Skip to content

Ease IT Compliance with Industry Control Framework

Question: 
Is there a commonly accepted IT control framework in the industry that maps to key regulatory requirements on which the bank can standardize?
Answer: 

The BITS Shared Assessment Program provides a comprehensive IT and 3rd party control assessment framework that maps to leading industry and regulatory requirements pertaining to IT security, privacy, and 3rd party risk management. The program can be used to evaluate and report on both internal and external 3rd party IT environments utilizing one common control framework based on BITS Shared Assessments. The program hasthe added benefit of being able to share the now commonly accepted results across organizations as needed. It goes a long way in removing the internal burden of creating and maintaining a common IT control framework that is up to date and accepted by both the regulators and within the industry. In adopting the program the bank should consider a tool that can simplify, summarize, and risk score the volumes of data points that are required as part of the BITS Shared Assessments process.

________________________
To get started visit the BITS Shared Assessments site at http://www.sharedassessments.org/.

Vendor: 

First published on 04/13/2009

Filed under: 

Search Topics