Shadow IT - Compliance Issues

Compliance Issues

It is a term used in IT for any application or transmission of data, relied upon for business processes, which is not under the jurisdiction of a centralized IT or IS department. The IT department did not develop it, or was not aware of it, and does not support it. This creates ‘unofficial’ and uncontrolled data flows, which makes it difficult to comply with the Sarbanes-Oxley Act (USA) and many other compliance-centric initiatives, such as:

  • Basel II (International Standards for Banking),
  • COBIT (Control Objectives for Information and related Technology),
  • FISMA (Federal Information Security Management Act of 2002),
  • GAAP (Generally Accepted Accounting Principles),
  • HIPAA (Health Insurance Portability and Accountability Act),
  • IFRS (International Financial Reporting Standards),
  • ITIL (Information Technology Infrastructure Library),
  • PCI DSS (Payment Card Industry Data Security Standard),
  • TQM (Total Quality Management), etc.

Read more about this topic:  Shadow IT

Famous quotes containing the words compliance and/or issues:

    I am not of the opinion generally entertained in this country [England], that man lives by Greek and Latin alone; that is, by knowing a great many words of two dead languages, which nobody living knows perfectly, and which are of no use in the common intercourse of life. Useful knowledge, in my opinion, consists of modern languages, history, and geography; some Latin may be thrown into the bargain, in compliance with custom, and for closet amusement.
    Philip Dormer Stanhope, 4th Earl Chesterfield (1694–1773)

    The hard truth is that what may be acceptable in elite culture may not be acceptable in mass culture, that tastes which pose only innocent ethical issues as the property of a minority become corrupting when they become more established. Taste is context, and the context has changed.
    Susan Sontag (b. 1933)