Governance, audit and digital preservation

Similar documents
ANGLIAN WATER GREEN BOND

The Strategic Commercial and Procurement Manager

COMMISSION OF THE EUROPEAN COMMUNITIES. Draft. COMMISSION REGULATION (EU) No /2010

COMMISSION IMPLEMENTING REGULATION (EU)

AERODROME SAFETY COORDINATION

ICAO Universal Security Audit Programme (USAP) ICAO Regional Aviation Security Audit Seminar. Introduction to the USAP-CMA Protocol Questions

LIST OF OPEN TRAINING TRAINING PLANNER 2018 Course location: Lagos, Abuja, Port Harcourt, Kaduna.

Global Aviation Safety Workshop Abuja Nigeria. Group A Road 2. Group A Road 2 Inconsistent Regulatory Oversight

Agenda Item 6: Aviation Security and Facilitation

Technical Cooperation Bureau

Item 1. Leadership Board. On: 1 April Report by: Director of Development and Housing Services. Heading: Update on City Deal. 1.

Crown Corporation BUSINESS PLANS FOR THE FISCAL YEAR Trade Centre Limited. Table of Contents. Business Plan

ACI World Safety Seminar Beijing November 2008 AN OVERVIEW OF ICAO SAFETY PROGRAMMES

HARTWIG MEDICAL FOUNDATION - GUIDING PRINCIPLES 2017

The results of the National Tourism Development Strategy Assessments

ICAO Universal Security Audit Programme (USAP) ICAO Regional Aviation Security Audit Seminar

Scotland s Water Industry: Past, Present and Future

Recommendations on Consultation and Transparency

Airport Safety Management Systems: Integrating Planning Into the Process

Catching UP with Policies & Procedures

International Civil Aviation Organization SECRETARIAT ADMINISTRATIVE INSTRUCTIONS ON THE IMPLEMENTATION OF THE ICAO CIVIL AVIATION TRAINING POLICY

AFI AVIATION SECURITY MEETING. Dakar, Senegal, 28 May 2014 AN AFRICAN PLAN FOR ENHANCING AVIATION SECURITY AND FACILITATION. (Presented by Uganda)

SESAR Active ECAC INF07 REG ASP MIL APO USE INT IND NM

Arianespace Launch Service Operator Policy for Space Safety

1.0 BACKGROUND NEW VETERANS CHARTER EVALUATION OBJECTIVES STUDY APPROACH EVALUATION LIMITATIONS... 7

ENVIRONMENT ACTION PLAN

AUDIT COMMITTEE CHARTER

Frequently Asked Questions

Terms of Reference: Introduction

Attraction Safety. Westlakes. Engineering. Our Capabilities

BRISBANE CITY COUNCIL PLANNING FOR TENNIS TOGETHER FEBRUARY 2017

International Civil Aviation Organization. Runway and Ground Safety Working Group

Safety Management System Coordinator. Position Number Community Division/Region Yellowknife Air, Marine and Safety/HQ

THE CARICOM REGIONAL IMPLEMENTATION PLAN

Decision Strategic Plan Commission Paper 5/ th May 2017

Integrated Quality Management for MICE destinations A key to Success. Bruce Redor Partner

RUNWAY SAFETY GO-TEAM METHODOLOGY

International Civil Aviation Organization ATS Quality Assurance Seminar for the NAM/CAR/SAM Regions Mexico City October Airports

Abruzzo Airport. Commercial Policy Development Routes

Environmental and sustainability labelling. Liazzat Rabbiosi

FEDERATION SQUARE MELBOURNE, AUSTRALIA CORPORATE PLAN

LAW ON THE AGENCY FOR PRESCHOOL, PRIMARY AND SECONDARY EDUCATION

Quality Assurance. Introduction Need for quality assurance Answer to the need of quality assurance Details on quality assurance Conclusion A B C D E

Crown Corporation Business Plans. Trade Centre Limited

AIRPORT VOLUNTARY COMMITMENT ON AIR PASSENGER SERVICE

About Us. An introduction to Network Rail

Price-Setting Auctions for Airport Slot Allocation: a Multi-Airport Case Study

Terms of Reference for a rulemaking task

Raising Safety Standards & Transforming to Performance Based Regulation

STRATEGY/ACTION PLAN FOR IMPLEMENTATION OF REDUCED VERTICAL SEPARATION MINIMA IN THE AFRICA-INDIAN OCEAN REGION 22 NOVEMBER 2003

