Home > Information Security News > SEBI prescribes CISA audits for mutual fund players
Information Security News:
EMAIL THIS

SEBI prescribes CISA audits for mutual fund players

By SearchSecurity.in Staff
01 Oct 2009 | SearchSecurity.in

Enterprise IT news roundup
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

According to a recent circular from the Indian market regulator security exchange board of India (SEBI), mutual fund companies should conduct regular systems audits by an independent CISA/CISM qualified or equivalent auditor. Certified information systems auditor (CISA) and certified information security manager (CISM) designations are globally respected information systems (IS) audit certifications from ISACA.

The circular further advises mutual fund organizations to conduct systems audit once in two years. Such system audit reports and compliance status should also be approved by the mutual fund company's trustees.

This is a welcome step by SEBI, considering the Indian financial sector's high dependence on information technology. The circular recommends that the systems audit should be comprehensive, encompassing various aspects such as audit of systems and processes related to integration of front office systems with the back office. The audit should also cover fund accounting systems for calculation of net asset values, financial accounting and reporting system for the asset management company, unit-holder administration and servicing systems for customer service, funds flow process, system processes for meeting regulatory requirements, prudential investment limits, and access rights to systems interfaces.

The systems audit report/findings along with trustee comments should be communicated to SEBI. For the financial year April 2008 - March 2010, the systems audit should be completed by September 30, 2010, the circular recommends.



Tags: Information security certifications and professional trainingBusiness compliance managementEnterprise risk management strategiesRisk Management StrategiesVIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google



RELATED CONTENT
Information security certifications and professional training
Applying the ISO 27005 risk management standard
Microsoft extends SDL program, adds Agile development template
New ISO 31000 risk management standard receives good early reviews
ISACA's risk management certification makes its entry
An information security career: What does it take?
IT (Amendment) Act, 2008 has information security market on toes
CISO career 101: Chief Information Security Officer route basics
Benefits of ISO 27001 and ISO 27002 certification for your enterprise
How to use Internet security threat reports
Despite recession, information security certification pay continues to climb

Business compliance management
Information rights management helps L&T protect its knowhow
Voice data security risks on the rise, say experts
Firewall audit tools aid compliance
Interest in data leakage protection, event log management rises
Improving regulatory compliance management through log analysis, SIEM
Applying the ISO 27005 risk management standard
Fraud risk management is key to avoid Wipro-like incidents
Security awareness is the key... cultivate employee loyalty
Jim Reavis on cloud computing security and regulatory compliance
The TCS Website hack: Don't let your company join the list

Enterprise risk management strategies
Clientless SSL VPN vulnerability and Web browser protection
Information rights management helps L&T protect its knowhow
Cloud Security Alliance releases top cloud computing security threats
Voice data security risks on the rise, say experts
Firewall audit tools aid compliance
Interest in data leakage protection, event log management rises
Improving regulatory compliance management through log analysis, SIEM
Applying the ISO 27005 risk management standard
Zeus Trojan continues reign infecting 74,000 PCs in global botnet
Fraud risk management is key to avoid Wipro-like incidents

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
knowledge process outsourcing (KPO)  (SearchSecurityIN.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

HomeNewsTopicsITKnowledge ExchangeTipsMultimediaWhite Papers
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2009 - 2010, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts