
- Information Systems Audit and Standards
Resources
- Standards
ISACA® Standards
- Issued by the Standards Board of the Information Systems Audit and Control
Association®. The Standards for Information Systems Auditing are available in
nine languages: Dutch, English, German, Hebrew, Italian, Japanese, Korean, and
Spanish.
[TOP]
- ISACA® COBiT™
Information
- COBiT™has been developed as a generally applicable and accepted
standard for good Information Technology (IT) security and control practices that
provides a reference framework for management, users, and IS audit, control and
security practitioners..
[TOP]
COBiT™ Online
- COBIT Online is a major deliverable from the IT Governance Institute.
Whether you are a current user of COBIT or planning to adopt COBIT as the
preferred framework for IT governance, COBIT Online provides easy and rapid
access to all the COBIT resources. With COBIT Online, you can browse and search
the best practices, download customized guidance, perform benchmarking and
more.
Designed as a web-based service and available to anyone with an Internet
connection, COBIT Online makes COBIT more accessible and user-friendly than any
other IT best practices. Furthermore, by using MyCOBIT, you can construct and
download your own version of COBIT for use on the desktop in MS Word or Access
formats as assessment forms, rich text Word documents or as a database.
COBIT Online will grow and develop based on user feedback provided through
several mechanisms, enabling the knowledge base to evolve quickly after expert
review of the comments provided. Users of COBIT Online will benefit from
accessing the very latest version of the guidance material without waiting for
the next hardcopy release, be able to share experiences with other users, and
create their own customized COBIT environment.
A variety of subscription levels are available, each providing different
levels of access and functionality. We are pleased to offer very attractive
incentives to early subscribers. By subscribing today; you will benefit from
COBIT Online developments and enhancements incorporated in the recent 3.1
release. As an example, access to hundreds of control practices which provide the
more detailed how and why needed by management, service providers, end users and
control professionals to implement highly specific controls based on an analysis
of operational and IT risks.
Don't miss this opportunity at very attractive pricing - subscribe today.
[TOP]
- ISACA® COBiT™ Foundation
Course
- COBiT™ This newly-released COBiT™ course is an introduction to
the COBiT™ framework, featuring real-world examples and case studies. The
COBiT™ Foundation Course focuses on the need for an IT control framework,
and it addresses IT governance issues affecting organizations globally. The
course explains how to achieve sound IT governance through the implementation of
COBiT™.
The course provides an overview of the COBiT™ control objectives,
control practices, management guidelines and audit guidelines. Case studies and
practical examples help you relate the components of the COBiT™ Framework
to your own organization. The COBiT™ Foundation Course is offered in a
self-paced e-learning format, so you can learn at your own pace and on your own
schedule.
[TOP]
- COBiT™ Forums
- THE CONTROLIT USER GROUP - Dedicated to Supporting COBiT™ Users
[TOP]
- COSO & COBiT™
Center
- COSO and COBIT™ - from SOX-online, the Vendor-Neutral Sarbanes-Oxley
Site.
[TOP]
The International ISO 17799 Community Forum
- News, Articles and other information related to the ISO17799 and BS7799
information security standard. The ISO 17799 Community Forum is primarily
intended to serve as an interactive resource, and is designed to enable the free
exchange of related information. You are therefore invited to join our growing
community, free of charge, and share in this rapidly developing security project.
[TOP]
The International ITIL Community Forum
- The ITIL User Community Forum is intended to serve as an interactive and
independent resource to support ITIL education and enable the free exchange of
ITIL information.
[TOP]
www.ITgovernance.org
- To achieve success in this information economy, enterprise governance and IT
governance can no longer be considered separate and distinct disciplines.
Effective enterprise governance focuses individual and group expertise and
experience where it can be most productive... monitors and measures
performance... provides assurance to critical issues. Information technology,
long considered solely an enabler of an enterprise's strategy, must now be
regarded as an integral part of that strategy. This web site is designed to
help stakeholders achieve this critical success factor by offering information
and resources showing how to efficiently and effectively deploy secure, reliable
information and applied technology.
[TOP]
- IS Audit Resources
The PCI Security Standards Council
- The PCI Security Standards Council is an open global forum for the ongoing
development, enhancement, storage, dissemination and implementation of security
standards for account data protection.
The PCI Security Standards Council’s mission is to enhance payment account
data security by fostering broad adoption of the PCI Security Standards.
The organization was founded by American Express, Discover Financial Services, JCB,
MasterCard Worldwide, and Visa International..
[TOP]
The Institute of Internal Auditors IT Audit Forums
- ITAudit is the premier information technology resource for auditors, designed
to enhance auditors' knowledge of information technology (IT).
[TOP]
GIAC Audit Certifications
- Individuals who complete the Global Information Assurance Certification
Auditing Programs will have a firm grasp of information security principles and
issues and will be equipped to develop and execute best practice audit
checklists. They will also be prepared to perform risk assessments as well as
security and conformance audits based on established best practice.
[TOP]
NSA INFOSEC Assessment Methodology
NSA INFOSEC Evaluation Methodology
- The United States Government National Security Agency's IAM and IEM consist
of a standard set of activities required to perform an INFOSEC assessment and
evaluation. In other words, the methodology explains the depth and breadth of the
assessment and evaluation activities that must be performed to be acceptable
within the IATRP. The IAM and IEM "sets the bar" for what needs to be done for an
activity to be considered a complete INFOSEC Assessment.
[TOP]
Please read our Legal Notice regarding links to third-party
sites that are not under ISACA® Las Vegas Chapter control.
If you would like to add a link to your favorite Audit, IT Controls, or
INFOSEC related reference to this page
please contact:
info@isaca-lasvegas.org
Return to ISACA® Las Vegas Chapter Audit, Controls, and Infosec
Resources Page
Return to ISACA® Las Vegas Chapter Home Page
