“The professional association providing leadership in information systems and technologies.” What is the Value of IT Certification? John Boufford, I.S.P.,

Slides:



Advertisements
Similar presentations
Transparency and Domestic Regulation Mina Mashayekhi Division on International Trade UNCTAD.
Advertisements

29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL CONFERENCE OF DATA PROTECTION AND PRIVACY.
Enhancing ethical culture through ethical decision-making Ethics training.
IT Assurance A fantastic career choice! Presented by the PICPA’s IT Assurance Committee.
Professionalism in IT - the UK perspective Susie Kay BCS Director of Professionalism.
Using industry recognised qualifications to fill your skills gap Paul Turner FBCS an evolving framework for the future.
ICS 417: The ethics of ICT 4.2 The Ethics of Information and Communication Technologies (ICT) in Business by Simon Rogerson IMIS Journal May 1998.
Security and Personnel
Professional Behaviour
Ethics CS-480b Network Security Dick Steflik. ACM Code of Ethics This Code, consisting of 24 imperatives formulated as statements of personal responsibility,
Welcome! Internal Auditing CHAPTER 1. Definition Internal auditing is an independent, objective, assurance and consulting activity designed to add value.
Accredited Third Party Certification and Food Safety Management Systems Jill Hollingsworth, DVM Group Vice President Food Marketing Institute.
Y. Raghu Reddy Associate Professor Software Engineering Research Center IIIT Hyderabad Are you a Software Engineer OR Is it just your Designation ?
Chapter © 2009 Pearson Education, Inc. Publishing as Prentice Hall.
Chapter © 2009 Pearson Education, Inc. Publishing as Prentice Hall.
ISEB Qualifications an evolving framework for the future.
Chapter 7 Control and AIS Copyright © 2012 Pearson Education, Inc. publishing as Prentice Hall 7-1.
Presentation By: Chris Wade, P Eng. Finally … a best practice for selecting an engineering firm.
©Ian Sommerville 2004Software Engineering, 7th edition. Chapter 1 Slide 1 An Introduction to Software Engineering.
CSE 4482, 2009 Session 21 Personal Information Protection and Electronic Documents Act Payment Card Industry standard Web Trust Sys Trust.
© 2006 IBM Corporation Introduction to z/OS Security Lesson 9: Standards and Policies.
Masters in Research Administration Programs are All the Rage. What About My CRA? Thomas E. Wilson, MBA Assistant Vice President, Research Affairs Rush.
Professional Codes of Ethics Professionalism and Codes of Ethics.
Internal Auditing and Outsourcing
ISO Richard Welford CSR Asia © CSR Asia 2011.
CDU – School of Information Technology HIT241 Professional Practice… - Slide 1 IT Project Management ACS - Core Body of Knowledge In Australia in November.
“Putting the pieces together – as a community” December, 2014.
I.S.P. Value Proposition Societal Transition Committee Saturday, October 19, 2002.
Accounting 4570/5570 Chapter 15 International Auditing Issues.
Software Engineering Code of Ethics and Professional Practice Software Engineering II Spring 2008 References McConnell, S. and L. Tripp, “Professional.
Implementation Issues of Sarbanes-Oxley CASE Presentation September 23, 2004 By Denise Farnan.
©Ian Sommerville 2004Software Engineering, 7th edition. Chapter 1 Slide 1 Software Engineering The first lecture.
Roles and Responsibilities
Building an IT Profession for the 21 st Century Roger Johnson IFIP IP3 Representative.
“Canada’s Association of Information Technology (IT) Professionals.” IT Professionalism & the I.S.P. Designation.
Scandals (in the public and private sector)  Enron  Worldcom  Livent  Nortel  HRDC  Sponsorship Scandal.
State Alliance for e-Health Conference Meeting January 26, 2007.
+ Regulation and Compliance Summary “ Making Great Ideas Become Reality”
© 2010 The McGraw-Hill Companies, Inc. Managerial Accounting and the Business Environment Chapter 1.
1 Validation of non-formal and informal learning in Europe The challenging move from policy to practise Jens Bjornavold Rotterdam, 10 April 2014.
Going further together Building and Effective IT Profession Charles Hughes President British Computer Society IFIP Workshop 25 August 2006.
AAHRPP ACCREDITATION (Association for the Accreditation of Human Protection Programs)
Chapter 2 - Ethics for IT Professionals and IT Users1 Ethics for IT Professionals and IT Users 2 Chapter.
TEQSA The Tertiary Education Quality and Standards Agency.
1 The Privacy Impact Assessment Guidelines Guy Herriges Manager, Information and Privacy Office of the Corporate Chief Strategist, MBS November 2000.
CMC-Canada Media Kit CMC-Canada fosters excellence and integrity in the management consulting profession as a whole. CMC-CanadaCMC-Canada administers,
Going further together Professionalism in IT CREATING A 21 ST CENTURY PROFESSION TRANSFORMATIONAL GOVERNMENT 1 FEBRUARY 2007 Charles Hughes President
Institute of Internal Auditors New Zealand IIA NZ Global and Local Happenings.
Building on Our Core Values Building on Our Core Values © 2003 by the AICPA The Sarbanes-Oxley Act.
Challenges in Promoting RCR: Reflections from a Public Funder´s Perspective Secretariat on Responsible Conduct of Research [Canadian Institutes of Health.
Cloud Industry Forum Code of Practice: Differentiate yourself in a crowded market 27 April 2016, 13:00 GMT Presented by Jason Wyatt (Cloud Industry Forum)
Lecture 5 Control and AIS Copyright © 2012 Pearson Education 7-1.
Internal Audit Quality Assessment Guide
Shared Services and Third Party Assurance: Panel May 19, 2016.
© 2007 by Prentice HallManagement Information Systems, 10/e Raymond McLeod and George Schell 1 Information Auditing ► External auditors from outside the.
MS in IT Auditing, Cyber Security, and Risk Assessment
Getting to Know Internal Auditing
An Introduction to Software Engineering
Getting to Know Internal Auditing
Getting to Know Internal Auditing
Session 11 Other Assurance Services
Service Organization Control (SOC)
Professional Codes of Ethics
TRUST YOUR PORTFOLIO TO AN INVESTMENT EXPERT.
Getting to Know Internal Auditing
Code of Ethics - History
What is Interesting in the CCSP certification?
Certified Information Technology Professional (CITP) Credential
CS-480b Network Security Dick Steflik
CEng progression through the IOM3
Presentation transcript:

“The professional association providing leadership in information systems and technologies.” What is the Value of IT Certification? John Boufford, I.S.P., National President Guy Belleperche, I.S.P., CIPS Ottawa President January 29, 2007 Professional Practice in Computing (CSI2911) SITE, University of Ottawa

“The professional association providing leadership in information systems and technologies.” Agenda What is a Professional We Need Better Systems How Do We Get There CIPS Will Be Important in Making It Happen

“The professional association providing leadership in information systems and technologies.” Elements of an IT Professional Designation Database AdminSoftware Develop.Quality AssuranceIT AuditNetwork Mgmt. Other Project Mgmt.Service Mgmt. IT Security … Core IT Body of Knowledge Domain Knowledge Choice of Specializations Code of Ethics & Standards of Practice Legislation Professional Designation (I.S.P.)

“The professional association providing leadership in information systems and technologies.” Agenda What is Professional Certification We Need Better Systems How Do We Get There CIPS Will Be Important in Making It Happen

“The professional association providing leadership in information systems and technologies.” Business & Social Need for Better Systems Errors Need to Be Reduced Reliability Needs to Increase Security/Privacy Must Improve

“The professional association providing leadership in information systems and technologies.” Errors Need to Be Reduced Software failures illustrate importance of professionalism –The Hartwell Group identified 20 recent high profile glitches –61 + million people affected –$30 + million financial impacts –Non-quantifiable program impacts such as lost business, privacy, reputation, project delays, additional medical tests, etc. –Potential Life/Death impacts Failures can be broadly viewed as insufficient IT governance

