- 1
- 0
- 约5.27万字
- 约 15页
- 2017-12-07 发布于浙江
- 举报
On the Risk Management and Auditing of SOA Based
Business Processes
Bart Orriens, Willem-Jan v/d Heuvel, and Mike Papazoglou
Dept. of Information Management, Tilburg University
PO Box 90153, 5000 LE Tilburg, The Netherlands
{b.orriens,wjheuvel,mikep}@uvt.nl
Abstract. SOA-enabled business processes stretch across many cooperating and
coordinated systems, possibly crossing organizational boundaries, and technolo-
gies like XML and Web services are used for making system-to-system interac-
tions commonplace. Business processes form the foundation for all organizations,
and as such, are impacted by industry regulations. This requires organizations to
review their business processes and ensure that they meet the compliance stan-
dards set forth in legislation. In this paper we sketch a SOA-based service risk
management and auditing methodology including a compliance enforcement and
verification system that assures verifiable business process compliance. This is
done on the basis of a knowledge-based system that allows integration of internal
control systems into business processes conform pre-defined compliance rules,
monitor both the normal process behavior and those of the control systems dur-
ing process execution, and log these behaviors to facilitate retrospective auditing.
1 Introduction
SOA is an integration framework for connecting loosely coupled software modules into
on-demand business processes. Business processes form the foundation for all organi-
zations, and as such, are impacted by industry regulations. Without explicit business
process definitions, flexible rule frameworks, and audit trails that provide for non-
repudiation, organizations face litigation risks and even criminal penalties. Co
您可能关注的文档
- (2006)Theory to Practice:Continuous Auditing Gains.pdf
- (2006)Towards Online Auditing,The database environment.doc
- (2006)Towards Online Auditing. The database environment.doc
- (2006)Using Electronic Audit Workpaper systems in Audit Practice:Task Analysis, Learning, and Resistance.pdf
- (2006)Using Transactional Analysis for Effective Fraud Detection.pdf
- (2006)信息时代审计的未来:持续审计.pdf
- (2007)A Field Investigation of Auditors’ Use of Brainstorming in the Consideration of Fraud.pdf
- (2007)A Review and Analysis of the Existing Research Streams in Continuous Auditing.pdf
- (2007)A Theoretical and Technical Model of an external Continuous Auditing System.pdf
- (2007)Achieving Sarbanes-Oxleys Compliance with XBRL-Based ERP and Continuous Auditing.pdf
- 小区绿化施工协议书.docx
- 墙面施工协议书.docx
- 1 古诗二首(课件)--2025-2026学年统编版语文二年级下册.pptx
- (2026春新版)部编版八年级道德与法治下册《3.1《公民基本权利》PPT课件.pptx
- (2026春新版)部编版八年级道德与法治下册《4.3《依法履行义务》PPT课件.pptx
- (2026春新版)部编版八年级道德与法治下册《6.2《按劳分配为主体、多种分配方式并存》PPT课件.pptx
- (2026春新版)部编版八年级道德与法治下册《6.1《公有制为主体、多种所有制经济共同发展》PPT课件.pptx
- 初三教学管理交流发言稿.docx
- 小学生课外阅读总结.docx
- 餐饮门店夜经济运营的社会责任报告(夜间贡献)撰写流程试题库及答案.doc
原创力文档

文档评论(0)