanced-Persistent-Threats-Awareness-Study-Results.aspx</link><description /><pubDate>Thu, 11 Apr 2013 19:02:38 GMT</pubDate></item><item><title>COBIT Assessment Programme Using COBIT 5</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Assessment-Programme-Using-COBIT-5.aspx</link><description /><pubDate>Wed, 08 May 2013 14:09:20 GMT</pubDate></item><item><title>Outsourced IT Environments Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Outsourced-IT-Environments-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 30 Apr 2013 18:39:07 GMT</pubDate></item><item><title>Personally Identifiable Information (PII) Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Personally-Identifiable-Information-PII-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 12 Mar 2013 18:24:37 GMT</pubDate></item><item><title>BYOD Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/BYOD-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 12 Feb 2013 20:57:33 GMT</pubDate></item><item><title>Business Continuity Management: Emerging Trends</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Business-Continuity-Management-Emerging-Trends.aspx</link><description /><pubDate>Tue, 12 Feb 2013 20:57:22 GMT</pubDate></item><item><title>Securing Mobile Devices Using COBIT 5 for Information Security</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Securing-Mobile-Devices-Using-COBIT-5-for-Information-Security.aspx</link><description /><pubDate>Tue, 12 Feb 2013 20:57:10 GMT</pubDate></item><item><title>Biometrics Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Biometrics-Audit-Assurance-Program.aspx</link><description /><pubDate>Thu, 31 Jan 2013 15:16:20 GMT</pubDate></item><item><title>VPN Security Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/VPN-Security-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 22 Jan 2013 20:44:20 GMT</pubDate></item><item><title>E-commerce and Public Key Infrastructure (PKI) Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/E-commerce-and-Public-Key-Infrastructure-PKI-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 22 Jan 2013 20:44:07 GMT</pubDate></item><item><title>SOC 2 User Guide</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/SOC-2-User-Guide.aspx</link><description /><pubDate>Thu, 27 Dec 2012 20:07:48 GMT</pubDate></item><item><title>Cybercrime Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Cybercrime-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 04 Dec 2012 20:35:00 GMT</pubDate></item><item><title>2012 Cloud Computing Market Maturity Study Results</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/2012-Cloud-Computing-Market-Maturity-Study-Results.aspx</link><description /><pubDate>Tue, 13 Nov 2012 20:31:48 GMT</pubDate></item><item><title>Security Considerations for Cloud Computing</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Considerations-for-Cloud-Computing.aspx</link><description /><pubDate>Tue, 06 Nov 2012 20:32:34 GMT</pubDate></item><item><title>Calculating Cloud ROI: From the Customer Perspective</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Calculating-Cloud-ROI-From-the-Customer-Perspective.aspx</link><description /><pubDate>Tue, 30 Oct 2012 19:35:06 GMT</pubDate></item><item><title>Virtualization Desktop Infrastructure (VDI)</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Virtualization-Desktop-Infrastructure-VDI.aspx</link><description /><pubDate>Tue, 30 Oct 2012 19:35:19 GMT</pubDate></item><item><title>COBIT 5 Product Family</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-5-Product-Family.aspx</link><description /><pubDate>Tue, 01 May 2012 21:01:55 GMT</pubDate></item><item><title>Incident Management and Response</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Incident-Management-and-Response.aspx</link><description>Incident response is a key component of an enterprise business continuity and resilience program.</description><pubDate>Tue, 23 Oct 2012 17:08:30 GMT</pubDate></item><item><title>IPv6 Security Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IPv6-Security-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 02 Oct 2012 19:31:27 GMT</pubDate></item><item><title>Guiding Principles for Cloud Computing Adoption and Use</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Guiding-Principles-for-Cloud-Computing-Adoption-and-Use.aspx</link><description>This paper describes the nature of cloud computing and areas of pressure that, when not addressed, can increase risk to the enterprise.</description><pubDate>Thu, 27 Sep 2012 19:36:14 GMT</pubDate></item><item><title>Security, Audit and Control Features Oracle PeopleSoft, 3rd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Audit-and-Control-Features-Oracle-PeopleSoft-3rd-Edition.aspx</link><description /><pubDate>Tue, 11 Sep 2012 14:49:02 GMT</pubDate></item><item><title>Voice-over Internet Protocol (VoIP) Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Voice-over-Internet-Protocol-VoIP-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 24 Jul 2012 14:21:52 GMT</pubDate></item><item><title>IT Risk Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Risk-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 22 May 2012 13:06:25 GMT</pubDate></item><item><title>IT Strategic Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Strategic-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 28 Mar 2012 16:59:04 GMT</pubDate></item><item><title>COBIT Self-Assessment Guide: Using COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Self-assessment-Guide-Using-COBIT-4-1.aspx</link><description /><pubDate>Tue, 28 Feb 2012 19:38:45 GMT</pubDate></item><item><title>IT Tactical Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Tactical-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 21 Feb 2012 15:45:47 GMT</pubDate></item><item><title>COBIT Assessor Guide: Using COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Assessor-Guide-Using-COBIT-41.aspx</link><description>This guide is intended primarily to support those undertaking process assessments using the formal COBIT PAM.