InfoSTEP Knowledge Platforms
  Home      Company      Solutions      Partners      Support      Contact   
Stay ahead of the curve with Actionable Intelligence   
Business Intelligence, Performance Measurement, Corporate Governance, Sarbanes-Oxley Act Compliance


Solutions
Home >> Solutions >> Case Studies:


Documenting and Testing of IT Controls for Sarbanes Oxley Act Complinace

Case Study Brief:

Customer Profile:

  • Selectica is a provider of scalable software solutions to increase profit margin by simplifying, automating, and synchronizing opportunity-to-order business processes across multiple channels.
Business Challenge:
  • Meeting the legal requirements of Sarbanes Oxley Act of 2002.
InfoSTEP Solution:
  • InfoSTEP's professional services based solution for documenting, testing the IT processes and controls.
Customer Benefits:
  • Selectica is able to complete all the documentation, testing as required by its external auditors.


Detailed Case Study:

Problem Description

To meet its regulatory requirements, Selectica contracted InfoSTEP to document and test IT controls for meeting the Sarbanes Oxley compliance. The process started with performing a gap analysis of all IT activities in Selectica’s headquarters as well as its off shore development center in India, developing required process documentation and performing testing. Some of the specific tasks included for this are:

  • Performing interviews with all key employees of Selectica in US and in India
  • Identifying and generating a key IT process map under CobiT framework both for Financial Reporting Support Applications and IT infrastructure
  • Developing process documentation including flow-charts, narratives, risk control matrix, test plans and test procedures
  • Performing controls testing, developing remediation plans and retesting after remediation
  • Helping external auditors performing the tests

  • InfoSTEP Solution

  • Project Team setup and Project Management
  • Adapting the standard IT process catalogs based on CobiT framework
  • Interfacing with external ASP vendors for obtaining SAS 70 Type II audit reports
  • Periodic reviews with external auditors


    If you are interested to get further information, please contact: sales@infostep.com.

  •   © Website Terms & Conditions     Email:sales@infostep.com