ScienceDirect® Home Skip Main Navigation Links
You have guest access to ScienceDirect. Find out more.
 
Home
Browse
My Settings
Alerts
Help
 Quick Search
 Search tips (Opens new window)
    Clear all fields    
Computers & Security
Volume 24, Issue 8, November 2005, Pages 604-613
 
Font Size: Decrease Font Size  Increase Font Size
 Abstract - selected
Article
Purchase PDF (204 K)

 
 
 
Related Articles in ScienceDirect
View More Related Articles
 
View Record in Scopus
 
doi:10.1016/j.cose.2005.08.004    How to Cite or Link Using DOI (Opens New Window)
Copyright © 2005 Elsevier Ltd All rights reserved.

Real-time information integrity = system integrity + data integrity + continuous assurances

Stephen Flowerday1, E-mail The Corresponding Author and Rossouw von SolmsCorresponding Author Contact Information, E-mail The Corresponding Author

Department of Information Technology, Faculty of Engineering, Nelson Mandela Metropolitan University, P.O. Box 77000, Port Elizabeth 6031, South Africa

Available online 14 October 2005.

Purchase the full-text article



References and further reading may be available for this article. To view references and further reading you must purchase this article.

Abstract

A majority of companies today are totally dependent on their information assets, in most cases stored, processed and communicated within information systems in digital format. These information systems are enabled by modern information and communication technologies. These technologies are exposed to a continuously increasing set of risks. Yet, management and stakeholders continuously make important business decisions on information produced in real-time from these information systems. This information is unaccompanied by objective assurances as the current auditing procedures provide assurances months later. Therefore, risk management, including a system of internal controls, has become paramount to ensure the information's integrity. A system of internal controls, including IT controls at its core, help limit uncertainty and mitigate the risks to an acceptable level. Auditors play an increasingly important role in providing independent assurances that the information system's infrastructure and data maintain their integrities. These assurances include proposed new methods such as continuous auditing for assurance on demand.

Keywords: Information integrity; Internal controls; Risk management; Information security management; Assurance on demand

Article Outline

Introduction
Information
Information assets
Information security
Information integrity
Risk management
Threats, vulnerabilities and probabilities
Risk indicators
Internal controls
Overview of internal controls
IT controls
Control standards, frameworks, models and guidelines
Auditing
Continuous auditing
Conclusion
References
Vitae




Computers & Security
Volume 24, Issue 8, November 2005, Pages 604-613
 
Home
Browse
My Settings
Alerts
Help
Elsevier.com (Opens new window)
About ScienceDirect  |  Contact Us  |  Information for Advertisers  |  Terms & Conditions  |  Privacy Policy
Copyright © 2008 Elsevier B.V. All rights reserved. ScienceDirect® is a registered trademark of Elsevier B.V.