</description><pubDate>Tue, 31 Jan 2012 21:38:26 GMT</pubDate></item><item><title>Mobile Payments: Risk, Security and Assurance Issues</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Mobile-Payments-Risk-Security-and-Assurance-Issues.aspx</link><description>Widespread use of smartphones and consumer comfort with mobile devices for more than communication are the principal drivers of a resurgent and increased interest in mobile payments.</description><pubDate>Tue, 24 Jan 2012 15:54:11 GMT</pubDate></item><item><title>Lotus Domino Server Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Lotus-Domino-Server-Audit-Assurance-Program.aspx</link><description>Domino server comprises a series of cooperating processes that communicate with one another on multiple servers and connect to remote computers.</description><pubDate>Tue, 17 Jan 2012 15:08:04 GMT</pubDate></item><item><title>Microsoft Exchange Server 2010 Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Microsoft-Exchange-Server-2010-Audit-Assurance-Program.aspx</link><description>Exchange Server 2010 is comprised of a series of cooperating processes that communicate with one another on local and remote computers, as well as with domain controllers, and a number of different clients.</description><pubDate>Tue, 06 Dec 2011 20:08:22 GMT</pubDate></item><item><title>Microsoft SharePoint 2010 Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Microsoft-SharePoint-2010-Audit-Assurance-Program.aspx</link><description>SharePoint 2010 is a complex group of architectures requiring technical expertise and understanding as well as the ability to evaluate the content vulnerabilities.</description><pubDate>Tue, 13 Dec 2011 17:04:37 GMT</pubDate></item><item><title>Web Application Security: Business and Risk Considerations</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Web-Application-Security-Business-and-Risk-Considerations.aspx</link><description>This paper explores the root causes of these vulnerabilities, examines the associated risks and impacts, and provides guidance as to how enterprises can alter their practices to mitigate this risk.</description><pubDate>Tue, 29 Nov 2011 16:03:38 GMT</pubDate></item><item><title>COBIT Process Assessment Model (PAM): Using COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Assessment-Program.aspx</link><description>The process assessment model (PAM) is REQUIRED TO align with the current contents of COBIT 4.1 and ISO/IEC 15504-2.</description><pubDate>Tue, 10 Jan 2012 15:19:39 GMT</pubDate></item><item><title>Microsoft Windows File Server Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Microsoft-Windows-File-Server-Audit-Assurance-Program.aspx</link><description>The File Server audit/assurance review provides management with an independent assessment of the effectiveness of the configuration and of the security of the enterprise’s file servers.</description><pubDate>Fri, 11 Nov 2011 17:43:42 GMT</pubDate></item><item><title>Business Continuity Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Business-Continuity-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 09 Nov 2011 17:30:35 GMT</pubDate></item><item><title>Geolocation: Risk, Issues and Strategies</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Geolocation-Risks-Issues-and-Strategies.aspx</link><description>Geolocation technologies and their application, while offering social and economic benefit to a mobile society, raise significant privacy and risk concerns for individuals, businesses and governments.</description><pubDate>Thu, 26 Apr 2012 13:50:42 GMT</pubDate></item><item><title>Data Analytics—A Practical Approach</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Data-Analytics-A-Practical-Approach.aspx</link><description>This white paper was written to illuminate what data analytics has to offer.</description><pubDate>Wed, 09 Nov 2011 18:29:40 GMT</pubDate></item><item><title>COBIT Mapping: Overview of International IT Guidance, 3rd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Overview-of-International-IT-Guidance-3rd-Edition.aspx</link><description>This is an update of the overview of the series of detailed COBIT mapping publications.</description><pubDate>Wed, 09 Nov 2011 17:45:53 GMT</pubDate></item><item><title>IT Control Objectives for Cloud Computing: Controls and Assurance in the Cloud</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Control-Objectives-for-Cloud-Computing-Controls-and-Assurance-in-the-Cloud.aspx</link><description>As a follow-up to the whitepaper issued in October 2009, ISACA has produced this book to examine assurance in the cloud.</description><pubDate>Tue, 20 Sep 2011 16:57:25 GMT</pubDate></item><item><title>Microsoft SQL Server Database Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Microsoft-SQL-Server-Database-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 09 Nov 2011 17:48:27 GMT</pubDate></item><item><title>Leveraging XBRL for Value in Organizations</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Leveraging-XBRL-for-Value-in-Organizations.aspx</link><description>ISACA and IFAC have jointly developed this white paper to provide accounting and assurance professionals with guidance to leverage value from XBRL initiatives and compliance requirements.