Oracle FAQ | Your Portal to the Oracle Knowledge Grid |
![]() |
![]() |
Home -> Community -> Mailing Lists -> Oracle-L -> Re: Sorbanes Oxley for dummies? -- more questions
Not having read the book , but I, too, have a number of questions. My current employer, being NASDAQ listed, is also undergoing preparation for a SOX Audit in 2005.
At 01:27 AM Friday, Paul Drake wrote:
>Michael,
>
>Arup Nanda wrote a book covering HIPAA, covering auditing, FGA, VPD.
>Arup wrote a series of papers for OTN, here's one:
>http://www.oracle.com/technology/oramag/webcolumns/2003/techarticles/nanda_fga.html
>
>Sarb-Ox is so open to interpretation and implementation, that its best
>to check with your auditors as far as what policies they see as
>appropriate and how to implement them.
>
>audit_trail=true and "audit session" would be a great start, but
>sometimes you're better off doing nothing than a piecemeal and
>incomplete effort.
>
>Paul
Hemant K Chitale
http://web.singnet.com.sg/~hkchital
-- http://www.freelists.org/webpage/oracle-lReceived on Fri Jan 14 2005 - 08:48:20 CST
![]() |
![]() |