Showing posts with label IT. Show all posts
Showing posts with label IT. Show all posts

Tuesday, July 13, 2010

Sarbanes-Oxley Act 2002

Objectives:
  • Protect investors by improving the accuracy and reliability of corporate disclosures made pursuant to the securities laws
  • Creating new standards for corporate accountability
  • Creating new penalties for acts of wrongdoing
  • Formalizing and strengthening internal checks and balances within corporations
  • Instituting new levels of control and sign-off designed to
  • Ensuring full disclosure in financial reporting
  • Ensuring full transparency corporate governance is transactions

Scope:
  • All public companies in the USA
  • International companies that have registered equity or debt securities with the Securities and Exchange Commission
  • Accounting firms providing auditing services

Main Architects:
  • Senator Paul Sarbanes
  • Representative Michael Oxley

Effective Date:
Signed on the law by President Gorge W. Bush on July 30, 2002.

Structure:
Divided into 11 sections called titles. Sections that are more pertinent to compliance:
  • Sarbanes-Oxley 302
  • Sarbanes-Oxley 401
  • Sarbanes-Oxley 404
  • Sarbanes-Oxley 409
  • Sarbanes-Oxley 802

Audit Requirements:
The Act requires all financial reports to include an internal control report.

Penalties:
  • Up to $1 million and imprisonment for up to ten years
  • Up to $5 million and imprisonment for up to twenty years for willful wrongdoing

Role of IT:
  • IT security is important under Sarbanes-Oxley act because IT being the backbone of all modern-day industries, it is in the core of the accuracy, reliability and integrity of that reporting. It is responsible for protection of sensitive user information too
  • Software design standards COSO (Committee of Sponsoring Organizations of the Tradeway Commission, 1985)and COBIT (Control Objectives for Information and related Technology framework, 1986)
  • SarbOxPro program offers standard libraries and interface

Some Online Resources:

Monday, October 1, 2007

What is HL7?

  • Full form of HL7: Health Level Seven
  • Accredited standards to share clinical and administrative data
  • Promoted by Health Level Seven Inc. (USA) Ann Arbor, MI (USA)
  • Freely available without licenses or license fees 
  • Copyrighted for accuracy and integrity
  • HL7 message format: human readable ASCII
  • HL7 message  -> consists of segments
  • Over 120 different segment types are available
  • Segments are separated by line feeds (\r or 0x0D)
  • A segment begins with a three letter name such as MSH
  • Segment examples: MSH (Message Header), PID (Patient Info)
  • Segment -> consists composites (or fields)
  • Composites are separated by | characters (or \F\)
  • Composites may contain other composites (sub-composites or sub-fields)
  • Sub-fields are separated by ^ characters (or \S\)
  • Sub-composites may contain other composites (sub-sub-composites or sub-sub-fields)
  • Sub-sub-fields are separated by & characters (or \T\)
  • HL7 website: http://www.hl7.org/
  • HL7 on Wikipedia: http://en.wikipedia.org/wiki/HL7
  • HL7 glossary of terms: http://www.hl7.org/ehr/documents/public/documents/Glossary%20of%20terms.pdf