Please note…

You are now on the ey.com United Kingdom site. To return to the ey.com United States site or other country site, click on the United Kingdom (English) link on the upper right of this page, and select your preferred country site.

x
Skip to main navigation

IT Risk and Assurance - Ernst & Young - United Kingdom

IT Risk and Assurance

 

IT is a significant factor in driving business success. However, organisations face challenges in rationalising IT costs across the organisation, managing their overall IT risk position and delivering value from IT. Many organisations also struggle to align IT with the business strategy and implement effective IT governance. Additional pressures arise from increased regulation and compliance requirements.

Alongside these challenges, business risk is continually evolving, particularly as a result of recent economic turmoil. The IT risk environment mirrors this. Many organisations struggle to establish and maintain an effective IT risk management process and embed this within an organisation’s broader, strategic business risk management framework.

We help clients address the challenge of managing IT risks in line with their business strategy. We also help our clients and their stakeholders gain confidence that their organisation’s key IT-related risks are identified, understood and managed effectively.


 

IT security, industrial control systems, IT risk

Bringing IT into the fold: Lessons in enhancing industrial control system security

It's time to adjust adjust strategies to defend against the risks associated with a rapidly evolving operational technology environment that is increasingly vulnerable to cyber attacks.

Privacy trends 2012: The case for growing accountability

Privacy trends 2012: The case for growing accountability

Our annual publication looks at privacy trends and the issues our clients face across industries and geographies, and discovered a common theme – accountability.

Insights on IT risk  Mobile device security

Insights on IT risk: Mobile device security

Looks at the risks related to mobile device platforms and methods to assess an organisation’s exposure to risks.

Sunset over clouds

Building trust: Information security in a borderless world

What are the information security measures companies should take in today's hyper-connected, borderless world? Find the answers in our report.

Empty rope bridge

Insights on IT risk: Countering cyber attacks

Traditional methods are not enough 764K, March 2011 to protect against ‘Advanced Persistent Threat’ attacks. Organisations should consider measures to detect and react to attacks. 

A scenic and empty road with tunnel

Top 11 trends in data privacy for 2011

What keeps data security professionals up at night? Read the 11 trends we found in the high stakes game of privacy protection

Hands holding a publication

Software compliance without tears: Monitoring customers’ software usage in a complex world

Our software asset management survey (640K, February 2011) reveals that most vendors and customers are actively addressing the issue of licence compliance, but also identifies some gaps on both sides.

Seedling growing in moss

Insights on IT risk - Effective software asset management: How to reap the benefits

In the global push for improved performance, effective software asset management (4.7Mb January 2011) can make a significantly positive impact by helping to reduce licence-related expenses, better manage compliance-related risk, and even improve overall operating efficiencies.

Sand dunes with fence

2010 Global information security survey

In a world of anytime, anywhere access to information, traditional security efforts are not enough. Our survey (1.19Mb November 2010) explores the risks and obligations you face to keep information secure.

Woman rowing canoe, from above

Insights on IT risk: A risk-based approach to segregation of duties

With systems that automate key business processes becoming more and more complex, many companies are struggling with the basic internal control of segregation of duties. Download Insights on IT risk: A risk-based approach to segregation of duties (813K, May 2010)

Tributaries of a river

Insights on IT risk: Countering cyber attacks

This article explains how companies worldwide are being targeted by "Advanced Persistent Threat" attacks aimed at stealing intellectual property and corporate secrets. Discusses how to put in place measures to detect and react to successful attacks. Download Insights on IT risk: Countering cyber attacks (687K, April 2010)

Sunbeam slanting through forest

ISAE 3402 and internal audit

This article, first published in the February 2010 issue of Internal Auditing and Business Risk magazine, outlines the likely impact on internal audit departments of the move from SAS 70 to the new ISAE 3402 standard in 2011. Download the article (375K, February 2010)

Laura Bueno

Contacts

Top privacy issues for 2010

Every organisation that handles personal information – whether consumers, customers, employees or business partners – faces many obligations related to privacy and protection of information.
Back to top