IT Risk and Assurance
IT is a significant factor in driving business success. However, organisations face challenges in rationalising IT costs across the organisation, managing their overall IT risk position and delivering value from IT. Many organisations also struggle to align IT with the business strategy and implement effective IT governance. Additional pressures arise from increased regulation and compliance requirements.
Alongside these challenges, business risk is continually evolving, particularly as a result of recent economic turmoil. The IT risk environment mirrors this. Many organisations struggle to establish and maintain an effective IT risk management process and embed this within an organisation’s broader, strategic business risk management framework.
We help clients address the challenge of managing IT risks in line with their business strategy. We also help our clients and their stakeholders gain confidence that their organisation’s key IT-related risks are identified, understood and managed effectively.

Bringing IT into the fold: Lessons in enhancing industrial control system security
It's time to adjust adjust strategies to defend against the risks associated with a rapidly evolving operational technology environment that is increasingly vulnerable to cyber attacks.

Privacy trends 2012: The case for growing accountability
Our annual publication looks at privacy trends and the issues our clients face across industries and geographies, and discovered a common theme – accountability.

Building trust: Information security in a borderless world
What are the information security measures companies should take in today's hyper-connected, borderless world? Find the answers in our report.

Insights on IT risk: Countering cyber attacks
Traditional methods are not enough 764K, March 2011 to protect against ‘Advanced Persistent Threat’ attacks. Organisations should consider measures to detect and react to attacks.

Software compliance without tears: Monitoring customers’ software usage in a complex world
Our software asset management survey (640K, February 2011) reveals that most vendors and customers are actively addressing the issue of licence compliance, but also identifies some gaps on both sides.

Insights on IT risk - Effective software asset management: How to reap the benefits
In the global push for improved performance, effective software asset management (4.7Mb January 2011) can make a significantly positive impact by helping to reduce licence-related expenses, better manage compliance-related risk, and even improve overall operating efficiencies.

2010 Global information security survey
In a world of anytime, anywhere access to information, traditional security efforts are not enough. Our survey (1.19Mb November 2010) explores the risks and obligations you face to keep information secure.

Insights on IT risk: A risk-based approach to segregation of duties
With systems that automate key business processes becoming more and more complex, many companies are struggling with the basic internal control of segregation of duties. Download Insights on IT risk: A risk-based approach to segregation of duties (813K, May 2010)

Insights on IT risk: Countering cyber attacks
This article explains how companies worldwide are being targeted by "Advanced Persistent Threat" attacks aimed at stealing intellectual property and corporate secrets. Discusses how to put in place measures to detect and react to successful attacks. Download Insights on IT risk: Countering cyber attacks (687K, April 2010)

ISAE 3402 and internal audit
This article, first published in the February 2010 issue of Internal Auditing and Business Risk magazine, outlines the likely impact on internal audit departments of the move from SAS 70 to the new ISAE 3402 standard in 2011. Download the article (375K, February 2010)