</description><pubDate>Wed, 09 Nov 2011 17:50:04 GMT</pubDate></item><item><title>Sustainability</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Sustainability.aspx</link><description>IT offers a suitable target for sustainability and “green” efforts—efforts that can pay off in ways other than financial.</description><pubDate>Tue, 05 Feb 2013 19:44:22 GMT</pubDate></item><item><title>Top Business/Technology Issues Survey Results 2011</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Top-Business-Technology-Issues-Survey-Results-2011.aspx</link><description>A survey of members, managers and above to identify current business issues, supported by technology was conducted in the fourth quarter of 2010. </description><pubDate>Wed, 09 Nov 2011 17:52:51 GMT</pubDate></item><item><title>Creating a Culture of Security</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Creating-a-Culture-of-Security.aspx</link><description>The greatest benefit of a culture of security is the effect it has on other dynamic interconnections within an enterprise. </description><pubDate>Wed, 09 Nov 2011 17:58:17 GMT</pubDate></item><item><title>Electronic Discovery</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Electronic-Discovery.aspx</link><description>Enterprises are looking to technology to help them search, classify, preserve and present discoverable electronically stored information.</description><pubDate>Wed, 09 Nov 2011 18:02:52 GMT</pubDate></item><item><title>VMware Server Virtualization Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/VMware-Server-Virtualization-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:06:05 GMT</pubDate></item><item><title>COBIT Mapping: Mapping of CMMI for Development V1.2 With COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-of-CMMI-for-Development-V12-With-COBIT-4-1.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:10:12 GMT</pubDate></item><item><title>COBIT Mapping: Mapping of ISO/IEC 20000 With COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-of-ISOIEC-20000-With-COBIT-4-1.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:11:27 GMT</pubDate></item><item><title>Microsoft Internet Information Services (IIS) 7 Web Services Server Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Microsoft-Internet-Information-Services-IIS-7-Web-Services-Server-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:12:32 GMT</pubDate></item><item><title>Social Media Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Social-Media-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 09 Nov 2011 18:31:53 GMT</pubDate></item><item><title>Global Status Report on the Governance of Enterprise IT (GEIT) — 2011</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Global-Status-Report-on-the-Governance-of-Enterprise-IT-GEIT-2011.aspx</link><description>The 4th edition of the IT Governance Institute’s status report of the governance of enterprise IT covers 21 countries and 10 industries. It reveals accord on IT contribution to business success and views on IT outsourcing, social networking and the cloud.</description><pubDate>Wed, 01 Feb 2012 21:14:30 GMT</pubDate></item><item><title>Apache Web Services Server Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Apache-Web-Services-Server-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:15:41 GMT</pubDate></item><item><title>MySQL Server Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/MySQL-Server-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:16:34 GMT</pubDate></item><item><title>Security Information and Event Management: Business Benefits and Security, Governance and Assurance Perspective</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Information-and-Event-Management-Business-Benefits-and-Security-Governance-and-Assurance-Perspective.aspx</link><description /><pubDate>Wed, 09 Nov 2011 18:54:26 GMT</pubDate></item><item><title>E-Commerce and Consumer Retailing: Risks and Benefits</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/E-Commerce-and-Consumer-Retailing-Risks-and-Benefits.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:19:02 GMT</pubDate></item><item><title>Virtualization: Benefits and Challenges</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Virtualization-Benefits-and-Challenges.aspx</link><description /><pubDate>Wed, 09 Nov 2011 19:10:45 GMT</pubDate></item><item><title>Mobile Computing Security Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Mobile-Computing-Security-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 16 Nov 2011 16:49:53 GMT</pubDate></item><item><title>Monitoring Internal Control Systems and IT</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Monitoring-Internal-Control-Systems-and-IT.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:25:34 GMT</pubDate></item><item><title>The Business Model for Information Security</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Business-Model-for-Information-Security.aspx</link><description /><pubDate>Wed, 15 Feb 2012 20:02:46 GMT</pubDate></item><item><title>Data Leak Prevention</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Data-Leak-Prevention.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:27:32 GMT</pubDate></item><item><title>Crisis Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Crisis-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:30:55 GMT</pubDate></item><item><title>Cloud Computing Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Cloud-Computing-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:32:23 GMT</pubDate></item><item><title>Information Security Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Information-Security-Management-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:34:53 GMT</pubDate></item><item><title>Windows Active Directory Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Windows-Active-Directory-Audit-Assurance-Program.