405
Appendix:
Understanding the Sarbanes-Oxley Act
(1)
The remediation plan will prioritize recovery efforts in the
following order:
(a) Accounting system and data
(b) Payroll system and data
(c) Stock administration system and data
(d) Systems to support regulatory and development activities
(e) Systems to support research activities
(f) Systems to support corporate and general computing needs
(2) The remediation plan will include estimated timelines and costs.
(3) Each affected department will determine testing procedures
and acceptance criteria for the recovered operations, and is
responsible for testing recovered operations and accepting or
rejecting them.
d) The CEO is responsible for approving the remediation plan and ensuring
that appropriate resources are made available for carrying it out.
e) The head of IT will update the CEO and affected departments of the
status of the remediation efforts on a regular basis until the remediation
is complete.
6)
ATTACHMENTS
a) Attachment IT-002-A: Hardware list and configurations
b) Attachment IT-002-B: Software license list
c) Attachment IT-002-C: Backup and off-site tape storage
Server Maintenance
GENERIC COMPANY, INC.
IT Documentation
TITLE: Network Server Maintenance
Procedure #:
IT-003 V3
Effective Date:
12/1/09
Issued by:
IT Department
Page Number:
1 of 2
1)
PURPOSE
a) To define Generic's procedure for performing regular maintenance on all
network servers and to document any problems or observations that may
arise in between regular maintenance visits.