Auditing. Sponsored by: 16 April 2013

International Civil Aviation Organization Vacancy Notice

HEAD & HEART: UNLEASHING AN UNSTOPPABLE IMPROVEMENT CULTURE

Aerodrome s Inspector Workshop Sint Maarten 11 to 15 June 2012

QUÉBEC DECLARATION ON ECOTOURISM World Ecotourism Summit Québec City, Canada, 2002

EU GPP CRITERIA FOR INDOOR CLEANING SERVICES 1. INTRODUCTION

TOURISM GOVERNANCE IN SLOVENIA

Ketenborging Interplay of public supervision and private standards in the Netherlands

MEETING CONCLUSIONS. Andean South America Regional Meeting Lima, Peru 5-7 March ECOTOURISM PLANNING

(Also known as the Den-Ice Agreements Program) Evaluation & Advisory Services. Transport Canada

Airport Privatization:

City and County of San Francisco

AIRCRAFT SALES & ACQUISITIONS

AEROMEDICAL SOCIETY OF AUSTRALASIA

What is safety oversight?

SEMESTER VI No. of No. of Internal External Total Part III Core Subjects 1

Federal Aviation Administration

Update on the Thameslink programme

WORLD METEOROLOGICAL ORGANIZATION AFRICAN CONFERENCE ON METEOROLOGY FOR AVIATION (ACMA -2018)

APPROVED TRAINING ORGANISATIONS & FLIGHT SIMULATION TRAINING DEVICES

Strategic Plan

A SMARTER HOTEL INVESTMENT

Competition for Air Traffic Management: The Air Navigation Service Provider s perspective

Safety by Design. Greg Hale

Massachusetts Port Authority Sustainable Design Standards and Guidelines. AAPA Annual Convention Galveston, TX October 28, 2009

Welcome to AVI AFRIQUE 2017

Financial Benchmarking and Market Trends for Government Contractors: How Does Your Company Compare?

Project Fiche MASTER PLAN FOR DEVELOPMENT OF THE NAUTICAL TOURISM IN THE SAVA RIVER BASIN

Part 141. Aviation Training Organisations Certification. CAA Consolidation. 10 March Published by the Civil Aviation Authority of New Zealand

PPIAF Assistance in Swaziland

Visit Belfast Recruitment Communications and PR Manager (Maternity Post Fixed Term Contract)

BHP Billiton Global Indigenous Peoples Strategy

Sustainable Procurement Policy for Heathrow Airport Limited

Benchmarking Service Quality

WE KNOW HOSPITALITY CRESCENT HOTELS & RESORTS:

About Us. An introduction to Network Rail

Federal Aviation Administration

EXHIBIT K TERMINAL PROJECT PROCEDURES PHASE I - DEVELOPMENT OF TERMINAL PROGRAM & ALTERNATIVES

International Civil Aviation Organization. Regional Aviation Safety Group - Middle East

PERTH AND KINROSS COUNCIL 1 OCTOBER 2008 ADULT SUPPORT AND PROTECTION. Report by the Executive Director (Housing & Community Care)

REPORT 2014/065 INTERNAL AUDIT DIVISION. Audit of air operations in the United. Nations Assistance Mission in Afghanistan

4 Rights and duties in connection with the conduct of petroleum activities

THE ICAO TECHNICAL COOPERATION PROGRAMME: A Partner in Implementing Aviation Projects and Achieving Civil Aviation Goals

The regulatory challenges facing industry EASA-Thales TAC Watchkeeper Airworthiness Analysis of TAC meetings outcomes Tuesday 24 th March 4 th 2015

Work Programme 01/ /2012

Transport Canada Civil Aviation Transformation (TCCAT) Initiative

CR-Text WG Ref Common requirement analysis Common acceptable means of compliance

Director, External Trade, CARICOM Secretariat. CARICOM Secretariat, Guyana

Tradition and innovation

INTERNATIONAL CIVIL AVIATION ORGANIZATION

Transcription:

Governance, audit and digital preservation Boudien J. Glashouwer RE RI CISA April 14, 2004

Table of contents Governance Quality and Maturity Information Security Audit Digital preservation April 14, 2004 Erpanet - Antwerp 2

