Joseph D'Alessandro, Cynthia D. Tanner, Bonnie W. Morris, T. Menzies
{"title":"持续的合规保证是可能的吗?","authors":"Joseph D'Alessandro, Cynthia D. Tanner, Bonnie W. Morris, T. Menzies","doi":"10.1109/ITNG.2009.270","DOIUrl":null,"url":null,"abstract":"The increased threat of legal sanctions or fines for failure to comply with laws and regulations make it imperative that auditors assess the level of compliance with information sharing policies and regulations in a timely manner. Embedding a monitoring mechanism, such as our Continuous Compliance Assurance (CCA) module, into a technology solution for inter-organizational information sharing, if not too costly in processing, would ensure appropriately timed compliance enforcement. A test-bed, which incorporated our CCA module, was built to capture realistic processing statistics. Through this test-bed, we have observed a limiting factor imposed by XML based processing. The feasibility of CCA rests on the reduction of these limiting factors. Accordingly we present two approaches to mitigate these issues.","PeriodicalId":347761,"journal":{"name":"2009 Sixth International Conference on Information Technology: New Generations","volume":"38 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-04-27","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Is Continuous Compliance Assurance Possible?\",\"authors\":\"Joseph D'Alessandro, Cynthia D. Tanner, Bonnie W. Morris, T. Menzies\",\"doi\":\"10.1109/ITNG.2009.270\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The increased threat of legal sanctions or fines for failure to comply with laws and regulations make it imperative that auditors assess the level of compliance with information sharing policies and regulations in a timely manner. Embedding a monitoring mechanism, such as our Continuous Compliance Assurance (CCA) module, into a technology solution for inter-organizational information sharing, if not too costly in processing, would ensure appropriately timed compliance enforcement. A test-bed, which incorporated our CCA module, was built to capture realistic processing statistics. Through this test-bed, we have observed a limiting factor imposed by XML based processing. The feasibility of CCA rests on the reduction of these limiting factors. Accordingly we present two approaches to mitigate these issues.\",\"PeriodicalId\":347761,\"journal\":{\"name\":\"2009 Sixth International Conference on Information Technology: New Generations\",\"volume\":\"38 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2009-04-27\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2009 Sixth International Conference on Information Technology: New Generations\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ITNG.2009.270\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 Sixth International Conference on Information Technology: New Generations","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ITNG.2009.270","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
The increased threat of legal sanctions or fines for failure to comply with laws and regulations make it imperative that auditors assess the level of compliance with information sharing policies and regulations in a timely manner. Embedding a monitoring mechanism, such as our Continuous Compliance Assurance (CCA) module, into a technology solution for inter-organizational information sharing, if not too costly in processing, would ensure appropriately timed compliance enforcement. A test-bed, which incorporated our CCA module, was built to capture realistic processing statistics. Through this test-bed, we have observed a limiting factor imposed by XML based processing. The feasibility of CCA rests on the reduction of these limiting factors. Accordingly we present two approaches to mitigate these issues.