内部監査で検討すべき10のIT項目

Similar documents
...1 GRC...2 GRC...6 SAP GRC...8 SAP GRC Risk Management... 9 SAP GRC Process Control SAP GRC Access Control iii Insights on governa

組織のニーズに合った内部監査体制の構築

内部監査における重要な検討事項

ポートフォリオマネジメントを通じた戦略の展開

EY COO Assets Under Management AUM , ?? Alex Birkin Partner and Global Wealth & Asset Management Advisory Leader, Ernst & Young LLP A

27 OECDBEPS 2720% %23.9% 7.2% 276.0% 284.8% 34.62% %2.51% % 3.29% % 32.11% 31.33% % 99% % 23

1 8 10% 6% 14% 3 10% 25% 10% 15% 10%35% 4 14% 9% 6% 6% 8.5% 9% 14% % 25% 0% 5% 21.7% % 9% 5% % 5% 9% 5% % 6% 2 = 310% 2 14%

untitled

16 FOCUS BEPS M&A BEPS 30 BEPS 33

15 FOCUS

J_ANA_ar11納品PDF用 indd

光学基金報告会資料 最終版.ppt

Office BCP () Office Microsoft Exchange Exchange Server Exchange Online Exchange Server Exchange Online Exchange Exchange 1997 Exc

OECD BEPS15 15 BEPS OECD explanatory notes EY Global Tax Alert PEBEPS OECD i in place of iiappli

76 1 2

金融機関の業務継続強化に向けた課題と対応

ガイドブック

Foreword

Connect2号_C

小売業におけるPB戦略とストアロイヤルティ

JobCreation2013.indd

2015 Rugby World Cup 2015 RWC 2015 RWC ,000 RWC 2015 RWC Gross Value Added GAV 3 4, ,700 1,500 8, GDP 2 7,700 1

Copyright 2006 KDDI Corporation. All Rights Reserved page1

untitled

Rising to the Challenges

日立 統合報告書 2017 (2017年3月期)

ITSM.PDF

Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Detroit, US Tokyo, JP Boulder, US TJ Watson, US Tokyo, JP Atlanta,

変更cs

66期_00丁付出稿用.indd

guideline_1_0.dvi

Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Boulder, US Detroit, US TJ Watson, US Tokyo, JP Tokyo, JP Atlanta,

SRMサミット20Pブローシュア

IPSJ SIG Technical Report Vol.2017-CLE-21 No /3/21 e 1,2 1,2 1 1,2 1 Sakai e e e Sakai e Current Status and Challenges on e-learning T

雲の中のWebアプリケーション監視術!~いまなら間に合うクラウド時代の性能監視入門~


PCライフサイクルの管理:生産性とIT効率の向上

PMI2005北米大会報告書

Œ¼‘ÌŒ¢’Ý™è-1

Summary Statement of Business 1 2

メディア及びエンターテイメント産業 コネクト Vol.2

医療業界のデジタル化:テクノロジーを活用して医療を変革する

79,030 4,143 2,363 1

AP_12_15_yonezawa.indd

キヤノンマーケティングジャパングループ CSR報告書 情報セキュリティ報告書

SRMサミット20P0516


IP IP All contents are Copyright (c) All rights reserved. Important Notices and Privacy Statement. page 2 of 39

40

スライド 1

環境マネジメントシステムが抱える課題と対応策――ISO14001の取り組み現場から

Oracle Identity Managementの概要およびアーキテクチャ

Windows Azure Platformを活用したPaaSサービス:FGCP/A5

Our Advisory Services EY

相続支払い対策ポイント

150423HC相続資産圧縮対策のポイント

ServerProtect 5.8 (Patch 5) クイックスタートガイド

ハピタス のコピー.pages

Copyright 2008 All Rights Reserved 2

(2) IPP Independent Power Producers IPP 1995 NCC(New Common Carrier NCC NTT NTT NCC NTT NTT IPP 2. IPP (3) [1] [2] IPP [2] IPP IPP [1] [2]

