-
Cross-system segregations of duties analysis in complex IT landscape
Ten lessons learned based on project at financial services companyThis article explains the importance of access controls and segregation of duties in complex IT landscapes and elaborates on performing…
-
Exploring digital: empowering the Internal Control Function
Insight into four different digitization options to keep up with today's fast-paced worldThe Internal Control Function, or second line of defense is a vital part of the organization tasked with devising and…
-
Outsourcing
Supervision of outsourcing at financial institutions becomes more extensive, also impacting service providers including payment service providersService providers of payment and account information services are required to obtain a license issued by De Nederlandsche Bank (hereafter…
-
Emerging from the shadows
Why business ownership is the answer to managing the risk of Shadow ITDoor: Olga Kulikova MSc | Ramya Iyer MScShadow IT might sound threatening to some people, as if it originates from a thrilling detective novel. In an organizational…
-
Robo-advice: how to raise a new machine
What are the risks and the controls to mitigate them?Door: R.J. Voster BEngJohannes Kepler, a German 17th century astronomer, famous for discovering how planets revolve around the sun, is supposed to have…
-
The lessons learned from did-do analytics on SAP
The 10 most valuable tips to analyse actual SoD violations in SAPIn addition to the traditional SAP authorization analysis (‘can-do’ analytics), the more enhanced did-do analytics enables you to understand the…
-
Software Asset Management
Nieuwste uitgave van ISO 19770-norm creëert inzicht, transparantie en kostenbesparingenEen belangrijke voorwaarde om vertrouwen te hebben in een IT-omgeving zijn gedocumenteerde processen rondom softwaregebruik, inclusief bijbehorende licentievoorwaarden. Software Asset…
-
A practical perspective on the EBA ICT Risk Assessment Guidelines
Developments in regulatory oversight of ICT riskDoor: B. Beugelaar RE RA | Ali Alam RE CISAThe European Banking Authority (EBA) has issued guidelines for the assessment of the ICT risk at large banks which became…