Strategic business goals Profit or Non-profit Core business is digital preservation or Digital preservation is secondary April 14, 2004 Erpanet - Antwerp 3

Legislation Democracy Buying and selling agreements Computer crime Transparency Privacy Finance Specific laws Records management April 14, 2004 Erpanet - Antwerp 4

Hot issues Sarbanes Oxley Act, 2002, USA Financial Financial reporting, auditing, internal control, standard setting, corporate governance Basel II, New Basel Capital Accord, 2003, Europe Limitation of credit risks and operational risks in banking April 14, 2004 Erpanet - Antwerp 5

Governance How to keep the ship on course? How to achieve objectives? How to timely adapt? Governance manage, manage, control, account for and supervise Governance April 14, 2004 Erpanet - Antwerp 6

Plan Goals, strategy and policy Laws and regulations Standards and control models Commitment on top level Do Management cycle Needs Responsibilities Projects Communication Meetings Organisation Quality Security Correct/ Adapt Monitor, evaluate, learn New standards? Adapt policy Check Measure Alignment Compliance Assessment Audit/assurance April 14, 2004 Erpanet - Antwerp 7

Plan

Governance & control models COSO USA, USA, Internal Control Integrated Framework, 1992 business business ethics, effective internal control, corporate governance COSO COBIT Governance, control and audit for IT and related technology, 1996 IT-controls support the COSO-framework April 14, 2004 Erpanet - Antwerp 9

COSO Committee of Sponsoring Organisations of the Treadway Commission (fraudulent financial reporting) Internal Control Integrated Framework 1. Control environment (company level) 2. Risk assessment (achieve objectives) 3. Control activities (policies, procedures, practices, general & application controls) 4. Information and communication (at all levels) 5. Monitoring of the internal control (oversight) April 14, 2004 Erpanet - Antwerp 10

CobiT Planning and Organisation strategy, strategy, quality, human resources Acquisition and Implementation systems systems development and installing Delivery and Support service service levels, operations, security Monitoring internal internal control, assurance,, audit Monitoring April 14, 2004 Erpanet - Antwerp 11

Do

Business Performance Manage business Take action Produce Can be a bakery or digital preservation... April 14, 2004 Erpanet - Antwerp 13

Quality and maturity of business processes ISO 9000 general quality ISO 15489 records management ITIL IT Infrastructure Library EFQM, total quality management April 14, 2004 Erpanet - Antwerp 14

Information Security Risk analysis business processes Awareness Standard ISO 17799 Baseline security levels Manager, security-officer, security manager, auditor Service Level Agreement (SLA and SLM) Certification April 14, 2004 Erpanet - Antwerp 15

Check

Monintoring & Measuring Critical Success Factors Key Goal Indicators Key Performance Indicators Dashboards Scorecards Benchmarking April 14, 2004 Erpanet - Antwerp 17

Auditing Internal audit Self Self assessment InternalInternal Audit Service External audit Financial Financial auditing Operational auditing IT/EDP-auditing April 14, 2004 Erpanet - Antwerp 18

Resources Business processes input, input, througput,, output, outcome People Application systems Technology Facilities Data April 14, 2004 Erpanet - Antwerp 19

Criteria Effectiveness Efficiency Confidentiality Integrity Availability Compliance Reliability April 14, 2004 Erpanet - Antwerp 20

Audit approach Legislation, standards Management norms Audit plan Audit tools Report Communication Certification? April 14, 2004 Erpanet - Antwerp 21

Correct/Adapt

Improvement Define maturity level Learn Take small steps Grow and improve quality of business processes! April 14, 2004 Erpanet - Antwerp 23

Digital preservation No information, no control... Without digital preservation governance, control and audit not possible! Can the audit of business processes be enough or Do we need a special preservation audit or certificate? April 14, 2004 Erpanet - Antwerp 24

Take the challenge Enjoy this conference in Antwerp! April 14, 2004 Erpanet - Antwerp 25

Websites www.coso coso.orgorg www.isaca isaca.org www.erpanet erpanet.org April 14, 2004 Erpanet - Antwerp 26

Contact Het Expertise Centrum, The Hague www.hec hec.nl b.glashouwer@hec hec.nl 00 31 6 206 02 209 April 14, 2004 Erpanet - Antwerp 27