各 ネットワーク 対 策 ファイアウォール McAfee Next Generation Firewall LGWAN 接 続 ルータ LGWAN 庁 内 LAN 中 間 サーバー プラットフォーム IPS 製 品 McAfee Network Security Platform サンドボックス M

posttruth-mod.key

untitled

Trend Micro Portable Security ユーザガイド

A5 PDF.pwd

_H

JAPAN MARKETING JOURNAL 123 Vol.31 No.32012

6.indd

富士通会社案内


GUIDE_2013_H1

2018年タイの会計、監査、税務ガイド

つるい27-5月号PDF.indd

kiri_17.pdf

01

表紙

untitled

人工知能が経営にもたらす「創造」と「破壊」

いま本文ー校了データ0822.indd

Accenture-Finance-FSArchitect-vol.42

本文/YAZ172P

公的・非営利組織の人的資源マネジメント戦略:

1000 Copyright(C)2009 All Rights Reserved - 2 -


要 約 税 法 s の 変 更 に 関 する Law No.71/2014/QH13 (Law No.71) が 公 表 されまし た 11 月 のタックスアラートに 記 載 しました 法 人 税 (CIT) 付 加 価 値 税 (VAT)に 関 する 政 府 の 議 案 が 通 過 し 新 しい

Hohenegger & Schär, a cm b Kitoh et. al., Gigerenzer et. al. Susan et. al.

12_11B-5-00-omote※トンボ付き.indd

<8BE0975A C A837E B F D834F E696E6464>

untitled

スライド 1

GMT_16P_A4

Management Of Technology 1

スライド 1

AP_12_15_yonezawa.indd

ISMSクラウドセキュリティ認証の概要

untitled

ISO GC 24

! Copyright 2015 sapoyubi service All Rights Reserved. 2

「消費」から「体験」へ オムニチャネル時代を生き抜くために

KPMGフォーラム2013 DM

Transcription:

Insights on governance, risk and compliance 10 IT IT

...2...4...6...8...10 IT...12...14 IT...16...18...20...22...24 iii Insights on governance, risk and compliance

IT IT??? IT 10 IT 10 IT Insights on governance, risk and compliance 1

IT EY: Turning risks into results: how leading companies use risk management to fuel better performance 3 IT 1. : 2. : 3. : /?? IT IT 10 IT IT IT 2 Insights on governance, risk and compliance

IT IT IT IT IT SOX IT IT IT IT IT IT IT IT 1 1 SOX 302 IT IT IT GRC IT IT IT IT IT IT SOX IT IT IT IT 2 4 IT SOX IT PCI FISMA HIPAA ISO27001 IT Insights on governance, risk and compliance 3

IT Insights on governance, risk and compliance Fighting to close the gap: Ernst & Young s 2012 Global Information Security Survey 2012 : 2012 http://www.ey.com/gl/en/services/ Advisory/Advisory-Services_Information- Security-Services 4 Insights on governance, risk and compliance

Threat and Valunability Management TVM IT? IT?? TVM? TVM? TVM /IT????? Insights on governance, risk and compliance 5

2011 3 Business Continuity ManagementBCM BCM BCM EY 2012 BCM 12 BCM IT BCM BCM IT IT BCM Insights on governance, risk and compliance Ready for the challenge: integrated governance the key to effective business continuity management : http://www.ey.com/gl/en/services/ Advisory/Integrated-governance--- effective-business-continuity-management--- Ready-for-the-challenge 6 Insights on governance, risk and compliance

IT IT????????? IT Insights on governance, risk and compliance 7

OS IT Insights on IT risk Technical briefing モバイル機器のセキュリティ Mobile device security: understanding vulnerabilities and managing risk : 脆弱性の理解とリスクの管理 http://www.ey.com/gl/en/services/ Advisory/Advisory-Services_Information- Security-Services 8 Insights on governance, risk and compliance

IT BYOD Bring Your Own Device?????????? Insights on governance, risk and compliance 9

IT IT IT IT Service Level AgreementsSLA IT Insights on governance, risk and compliance Ready for takeoff: preparing for your journey into the cloud Ready for takeoff: Ready for takeoff http://www.ey.com/gl/en/industries/ Technology/Cloud-computing-issues--- impacts-and-insigts---a-fundamental-shiftinthe-industry 10 Insights on governance, risk and compliance

SOC 1 2 3 SLA IT SLA IT?? IT???? SLA? SLA?? IT? Insights on governance, risk and compliance 11

IT IT IT IT IT IT IT IT? IT?? IT Insights on IT risk Business briefing The evolving IT risk landscape: the why and how of IT risk management today IT IT IT : IT http://www.ey.com/gl/en/services/ Advisory/Technology-risk-managementin-a-cyber-world--a-C-suite-responsibility- Whats-the-fix 12 Insights on governance, risk and compliance

