• What is the importance of GRC? Governance, Risks and Compliance in Organisations

    What is the importance of GRC? Governance, Risks and Compliance in Organisations

    Resumo: Introdução aos conceitos de GRC (Governança, Riscos e Conformidade).

    Palavras chaves: GRC. Governança corporativa. Gestão de riscos. Gestão. Conformidade. Compliance.

    A complexidade das relações negociais das organizações têm crescido exponencialmente nas últimas décadas. Por outro lado, casos de fraude de alcance mundial como aqueles ocorridos com as empresas Enron e Worldcom nos Estados Unidos da América (EUA) em 2002,

    Read More

  • Conducting security audits using COBIT® 5, ISO 27001:2013 and the NIST Cibersecurity framework

    Conducting security audits using COBIT® 5, ISO 27001:2013 and the NIST Cibersecurity framework

    For ISACA®, a hot topic in the area of auditing is cyber security. In fact, it is difficult not to find every week a news related to cyber attacks, theft of corporate information or new viruses that threaten the standard operations of organizations.

    Read More

  • Introduction to IT Audit

    Introduction to IT Audit

    According to the IIA (The Institute of Internal Auditors) (1), there are several types of audits that can be performed; an audit can be financial, operational (SOC 1, 2, and 3), integrated (SAS-94), compliance, administrative, and information systems; the latter being the focus of this text.

    Read More