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:37:57 GMT</pubDate></item><item><title>Securing Mobile Devices</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Securing-Mobile-Devices.aspx</link><description /><pubDate>Wed, 09 Nov 2011 20:26:58 GMT</pubDate></item><item><title>New Service Auditor Standard: A User Entity Perspective</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/New-Service-Auditor-Standard-A-User-Entity-Perspective.aspx</link><description /><pubDate>Wed, 09 Nov 2011 20:30:46 GMT</pubDate></item><item><title>Security, Audit and Control Features Oracle E-Business Suite, 3rd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Audit-and-Control-Features-Oracle-E-Business-Suite-3rdEdition.aspx</link><description>ERP systems are pervasive globally in medium to large enterprises and the public sector. The series covers the three primary ERP systems: SAP, Oracle and PeopleSoft.</description><pubDate>Wed, 09 Nov 2011 20:35:25 GMT</pubDate></item><item><title>Social Media: Business Benefits and Security, Governance and Assurance Perspectives</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Social-Media-Business-Benefits-and-Security-Governance-and-Assurance-Perspectives.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:47:28 GMT</pubDate></item><item><title>COBIT Mapping: Mapping FFIEC With COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-FFIEC-With-COBIT-41.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:49:02 GMT</pubDate></item><item><title>COBIT Mapping: Mapping ISO/IEC 17799:2005 With COBIT 4.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-ISO-IEC-17799-2005-With-COBIT-4-0.aspx</link><description>This document contains a detailed mapping of ISO/IEC 17799:2005 with COBIT 4.0</description><pubDate>Wed, 09 Nov 2011 20:47:39 GMT</pubDate></item><item><title>The Business Case Guide: Using Val IT 2.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/The-Business-Case-Guide-Using-Val-IT-20.aspx</link><description /><pubDate>Wed, 01 Feb 2012 21:52:14 GMT</pubDate></item><item><title>SharePoint Deployment and Governance Using COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/SharePoint-Deployment-and-Governance-Using-COBIT-4-1.aspx</link><description /><pubDate>Wed, 09 Nov 2011 20:55:44 GMT</pubDate></item><item><title>Value Management Guidance for Assurance Professionals: Using Val IT 2.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Value-Management-Guidance-for-Assurance-Professionals-Using-Val-IT-2-0.aspx</link><description>This publication provides guidance for assurance professionals by leveraging the Val IT 2.0 framework and the IT Assurance Guide: Using COBIT.</description><pubDate>Wed, 01 Feb 2012 21:54:47 GMT</pubDate></item><item><title>Security, Audit and Control Features Oracle Database, 3rd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Audit-and-Control-Features-Oracle-Database-3rd-Edition.aspx</link><description>This update of the 2004 edition focuses on the attributes and incremental functionality in the most recent Oracle relational database management system software releases 10g and 11g (with focus on 11g).</description><pubDate>Wed, 01 Feb 2012 21:56:01 GMT</pubDate></item><item><title>The Risk IT Practitioner Guide</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/The-Risk-IT-Practitioner-Guide.aspx</link><description>The Risk IT Framework describes a detailed process model for the management of IT-related risk.</description><pubDate>Wed, 09 Nov 2011 21:06:20 GMT</pubDate></item><item><title>Implementing and Continually Improving IT Governance</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Implementing-and-Continually-Improving-IT-Governance1.aspx</link><description>This guide provides an approach for implementing IT governance in such a way that the implementation team can get started in an effective and efficient manner.</description><pubDate>Wed, 01 Feb 2012 21:58:53 GMT</pubDate></item><item><title>The Risk IT Framework</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/The-Risk-IT-Framework.aspx</link><description>The Risk IT Framework fills the gap between generic risk management frameworks and detailed (primarily security-related) IT risk management frameworks.</description><pubDate>Wed, 01 Feb 2012 22:00:11 GMT</pubDate></item><item><title>Cloud Computing: Business Benefits With Security, Governance and Assurance Perspectives</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Cloud-Computing-Business-Benefits-With-Security-Governance-and-Assurance-Perspective.aspx</link><description>Cloud Computing: Business Benefits With Security, Governance and Assurance Perspectives</description><pubDate>Wed, 24 Apr 2013 16:03:31 GMT</pubDate></item><item><title>Security, Audit and Control Features SAP ERP, 3rd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Audit-and-Control-Features-SAP-ERP-3rd-Edition.aspx</link><description>Enables assurance, security and risk professionals (both IT and non-IT) to evaluate risks and controls in existing ERP implementations and facilitates the design and building of better practice controls into system upgrades and enhancements.</description><pubDate>Wed, 09 Nov 2011 21:18:56 GMT</pubDate></item><item><title>Building the Business Case for COBIT and Val IT: Executive Briefing</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Building-the-Business-Case-for-COBIT-and-Val-IT-Executive-Briefing.aspx</link><description>This research explores and demonstrates the business value of COBIT and Val IT. An overview of the significant market findings is presented in this executive briefing.