You are on page 1of 6

IT RISKS &

CONTROLS
Turato, Ella Mae B.
Types of risks in IT system
 Physical threats
 Electronic threats
 Technical failures
 Infrastructure failures
 Human error
How to manage IT risks?
 the type of threats
affecting your business
 the assets that may be at
risks
 the ways of securing your
IT systems
INTERNAL CONTROL
 control environment
 risk assessment
 control activities
 information and
communication
 monitoring.
Quality Control Standards
 Quality standards are defined as documents that
provide requirements, specifications to ensure that materials,
products, processes, and services are fit for their purpose.

Topic: Standard:
Quality Management ISO 9000
ISO 9001
Auditing ISO 19011
Environmental Management ISO 14000ISO 14001
Risk Management ISO 31011
Social Responsibility ISO 26000
Sampling by Attributes Z1.4
Sampling by Variables Z1.9
Food Safety ISO 22000
Documenting IT Controls
 Identifying Controls

 Flowcharts 
 Narrative Descriptions 
 Internal Control Questionnaires

You might also like