posted on Monday, July 31, 2006 4:16 PM
by
Jonathan Hodgson
SOX? BASEL II? Regulatory Compliance Demystified
Anyone working in IT for finance companies can't have missed the changes in the last few years from Sarbanes-Oxley and other regulatory compliance.
But often the developers don't really get a clear picture of why and what it means for them, so this article "Regulatory Compliance Demystified: An Introduction to Compliance for Developers" on MSDN aims to explain those points.
The major acts get a summary of the legislation and the process steps required, ie.confidentiality, availability, integrity, access controls, auditing, logging and change management. Well worth a read.
In a similar vain, as more and more companies use SharePoint for document and project sharing, new features such as Auditing in MOSS 2007 are a very welcome addition, including the programatic access via SPAudit. Also there is a whitepaper on Excel 2007 regulatory compliance and PwC whitepaper on spreadsheets in general.
Don't forget other presentations from the Microsoft Financial Developers Conference are online.