</description><pubDate>Wed, 01 Feb 2012 22:03:42 GMT</pubDate></item><item><title>COBIT and Application Controls: A Management Guide</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-and-Application-Controls-A-Management-Guide.aspx</link><description>This publication provides guidance on the definition, design, operation, relationships and dependencies of application controls.</description><pubDate>Wed, 01 Feb 2012 22:04:50 GMT</pubDate></item><item><title>COBIT User Guide for Service Managers</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-User-Guide-for-Service-Managers.aspx</link><description>Aimed at providing specific guidance on using COBIT when performing a particular role, this guide focuses on service managers, providing them a better understanding of the need for IT governance and how to apply good practices.</description><pubDate>Wed, 01 Feb 2012 22:07:04 GMT</pubDate></item><item><title>ITGI Enables ISO/IEC 38500:2008 Adoption</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/ITGI-Enables-ISO-IEC-38500-2008-Adoption-.aspx</link><description>Summarizes how COBIT, Val IT and related guidance support adoption of the ISO/IEC 38500’s principles and implementation approach.</description><pubDate>Wed, 01 Feb 2012 22:10:45 GMT</pubDate></item><item><title>IT Governance Roundtable: Unlocking Value</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Roundtable-Unlocking-Value.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:09:18 GMT</pubDate></item><item><title>IT Governance Roundtable: Defining IT Governance</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Roundtable-Defining-IT-Governance.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:18:46 GMT</pubDate></item><item><title>IT Governance Roundtable: Value Delivery</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Roundtable-Value-Delivery.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:19:57 GMT</pubDate></item><item><title>An Introduction to the Business Model for Information Security</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/An-Introduction-to-the-Business-Model-for-Information-Security.aspx</link><description>Defines core concepts that will evolve into practical aids to align security program activities with organizational goals and priorities, effectively manage risk, and increase the value of information security program activities to the enterprise.</description><pubDate>Wed, 01 Feb 2012 22:14:48 GMT</pubDate></item><item><title>Generic Application Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Generic-Application-Audit-Assurance-Program1.aspx</link><description>This document is to be used as a review tool and starting point. It may be modified by the IT audit and assurance professional.</description><pubDate>Wed, 01 Feb 2012 22:16:22 GMT</pubDate></item><item><title>Security Incident Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Incident-Management-Audit-Assurance-Program.aspx</link><description>The review will focus on security incident management standards, guidelines and procedures as well as the implementation and governance of these activities.</description><pubDate>Wed, 01 Feb 2012 22:17:31 GMT</pubDate></item><item><title>Change Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Change-Management-Audit-Assurance-Program.aspx</link><description>Design, development and testing methodology of program change management processes.</description><pubDate>Tue, 15 Nov 2011 17:33:08 GMT</pubDate></item><item><title>IT Continuity Planning Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Continuity-Planning-Audit-Assurance-Program.aspx</link><description>The review relies on the existence of a business continuity plan. Policy, standards, guidelines and implementation of the business continuity plan is outside the scope of this review.</description><pubDate>Wed, 01 Feb 2012 22:23:12 GMT</pubDate></item><item><title>z/OS Security Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/z-OS-Security-Audit-Assurance-Program.aspx</link><description>The review will focus on configuration of the relevant z/OS images within the organization, and the controls over critical operating system (z/OS) libraries, exits to the operating system and supervisor calls (SVCs).</description><pubDate>Wed, 05 Dec 2012 20:56:19 GMT</pubDate></item><item><title>Network Perimeter Security Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Network-Perimeter-Security-Audit-Assurance-Program.aspx</link><description>The review will focus on the network perimeter security, including associated policies, standards and procedures as well as the effectiveness of the security implementation.</description><pubDate>Wed, 01 Feb 2012 22:27:55 GMT</pubDate></item><item><title>Systems Development and Project Management Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Systems-Development-and-Project-Management-Audit-Assurance-Program.aspx</link><description>The review will focus upon the (initiation/ planning/ execution/ closure/ postimplementation) phase of the systems development process for the {insert application name}.</description><pubDate>Tue, 15 Nov 2011 17:53:12 GMT</pubDate></item><item><title>UNIX/LINUX Operating System Security Audit/Assurance Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/UNIX-LINUX-Operating-System-Security-Audit-Assurance-Program.aspx</link><description /><pubDate>Tue, 15 Nov 2011 18:06:53 GMT</pubDate></item><item><title>Unlocking Value: An Executive Primer on the Critical Role of IT Governance</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Unlocking-Value-An-Executive-Primer-on-the-Critical-Role-of-IT-Governance.aspx</link><description>The guide explains what IT governance is and why it is important. It describes the key players in the enterprise in IT governance and explains how effective IT governance is implemented.