-
Magaly Perez posted a new activity comment 7 years, 8 months ago
Thanks for the input Sean. I thought the article’s highlights of the recommendations were pretty interesting on the different ways to address/approach risk. Although, some of them are a little contradiciting of each other, I think they provide an accurate assessment on how to perceive risk in a different manner. Like you mentioned, risk are hard…[Read more]
-
Magaly Perez wrote a new post on the site MIS5208 Spring 2017 7 years, 8 months ago
The article for this week is called, “Why You’re Doing Cybersecurity Risk Measurement Wrong”. As ITACS students we learn that assessing risk aren’t always completely straightforward and are more complex than th […]
-
Magaly Perez posted a new activity comment 7 years, 8 months ago
Hey David, I enjoyed your post and was not aware things like that even happened. I’m sure plenty of people fall victim to such a scam. Email has most definitely changed the game for scammers. Email has provided the convenience and anonymity, along with the capability for easily contacting thousands of people at once, which enables scammers to w…[Read more]
-
Magaly Perez wrote a new post on the site MIS5208 Spring 2017 7 years, 8 months ago
My name is Magaly Perez. Everyone calls me Laly for short. Currently, I am the Vice President of Temple’s ISACA Chapter. I am from Mechanicsburg, PA which is located near Harrisburg. I went to Temple University f […]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
Alex, I agree with your post. An auditor must possess a strong ethical foundation and avoid any temptation to let things pass. As auditors we must use our sound judgement, while doing an audit to get down to the root of the risk and vulnerabilities. Maintaining our credibility is essential as it speaks for our work. Communication skills are a…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
4. SAP’s GRC module may be important and effective, but can the cost of GRC be justified? Explain
The objective of GRC is to help a company efficiently put policies and controls in place to address all its compliance obligations while at the same time gathering information that helps proactively run the business. Done properly, GRC creates a…[Read more] -
Magaly Perez posted a new activity comment 7 years, 10 months ago
3. A person’s character is very crucial in the audit industry. How would you build your reputation and maintain a good ethical character in this industry?
Strong technical and ethical characteristics are fundamental to audit success. These are not news to anyone and should be considered a starting point set of characteristics that is e…[Read more] -
Magaly Perez posted a new activity comment 7 years, 10 months ago
2. In the Real World Control Failures we’ve reviewed, describe the character of the leaders involved. Is it a root of the control failures?
As we learned about the leaders involved within the real control failures, their characters seemed to be coy, eager, likeable and in positions of power. Some real world control failures were due to lack o…[Read more] -
Magaly Perez posted a new activity comment 7 years, 10 months ago
1. How much of automated controls should be desired? Is it beneficial to consider controls at the initial design phase or controls are introduced as and when needs arise?
I think the amount desired for automated controls depends on the business itself such as size, industry and the type of control. However, generally speaking, I think automatic…[Read more] -
Magaly Perez posted a new activity comment 7 years, 10 months ago
Hey Sean,
Yes, I think if ERP systems were able to cater in that aspect of real-time monitoring, would most definitely set them apart. As we know, technology is constantly evolving and by being able to offer that service ,would get gobbled up by businesses. Not only would they be able to run more efficient on all realms, such as making sure…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
Sean, like you, I agree that regulatory compliance should be of the utmost importance to an organization. I think organizations have much more to lose then by simply skimping out on ensuring the adequacy of those controls. As you mentioned, they will face more damage as a result; not only, monetary loss but reputational loss as well.
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
Said, great post. I agree the customization of the ERP system would allow them to be more competitive, as each organization may need different services. I decided to look up the benefits of web-deployed ERP systems vs. on premise development on advantages and disadvantages.
-On-Premise ERP Systems: are most customization and offer more…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
2.(Updated Nov 30) The ERP systems market is very competitive. What should SAP and other ERP systems providers be focusing on to make their systems more competitive in the future?
As technology evolves, so must ERP system providers. I believe in order for SAP and other ERP system providers to make their systems more competitive in the future…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
4.What aspect of compliance should an organization put the most effort into ensuring their controls are adequate? What factors about an organization (it’s industry, profit / non-profit, international, …) would drive this answer?
I believe, the aspect of compliance an organization should put the most effort into ensuring their controls are ade…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
3. When is the cost of implementing a compliance control higher than the benefit obtained? What should an organization do to ensure efficiency and profitability?
I believe the cost of implementing a compliance control is higher than the benefit obtained when the controls are not standardized. According to ISACA, “the use of manual controls, o…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 10 months ago
SAP Question 1: Is SAP universally compliant world wide? Since they cater to different regions of the world; or is it just complaint with their targeted region in which their ERP system is stationed?
-
Magaly Perez posted a new activity comment 7 years, 11 months ago
Great explanation Wenlin. I just wanted to add that training is also another effective manner in which a company can do in order to ensure their efficiency and profitability while implementing compliant controls. Proper training including training on the code of conduct, and basic components of the compliance and ethics program.Effective lines of…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 11 months ago
I concur with Sean. Standardization is vital when it comes to helping cut the control cost associated with compliance. However, there might not be a one-size-fits-all approach. Companies must align itself along side the compliance control implementation in order to succeed and be efficient. I really like how Sean mentioned the, “business being…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 11 months ago
Great post Sean. I would just like to add that I think the auditors objectivity is a key aspect when an auditor is maintaining their independence. Their mental attitude must be aligned with their profession. While, performing auditing engagements, the internal auditor should have an impartial, unbiased attitude and avoid conflict of interest…[Read more]
-
Magaly Perez posted a new activity comment 7 years, 11 months ago
2.When is the cost of implementing a compliance control higher than the benefit obtained? What should an organization do to ensure efficiency and profitability?
The cost of regulatory compliance is very large burden that can drain the resources of even the most robust businesses. Although compliance is very expensive, if it is implemented…[Read more]
- Load More