IT IT IT IT?? IT? IT IT IT IT?? IT? IT IT IT? IT? ITIT?? IT IT IT IT IT? IT? IT? IT IT? /GRC GRC GRC GRC? GRC? GRC? GRC?? IT? Insights on governance, risk and compliance 13

IT IT 2015 5.3% 1 IT 20 50% IT 1 : Building confidence in IT programs: facilitating success through program risk management EY 2011 Insights on governance, risk and compliance Strategy deployment through portfolio management: a risk-based approach : http://www.ey.com/gl/en/services/ Advisory/Strategy-deployment-throughportfolio-management-Portfoliomanagement-challenges 14 Insights on governance, risk and compliance

IT??????? IT Insights on governance, risk and compliance 15

IT IT IT IT IT IT CIO IT IT 20% IT IT IT IT IT IT Effective software asset management: how to reap its benefits http://www.ey.com/gl/en/services/ Advisory/IT/IT-risk-library-page IT IT IT IT IT 16 Insights on governance, risk and compliance

IT IT IT IT IT IT ERP IT IT IT IT IT IT?? IT??? IT? IT IT? IT Insights on governance, risk and compliance 17

IT IT IT Twitter Facebook LinkedIn Twitter Facebook Protecting and strengthening your brand: social media governance and strategy : IT Insights on IT risk Business briefing IT IT IT http://www.ey.com/gl/en/services/ Advisory/IT/IT-risk-library-page 18 Insights on governance, risk and compliance

IT IT IT??????? IT Insights on governance, risk and compliance 19

May 2010 Segragation of DutiesSoD SoD SoD SoD SoD SoD SoD IT GRC ITSoD SoD SoD IT ERP IT ERP IT SoD Insights on governance, risk and compliance A risk-based approach to segregation of duties http://www.ey.com/gl/en/services/ Advisory/IT/IT-risk-library-page A risk-based approach to segregation of duties 20 Insights on governance, risk and compliance

SoD IT SoD SoD IT ERP SoD SoD SoD SoD GRC IAM/GRC SoD IT SoD IT? ERP? SoD? SoD?? SoD? SoD? GRC SoD? SoD? Insights on governance, risk and compliance 21

USB Data Loss PreventionDLP DLP??? : 2012 Fighting to close the gap: Ernst & Young s 2012 Global Information Security Survey 81% EY 2012 IT IT 3? Insights on IT risk Business briefing Insights on governance, risk and compliance Data loss prevention: keeping your sensitive data out of the public domain Data loss prevention: http://www.ey.com/gl/en/services/ Advisory/IT/IT-risk-library-page Data loss prevention 機密データの漏えいを防ぐために Privacy trends 2013: the uphill climb continues 2013: http://www.ey.com/gl/en/services/ Advisory/IT/IT-risk-library-page 2013 22 Insights on governance, risk and compliance

DLP IT??????? HIPAA?? Insights on governance, risk and compliance 23

IT IT 24 Insights on governance, risk and compliance

EY Assurance Tax Transactions Advisory EY EY EY ey.com EY EY www. shinnihon.or.jp 2013 Ernst & Young ShinNihon LLC. All Rights Reserved. EY Japan 03 3503 3500 azuma-yshhr@shinnihon.or.jp 03 3503 1704 yokokawa-hrysh@shinnihon.or.jp Global Paul van Kessel +31 88 40 71271 paul.van.kessel@nl.ey.com Randall J Miller +1 312 879 3536 randall.miller@ey.com Americas Michael L. Herrinton +1 703 747 0935 michael.herrinton@ey.com Bernard R. Wedge +1 404 817 5120 bernard.wedge@ey.com Europe, Middle East, India and Africa (EMEIA) Jonathan Blackmore +44 20 795 11616 jblackmore@uk.ey.com Manuel Giralt Herrero +34 91 572 7479 manuel.giraltherrero@es.ey.com Asia-Pacific Jenny S. Chan +86 21 2228 2602 jenny.s.chan@cn.ey.com Rob Perry +61 3 9288 8639 rob.perry@au.ey.com SCORE no. AU1458 ED 0114 100-6028 2 5 28F Tel: 03 3503 2846 E-mail: AS-Markets@shinnihon.or.jp