</description><pubDate>Wed, 01 Feb 2012 22:32:24 GMT</pubDate></item><item><title>IT Governance and Process Maturity</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-and-Process-Maturity.aspx</link><description>This project achieved the research objective of developing robust benchmark information and providing a means for organizations to answer the question, ‘How do we compare with our peers?’</description><pubDate>Tue, 15 Nov 2011 18:15:17 GMT</pubDate></item><item><title>Defining Information Security Manager Position Requirements: Guidance for Executives and Managers</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Defining-Information-Security-Manager-Position-Requirements-Guidance-for-Executives-and-Managers.aspx</link><description>This report provides a framework for understanding the many, changing and interrelated requirements of the information security manager position and its requirements assigned to professionals at various levels in an enterprise.</description><pubDate>Wed, 01 Feb 2012 22:37:07 GMT</pubDate></item><item><title>Understanding How Business Goals Drive IT Goals</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Understanding-How-Business-Goals-Drive-IT-Goals.aspx</link><description>This white paper presents a solid and strong list of 17 generic business goals and 18 generic IT goals, validated and prioritized over different sectors providing a basis upon which to build a generic cascade from business goals to IT goals.</description><pubDate>Wed, 01 Feb 2012 22:40:27 GMT</pubDate></item><item><title>Aligning COBIT 4.1, ITIL V3 and ISO/IEC 27002 for Business Benefit</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Aligning-COBIT-4-1-ITIL-V3-and-ISO-IEC-27002-for-BusinessBenefit.aspx</link><description>The briefing applies generally to all IT best practices but focuses on three specific practices and standards that are becoming widely adopted around the world. It has been updated to reflect the latest versions.</description><pubDate>Wed, 01 Feb 2012 22:43:20 GMT</pubDate></item><item><title>Identifying and Aligning Business Goals and IT Goals: Full Research Report (e-book)</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Identifying-and-Aligning-Business-Goals-and-IT-Goals-Full-Research-Report-(e-book).aspx</link><description /><pubDate>Wed, 16 Nov 2011 17:07:39 GMT</pubDate></item><item><title>Top Business/Technology Issues Survey Results July 2008</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Top-Business-Technology-Issues-Survey-Results-July-2008.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:45:38 GMT</pubDate></item><item><title>Val IT Framework 2.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Val-IT-Framework-2.0.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:46:59 GMT</pubDate></item><item><title>COBIT Mapping: Mapping of ITIL V3 With COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-of-ITIL-V3-With-COBIT-4-11.aspx</link><description>Contains the results of a mapping of ITIL V3 with COBIT 4.1 as well as a classification of the standards discussed in this publication, per the content of the overview document COBIT Mapping: Overview of International IT Guidance, 2nd Edition.</description><pubDate>Wed, 01 Feb 2012 22:48:18 GMT</pubDate></item><item><title>Enterprise Value: Governance of IT Investments, Getting Started with Value Management</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Enterprise-Value-Governance-of-IT-Investments-Getting-Started-with-Value-Management.aspx</link><description>This is a guide that complements The Val IT Framework 2.0 and outlines how to implement Val IT.</description><pubDate>Wed, 01 Feb 2012 22:49:23 GMT</pubDate></item><item><title>IT Governance Roundtable: IT Governance Trends</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Roundtable-IT-Governance-Trends.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:51:51 GMT</pubDate></item><item><title>Information Security Career Progression Survey Results</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Information-Security-Career-Progression-Survey-Results.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:53:22 GMT</pubDate></item><item><title>Information Security Governance: Guidance for Information Security Managers</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Information-Security-Governance-Guidance-for-Information-Security-Managers.aspx</link><description>Discusses how to develop an information security strategy within the organization’s governance framework and how to drive that strategy through an information security program.</description><pubDate>Wed, 01 Feb 2012 22:54:38 GMT</pubDate></item><item><title>ITAF: A Professional Practices Framework for IT Assurance</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/ITAF-A-Professional-Practices-Framework-for-IT-Assurance.aspx</link><description>ITAF provides a single source through which IT audit and assurance professionals can seek guidance, research policies and procedures, obtain audit and assurance programmes and develop effective reports.</description><pubDate>Wed, 01 Feb 2012 22:55:37 GMT</pubDate></item><item><title>IT Governance Global Status Report April 2008</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Global-Status-Report-April-2008.aspx</link><description /><pubDate>Wed, 01 Feb 2012 22:58:34 GMT</pubDate></item><item><title>IT Governance Roundtable: IT Staffing</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Roundtable-IT-Staffing.