MindGrove Training Consultancy


HOME


Photographic image of World cities

ABOUT US

Professional Bodies

British Computer Society

Institute of Risk Management

International Federation of Accountants

IIA Inc

IIA-UK & Ireland

Ethics and International Standards for Professional Practice

IIA Code

IIA Australia

The Information Commissioner's Office Data protection and personal data matters

The Chartered Institute of Public Finance and Accountancy

The Information Systems Audit and Control Association (ISACA)

The Information Systems Security Association

A not-for-profit, international organization of information security professionals and practitioners

Institute of Chartered Secretaries and Administrators

Global voice on governance and regulatory issues in the private, public and not-for-profit sectors

The Association for Project Management

ITAudit

IT audit arm of IIA Inc


GOVERNANCE and RISK MANAGEMENT– EUROPE

The Committee of Sponsoring Organisations of the Treadway Commission (COSO)

Organisation dedicated to improving the quality of financial reporting through ethics, effective internal controls, and corporate governance

European Corporate Governance Institute and Codes of Practice for all countries

OECD - Organisation for Economic Cooperation and Development

International Corporate Governance issues, including the OECD Guidelines on Corporate Governance of State-Owned Enterprises

The Combined Code on Corporate Governance and the Smith Report

Review of the role of Non-Executive Directors (DTI)

IT Governance Institute

Guidance on current and future issues pertaining to IT governance, control and assurance

The Turnbull Report / The Cadbury Report / Smith and Higgs reviews

DTI links to post-Enron initiatives

Good Governance Standard for Public Services

From the Office of Public Management

Institute of Risk Management – Risk Management Standard


AUDIT and REPORTING

Financial Reporting Council

Links to Accounting Practices Board, Auditing Practices Board and others

Audit Commission - Code of Audit Practice 2005 - Local Government

Audit Commission - Code of Audit Practice 2005 - Local NHS bodies


The ENTERPRISE

Review of Civil Procurement in Central Government

Gershon Treasury Enterprise and Productivity

Serious Fraud Office

Details of high profile frauds


LEGISLATION – UK/EUROPE

Computer Misuse Act 1990

Computer abuse

Consumer Protection (Distance Selling) Regulations 2000

Convention for the Protection of Human Rights - Europe

Human Rights and the Council of Europe, read in conjunction with UK Human Rights Act

Copyright and Patents Act 1988

Software protection

Data Protection Act 1998

Personal data and personal & sensitive data

Data Protection Act and Monitoring in the Workplace (pdf)

Electronic Communications Act 2000

Digital signatures

European Data Protection Legislation

Freedom of Information Act 2000

Health and Safety (Display Screen Equipment) Regulations 1992

Human Rights Act 1998

UK Human Rights Act

Local Government Act 2003

Update of local government legislation

Mobile Telephones (re-programming) Act 2002

Changing identity of devices

Privacy and Electronic (EC Directive) Regulations 2003

Legislation that assists privacy in the field of telecommunications

Proceeds of Crime Act 2002

Seizure of assets

Regulations of Investigatory Powers Act 2000

Right to investigate, legality of electronic interception

Sustainable Energy Act 2003

Annual publication of development of sustainable energy and reduction of pollution


PRIVACY at WORK or at HOME

Data Protection Act 1998

Personal data and personal & sensitive data

Data Protection Act and Monitoring in the Workplace (pdf)

Privacy and Electronic (EC Directive) Regulations 2003

OFCOM

The  independent regulator for UK communications

ICSTIS

The Independent Commission for the Supervision of Telephone Standards

The Information Commissioner's Office

Mail Preference Service

Block unwanted mail

Telephone Preference Service

Block unwanted telephone calls

FAX Preference Service

Block unwanted fax calls


STANDARDS and GUIDANCE

International Organization for Standardization (ISO)

International Standards Organisation – Standards of 2000 (pdf)

Internet Protocol Standards – RFCs

BS 7799 / ISO 17799

ISO 9000 / ISO 14000

IEEE Standards

Including LANs and wireless networks


PROJECTS and SERVICES

Automated Requirement Measurement (ARM) Tool

Software to determine whether a specification is clear and unambiguous

ITIL Self Assessment Spreadsheets

Best practice: IT Service Delivery / IT Service Support  (Excel Spreadsheets)

Office of Government Commerce

ITIL, Prince2, Programme Management and more . . .

OGC - Successful Delivery Toolkit  On line tools and suggestions including downloadable documents

Prince2 Templates Documentation for Project Management (zip archive: MS Word Format)

Change management - tools and strategies that assist change

Probabilistic project management software

Includes probability and risk outcome management within project planning

Project Management Glossary

A glossary of project management terms from the Association for Project Management

Software Development Process - V Model

Software development within German federal administration


AUDIT RESOURCES

AuditNet
Free audit work programmes

Audit Work Programmes

Audit programmes from Ireland

Audit presentations at the IIA-UK & Ireland

Slides by audit professionals on audit, risk and the management of audit departments

David Griffiths' website

With substantial Risk Based Internal Auditing resources and links

EuSpRIG

Spreadsheet errors? Try  a group promoting research in spreadsheet risk


IT SECURITY RESOURCES

Symantec

A listing of current virus threats

Phishing Scams

Site listing current examples of phishing scams

Federation against Software Theft

Compliance with the law on software piracy

Computer Emergency Response Team (CERT)

Centre of Internet security expertise

US CERT

United States Computer Emergency Response Team

Computer Incident Advisory Center (CIAC)

Recognised nationally and internationally for its contributions to the Internet community

Computer Security Resource Centre (CSRC)

A National Institute of Science and Technology (NIST) website

Internet Storm Centre

Gathers more than 3,000,000 intrusion detection log entries every day, isolates sites that are used for attacks, and provides authoritative data on the types of attacks that are being mounted against computers in various industries and regions around the globe

Vulnerability Disclosure List

All-vendor index of links to current software security issues

Security Focus

Vulnerability reporting

@Stake

Vulnerability reporting


PENETRATION TEST RESOURCES

Glossary

A comprehensive glossary of terms from the Finnish University of OULU

Web servers

A site that provides penetration test documentation and tools

Tips

Security, penetration testing and hacking tips for network administrators

Dedicated resource

Microsoft SQL server security


BUSINESS and LEARNING RELATED RESOURCES

IS Modeler

Demonstration version of low cost Process Modelling Tool

Public Domain Spreadsheet Templates

Including IT Risk, Balanced Scorecard, general Risk Analysis

Risk Management Database

A public domain implementation of a risk assessment database for software development

XML

Find out more about extensible mark-up language through these on-line resources

JAVA

Find out about the basics through these on-line tutorials

 

 


TRAINING


CONSULTANCY


RESOURCES


>> Useful Links >>

Tools and Aids

Members' Page


CLIENTS


CONTACT US


 

 

Copyright 2008 MindGrove Ltd.

Call us on +44 (0)1925 732 757

All rights reserved.
to discuss your requirements