Saturday, December 31, 2016

DCarsonCPA Risk across 3 Classes of Risks in the Economy and Financials

DCarsonCPA Risk across 3 Classes of Risks in the Economy and Financials our introduction into the lines of Teamwork here after 1 years research into space now being more formally applied here to specifically channel to sector project needs as an element of Our Strong Civics Outreach program for 2017:


DCarsonCPA CSEC and ITGRC

In Draft AND Shared for Expediency to needs on Communication to where we can help on workflows:

This is our own unique view based on Sector Research and cross economy research of challenges on what we will cal in this blog CSEC and ITGRC (add IT GRCC) to encompass Cyber Security, IT Governance Risk and Controls AND IT Governance, Risk, Controls and Compliance to catch the broad line of related points. We map in from a view point that goes well beyond CPA lines since we have 7+ years of deep lines on Entity and Cross Sector Domestic and Global Research on an evolutionary path of Economist / Quant and Legal Tradjectory where the optimal point of mastery is to connect Quant/ Economist and Legal Skills to achieve the best potential position from which to help with broad scope awareness (and narrow focused channels into) the lines of  Policy, Entity and Community points where we can help on Teamwork for improvements. We call it Strong Civics as an element of a broader line to help on the Economy and Financials through sector by sector needs. This is only our view and pertains to no broader assertion for any CPA or the Industry just our view from experience on deep research specifically on channels of IT, Technology and Cyber Security and where those points meet Policy, Entity and Community needs across channels of  Data, Financial, Communications and Cyber Security which supports entity and cross sector teamwork in the Economy and Financials. It is our way to help on teamwork an to strongly suggest that the unique skills we have acquired to work on cross functional analysis can help on needs on deep levels in the Economy and Financials where we meet on Teamwork through CFO, PM, BA and emergent Quant / Economist / Legal and Tech Sector skills to see the key points on value and the evident needs on cross functional teamwork to narrow the holes on Risk + Cyber approach in the Aggregate and on Focused points through a journey of continual inquiry and improvement to insight and value to return to teamwork in sector. That noted as a caveat you may read on in context that this is not a CPA view but a hybrid view of sorts to key needs. More from Our Lines in context at www.dcarsoncpa.com .

DCarsonCPA CSEC and ITGRC:

This is a formalization of 2 years analysis we already have in the Cyber Security Space as a component of IT GRC - IT Governance, Risk Management and Controls (or Compliance depending on Audience and focus or ITGRCC as catch all looking forward).

Time was when Auditors felt sufficient to entrust controls and cyber security to delegated lines of specialists which still is very much a case in practice and placed to an elite few of CPAs and Auditors overall who are defined as CISAs which denotes specific skills, talents and abilities in the direction of Audit and Cyber Security under strong standards of  ISACA / COBIT 5  one does not necessarily need to be a CPA to be a CISA so the rarer potential of both or broader potential of either is a existing possibility. CPA work flows being defined in relation to financials and value, audit, controls and other key points of value added services focused on the protection of Financial Data on Conventional lines of Entities and not specifically in the Cyber Domain (where CPA's more commonly would rely upon the work of specialists like a CISA in process of Financial Audits scoped to include Internal Controls and Technology).

CISA has been the strong standard on Cyber Audit for many years.

From my perspective the CISA is an important part of needs in the Cyber Security Domain and part of a broader bridge which undoubtedly will see increasing needs for CPA's and related practitioners to become more involved in teamwork directed towards helping on Entity and Cross Sector Risks all to relevant in the Cyber Domain and impacting not solely Financials but also Data, Communications and critical entity and economy pathways through technology.

....work in progress.... more to follow in this point over next few days as we map into new years project lines ...

During the interim ....map to next post in this blog for broad lines.