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:01:33 GMT</pubDate></item><item><title>IT Governance Roundtable: IT Governance Frameworks</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Roundtable-IT-Governance-Frameworks.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:02:43 GMT</pubDate></item><item><title>COBIT Mapping: Mapping of NIST SP800-53 Rev 1 With COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-of-NIST-SP800-53-Rev-1-With-COBIT-4-1.aspx</link><description>This document contains a detailed mapping of NIST SP800-53 Rev 1 with COBIT 4.1.</description><pubDate>Wed, 01 Feb 2012 23:04:46 GMT</pubDate></item><item><title>IT Control Objectives for Basel II</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Control-Objectives-for-Basel-II-The-Importance-of-Governance-and-Risk-Management-for-Compliance.aspx</link><description>This document provides a framework for managing information risk in the context of Basel II.</description><pubDate>Tue, 15 Nov 2011 20:58:17 GMT</pubDate></item><item><title>Stepping Through the Information Security Program</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Stepping-Through-the-InfoSec-Program.aspx</link><description>This publication includes a case study and steps to compose an information security program.</description><pubDate>Wed, 01 Feb 2012 23:07:15 GMT</pubDate></item><item><title>COBIT Quickstart, 2nd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Quickstart-2nd-Edition.aspx</link><description>This version of COBIT is a baseline for small to medium enterprises where IT is not mission-critical for survival. It can also serve as a starting point for enterprises in their move towards an appropriate level of control and governance of IT.</description><pubDate>Thu, 23 Feb 2012 16:50:03 GMT</pubDate></item><item><title>COBIT Security Baseline: An Information Security Survival Kit, 2nd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Security-Baseline-An-Information-Security-Survival-Kit-2nd-Edition1.aspx</link><description /><pubDate>Tue, 15 Nov 2011 21:09:58 GMT</pubDate></item><item><title>COBIT Mapping: Mapping of TOGAF 8.1 With COBIT 4.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-of-TOGAF-8-1-With-COBIT-4-0.aspx</link><description>This document contains a detailed mapping of TOGAF 8.1 with COBIT 4.0 and also contains the classification of the standards discussed in this paper as presented in the overview document COBIT Mapping: Overview of International IT Guidance, 2nd Edition.</description><pubDate>Wed, 01 Feb 2012 23:11:43 GMT</pubDate></item><item><title>COBIT 4.1</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-4-1.aspx</link><description>COBIT is an IT governance framework and supporting tool set that allows managers to bridge the gap between control requirements, technical issues and business risks.</description><pubDate>Tue, 15 Nov 2011 21:15:23 GMT</pubDate></item><item><title>IT Assurance Guide: Using COBIT</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Assurance-Guide-Using-COBIT.aspx</link><description>Assurance steps and advice are provided for generic controls that apply to all processes; specific process controls; and application controls</description><pubDate>Tue, 15 Nov 2011 21:18:39 GMT</pubDate></item><item><title>COBIT Control Practices: Guidance to Achieve Control Objective for Successful IT Governance, 2nd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Control-Practices-Guidance-to-Achieve-Control-Objective-for-Successful-IT-Governance-2nd-Edition.aspx</link><description>This publication provides guidance on the risks to be avoided and value to be gained from implementing a control objective, and instruction on how to implement the objective.</description><pubDate>Wed, 01 Feb 2012 23:15:34 GMT</pubDate></item><item><title>COBIT Mapping: Mapping of CMMI for Development V1.2 With COBIT</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-of-CMMI-for-Development-V1-2-With-COBIT.aspx</link><description>This document contains a detailed mapping of CMMI for Development V1.2 with COBIT 4.0.</description><pubDate>Tue, 15 Nov 2011 21:23:13 GMT</pubDate></item><item><title>COBIT Mapping: Mapping SEI’s CMM for Software With COBIT 4.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-SEI-s-CMM-for-Software-With-COBIT-4-0.aspx</link><description>This document contains a detailed mapping of the Software Engineering Institute (SEI) Capability Maturity Model (CMM) for Software with COBIT 4.0.</description><pubDate>Tue, 15 Nov 2011 21:36:31 GMT</pubDate></item><item><title>IT Control Objectives for Sarbanes-Oxley 2nd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Control-Objectives-for-Sarbanes-Oxley-2nd-Edition.aspx</link><description>This publication provides scoping and assessment ideas, approaches and guidance in support of the IT-related COSO internal control objectives for financial reporting.</description><pubDate>Tue, 15 Nov 2011 21:27:15 GMT</pubDate></item><item><title>COBIT Mapping: Mapping PMBOK to COBIT 4.0</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-PMBOK-with-COBIT-4-0.aspx</link><description>This publication contains a detailed mapping of A Guide to the Project Management Body of Knowledge (PMBOK© Guide) Third Edition (2004), with COBIT 4.0.</description><pubDate>Tue, 15 Nov 2011 22:05:41 GMT</pubDate></item><item><title>COBIT Mapping to ISO/IEC 17799:2000 With COBIT</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/COBIT-Mapping-Mapping-ISO-IEC-17799-2000-With-COBIT-2nd-Edition.aspx</link><description>The 2nd edition of COBIT Mapping: Mapping ISO/IEC 17799:2000 With COBIT updates the publication with references to COBIT 4.0.