Search icon CANCEL
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Conferences
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Governance, Risk, and Compliance Handbook for Oracle Applications

You're reading from   Governance, Risk, and Compliance Handbook for Oracle Applications Written by industry experts with more than 30 years combined experience, this handbook covers all the major aspects of Governance, Risk, and Compliance management in your organization with this book and ebook.

Arrow left icon
Product type Paperback
Published in Aug 2012
Publisher Packt
ISBN-13 9781849681704
Length 488 pages
Edition 1st Edition
Arrow right icon
Toc

Table of Contents (22) Chapters Close

Governance, Risk, and Compliance Handbook for Oracle Applications
Credits
1. Foreword
About the Authors
Acknowledgement
About the Authors
Acknowledgement
About the Reviewers
2. www.PacktPub.com
3. Preface
1. Introduction 2. Corporate Governance FREE CHAPTER 3. Information Technology Governance 4. Security Governance 5. Risk Assessment and Control Verification 6. Documenting Your Controls 7. Managing Your Testing Phase: Management Testing and Certifying Controls 8. Managing Your Audit Function 9. IT Audit 10. Cross Industry Cross Compliance 11. Industry-focused Compliance 12. Regional-focused Compliance

GRC Capability Maturity Model


The governance process itself can start small in a fairly ad hoc manner and can mature to where the governance processes are truly optimized. The IT Policy Compliance Group, an industry and advisory consortium adapted the Capability Maturity Model first published by The Carnegie Mellon Software Engineering Institute to the GRC Domain. It has provided a way for companies to measure where they are on the spectrum, and give themselves a sense of how far they have to go and the costs and benefits in getting there.

The following figure shows the levels in the Capability Maturity Model and the process characteristics at each of the levels:

We will be revisiting the Capability Maturity Model to see how different pieces of our GRC solution help move us along the spectrum towards optimizing our controls footprint, minimizing the costs, maximizing the repeatability, and ensuring we have measurable results that can be expressed in terms of business value. The IT Policy Compliance Group provides standardized assessments to help companies measure where they are.

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime