Wednesday, November 24, 2010

What Sarbanes-Oxley, Lawyers and Auditors Really Mean for IT

A lot of IT folks routinely invoke a higher authority as justification of why we have to do something or a policy can’t be changed.  This “higher authority” is usually included in one of 3 tried and true excuses:

    * We have to do that to comply with Sarbanes-Oxley.
    * The lawyers say we have to do that.
    * The auditors make us do that.

