Transcription of TECHNOLOGY RISK MANAGEMENT GUIDELINES
{{id}} {{{paragraph}}}
Monetary Authority of Singapore TECHNOLOGY RISK MANAGEMENT GUIDELINES JUNE 2013 TECHNOLOGY RISK MANAGEMENT GUIDELINES JUNE 2013 MONETARY AUTHORITY OF SINGAPORE 2 TABLE OF CONTENTS 1 INTRODUCTION .. 4 2 APPLICABILITY OF THE 5 3 OVERSIGHT OF TECHNOLOGY risks BY BOARD OF DIRECTORS AND SENIOR MANAGEMENT .. 6 Roles and Responsibilities .. 6 IT Policies, standards and Procedures .. 6 People Selection Process .. 7 IT Security Awareness .. 7 4 TECHNOLOGY RISK MANAGEMENT FRAMEWORK .. 8 Information System Assets .. 8 Risk Identification .. 8 Risk Assessment .. 9 Risk Treatment .. 9 Risk Monitoring and Reporting ..10 5 MANAGEMENT OF IT OUTSOURCING risks ..11 Due Diligence ..11 Cloud Computing ..12 6 ACQUISITION AND DEVELOPMENT OF INFORMATION SYSTEMS ..14 IT Project MANAGEMENT ..14 Security Requirements and Testing ..14 Source Code Review ..15 End User Development ..16 7 IT SERVICE MANAGEMENT .
TECHNOLOGY RISK MANAGEMENT GUIDELINES JUNE 2013 MONETARY AUTHORITY OF SINGAPORE 7 3.2.3 Compliance processes should be implemented to verify that IT security standards and procedures are enforced. Follow-up processes should be
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}