You are on page 1of 2

Area Domain Objective ID Objective Practice ID Practice Name Activity Grupo de

trabajo
alejandra stiwar

total puntos
Management Deliver, Service DSS04 Managed DSS04.02 Maintain business 4. Determine the conditions and owners of key decisions that 6 (Mónica
and Support Continuity resilience. will cause the continuity plans to be invoked. Daniela)

1 3 2 6
Management Deliver, Service DSS04 Managed DSS04.02 Maintain business 5. Assess the likelihood of threats that could cause loss of 6 (Mónica
and Support Continuity resilience. business continuity. Identify measures that will reduce the Daniela)
likelihood and impact through improved prevention and
increased resilience.
3 2 3 8
Management Deliver, Service DSS04 Managed DSS04.03 Develop and 4. Develop and maintain operational BCPs and DRPs that 6 (Mónica
and Support Continuity implement a business contain the procedures to be followed to enable continued Daniela)
continuity response. operation of critical business processes and/or temporary
processing arrangements. Include links to plans of outsourced
service providers. 0 3 3 6
Management Deliver, Service DSS04 Managed DSS04.05 Review, maintain and 1. On a regular basis, review the continuity plans and 6 (Mónica
and Support Continuity improve the capability against any assumptions made and current business Daniela)
continuity plans. operational and strategic objectives.

0 3 1 4
Management Deliver, Service DSS04 Managed DSS04.07 Manage backup 4. Ensure that systems, applications, data and documentation 6 (Mónica
and Support Continuity arrangements. maintained or processed by third parties are adequately Daniela)
backed up or otherwise secured. Consider requiring return of
backups from third parties. Consider escrow or deposit
arrangements. 0 3 2 5
Management Monitor, MEA01 Managed MEA01.01 Establish a monitoring 6. Periodically validate the approach used and identify new or 6 (Mónica
Evaluate and Performance and approach. changed stakeholders, requirements and resources. Daniela)
Assess Conformance
Monitoring
3 2 3 8
Management Monitor, MEA01 Managed MEA01.02 Set performance and 3. Communicate proposed changes to performance and 6 (Mónica
Evaluate and Performance and conformance targets. conformance targets and tolerances (relating to metrics) with Daniela)
Assess Conformance key due diligence stakeholders (e.g., legal, audit, HR, ethics,
Monitoring compliance, finance).
0 3 3 6

1
Area Domain Objective ID Objective Practice ID Practice Name Activity Grupo de
trabajo
Management Monitor, MEA01 Managed MEA01.03 Collect and process 3. Aggregate data to support measurement of agreed metrics. 6 (Mónica
Evaluate and Performance and performance and Daniela)
Assess Conformance conformance data.
Monitoring
3 0 0 3
Management Monitor, MEA01 Managed MEA01.03 Collect and process 5. Use suitable tools and systems for the processing and 6 (Mónica
Evaluate and Performance and performance and analysis of data. Daniela)
Assess Conformance conformance data.
Monitoring
3 1 1 5
Management Monitor, MEA01 Managed MEA01.04 Analyze and report 6. Analyze trends in performance and compliance and take 6 (Mónica
Evaluate and Performance and performance. appropriate action. Daniela)
Assess Conformance
Monitoring
1 3 1 5
Management Monitor, MEA04 Managed MEA04.05 Define the work 1. Define detailed steps for collecting and evaluating 6 (Mónica
Evaluate and Assurance program for the information from management controls within scope. Focus on Daniela)
Assess assurance initiative. assessing the definition and application of good practices,
related to control design, and achievement of control
objectives, related to control effectiveness. 3 2 0 5
Management Monitor, MEA04 Managed MEA04.05 Define the work 3. Understand all stakeholders and their interests. 6 (Mónica
Evaluate and Assurance program for the Daniela)
Assess assurance initiative.

0 0 3 3
Management Monitor, MEA04 Managed MEA04.06 Execute the assurance 4. Ask the control owner whether the responsibilities for the 6 (Mónica
Evaluate and Assurance initiative, focusing on governance component and overall accountability have been Daniela)
Assess design effectiveness. assigned. Confirm the response. Test whether accountability
and responsibilities are understood and accepted. Verify that
the right skills and the necessary resources are available. 2 1 0 3
Management Monitor, MEA04 Managed MEA04.06 Execute the assurance 5. Reconsider the balance of prevention vs. detection and 6 (Mónica
Evaluate and Assurance initiative, focusing on correction types of management control activities. Daniela)
Assess design effectiveness.

0 3 2 5
Management Monitor, MEA04 Managed MEA04.07 Execute the assurance 1. Assess whether the expected outcomes for each of the 6 (Mónica
Evaluate and Assurance initiative, focusing on management controls in scope are achieved. That is, assess the Daniela)
Assess operating effectiveness of the management control (control
effectiveness. effectiveness).
2 2 1 5

You might also like