</description><pubDate>Tue, 15 Nov 2011 22:08:14 GMT</pubDate></item><item><title>Information Security Governance Guidance for Boards of Directors and Executive Management, 2nd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Information-Security-Governance-Guidance-for-Boards-of-Directors-and-Executive-Management-2nd-Edition.aspx</link><description>First published in 2002, the book is updated to reflect the changes in the environment, and to include many ideas and outcomes of those organizations that embrace good Information Security Governance.</description><pubDate>Wed, 01 Feb 2012 23:20:00 GMT</pubDate></item><item><title>Managing Risk in the Wireless Environment: Security, Audit and Control Issues</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Managing-Risk-in-the-Wireless-Environment-Security-Audit-and-Control-Issues.aspx</link><description>This publication provides the technical and security background to confidently evaluate the security of wireless networks of all types, and make knowledgeable recommendations for improvements to security or to cost-effectiveness.</description><pubDate>Tue, 15 Nov 2011 22:16:53 GMT</pubDate></item><item><title>Critical Elements of Information Security Program Success</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Critical-Elements-of-Information-Security-Program-Success.aspx</link><description>This report reflects the experience and opinions of an international group of information security managers providing a look at the elements that are most critical for information security program success.</description><pubDate>Wed, 01 Feb 2012 23:23:30 GMT</pubDate></item><item><title>IT Governance Domains Practices and Competencies: Measuring and Demonstrating the Value of IT</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Domains-Practices-and-Competencies-Measuring-and-Demonstrating-the-Value-of-IT.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:27:39 GMT</pubDate></item><item><title>IT Governance Domains Practices and Competencies: Governance of Outsourcing</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Domains-Practices-and-Competencies-Governance-of-Outsourcing.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:28:36 GMT</pubDate></item><item><title>IT Governance Domains Practices and Competencies: Information Risks—Whose Business are They?</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Domains-Practices-and-Competencies-Information-Risks-Whose-Business-are-They-Whose-Business-are-They.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:30:10 GMT</pubDate></item><item><title>IT Governance Domains Practices and Competencies: Optimising Value Creation from IT Investments</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Domains-Practices-and-Competencies-Optimising-Value-Creation-from-IT-Investments.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:32:34 GMT</pubDate></item><item><title>IT Governance Domains Practices and Competencies: IT Alignment Who Is in Charge?</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/IT-Governance-Domains-Practices-and-Competencies-IT-Alignment-Who-Is-in-Charge.aspx</link><description>This volume focuses on ensuring IT alignment with business objectives and examines the effectiveness of an IT strategy committee or IT "council" in helping achieve IT alignment.</description><pubDate>Wed, 01 Feb 2012 23:24:57 GMT</pubDate></item><item><title>Security Awareness—Best Practices to Secure Your Enterprise</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Security-Awareness-Best-Practices-to-Secure-Your-Enterprise.aspx</link><description>This document provides the critical steps needed to implement an enterprisewide security awareness effort; build concurrence among other departments; and provide baselines, maturity levels and control objectives.</description><pubDate>Wed, 01 Feb 2012 23:39:53 GMT</pubDate></item><item><title>Information Security Governance—Top Actions for Security Managers</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Information-Security-Governance-Top-Actions-for-Security-Managers.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:34:45 GMT</pubDate></item><item><title>Linux: Security, Audit and Control Features</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Linux-Security-Audit-and-Control-Features.aspx</link><description>This document provides a standard reference for Linux security controls and their audit for security administrators, security professionals and information systems auditors.</description><pubDate>Wed, 16 Nov 2011 19:26:06 GMT</pubDate></item><item><title>Information Security Harmonisation</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Information-Security-Harmonization-Classification-of-Global-Guidance.aspx</link><description>The purpose of this technical study is to provide the Certified Information Security Manager (CISM) holder with a guide to the better known and more widely available information security documents.</description><pubDate>Wed, 01 Feb 2012 23:39:16 GMT</pubDate></item><item><title>Board Briefing on IT Governance, 2nd Edition</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/Board-Briefing-on-IT-Governance-2nd-Edition.aspx</link><description>Comprehensive description of IT governance concepts. It is useful as a reference booklet or as a tool for educating top management and comes with checklists and tools.</description><pubDate>Wed, 11 Apr 2012 14:30:00 GMT</pubDate></item><item><title>ITGI Global Survey Results</title><link>http://www.isaca.org/Knowledge-Center/Research/ResearchDeliverables/Pages/ITGI-Global-Survey-Results.aspx</link><description /><pubDate>Wed, 01 Feb 2012 23:49:35 GMT</pubDate></item></channel></rss>