“The professional association providing leadership in information systems and technologies.” IT Regulatory Compliance Regulatory Compliance –Sarbanes-Oxley (SOX) –C-SOX (Proposed) –Privacy Legislation All have an impact on IT –See following example

“The professional association providing leadership in information systems and technologies.” Catalyst for Projects Certification of Disclosure in Issuers' Annual and Interim Filings (DCAP) Multilateral Instrument Certification of Internal Controls over Financial Reporting (ICOFR) Multilateral Instrument AuditContinuous Disclosure CommitteesObligations Multilateral Instrument National Instrument Canadian PublicIndependence Rules Accountability Board CICA/Provincial Institutes' Rules of Profession Conduct CSA Auditor Oversight National Instrument Others Investor Confidence Rules Example: Regulatory Requirements

“The professional association providing leadership in information systems and technologies.” Infrastructure General Computer Controls General Application Controls Financial Reporting Underwriting Disbursements Treasury Other Level 2 General Computer Controls Change & Configuration Management Network Administration Security Administration Data Center Operations Database Administration O/S Administration Level 3 I.S. Projects Business Projects Automated Application Controls Data Validation, Edit Checks & Output Reconciliations Interface Controls End User Security General Application Controls System Development Change Control Data Recovery Database Management Programmer Security Impact to Enterprise IS Projects Level 1

“The professional association providing leadership in information systems and technologies.” Comments on Regulatory Compliance CIO Sign-off Before CEO Legal Implications Audits are “negative assurances” Audit practices will permeate all IT audits Certified Professionals Are Better Able to Provide the Process Assurances to Allow CIO Sign-off

“The professional association providing leadership in information systems and technologies.” How Do We Get There? Trusted IT Professionals Professionals Who Manage Risk Use of Proven Best Practices

“The professional association providing leadership in information systems and technologies.” Technical Competence is “Table Stakes” Trust –Trusted Competence Mastery of the Core BOK Professional Experience Best Practices –Trusted Intentions Code of Ethics Trusted IT Professionals

“The professional association providing leadership in information systems and technologies.” Professionalism Innovation and Creativity Accountability Knowledge Development About CIPS: Values

“The professional association providing leadership in information systems and technologies.” CIPS Addresses Business Issues By: Certifying/Recertifying individual practitioners Accrediting academic institutions Adopting standards of practice Advocating on behalf of the profession Offering professional development Working with other IT and engineering bodies Disciplining where appropriate

“The professional association providing leadership in information systems and technologies.” Certification: General Info Certification is not vendor specific About 1500 I.S.P. holders across Canada Provincially-administered National Standard –Recognized by statute in 6 provinces as a self-regulating profession –Canadian Information Processing Society of Ontario Act, 1998,c.Pr5 Mutual recognition with other countries

“The professional association providing leadership in information systems and technologies.” International Recognition –Mutual Recognition Agreements Harmonization of Professional Certifications GATS Negotiations

“The professional association providing leadership in information systems and technologies.” Computer Specialists Under General Agreement on Trade in Services (GATS) Canadian “Offer” for "Information and Communications Technology Professionals" Category Includes: –“A License Or Designation Equivalent To The Information Systems Professional - ISP Designation Obtained From The Canadian Information Processing Society Or From A Mutually Recognized Foreign Accreditation Body” Currently An Offer – Not A Commitment

“The professional association providing leadership in information systems and technologies.” Protection of the public Professional credibility Personal integrity and competence Enhanced customer confidence Enhanced professional profile Increased value to employer Certification: Goals

“The professional association providing leadership in information systems and technologies.” CIPS Will Be Important in Making This Happen Code of Ethics Body of Knowledge Best IT Practices Risk Management Standard

“The professional association providing leadership in information systems and technologies.” Code of Ethics Guiding Document for Professional Practice Widely Reviewed and Endorsed Standard for Discipline

“The professional association providing leadership in information systems and technologies.” The Ethical Imperatives I will place my client's interest above my own and nothing will be above the public interest. –I will fairly describe my level of competence and deliver to the claimed level of competence. –I will protect all private or confidential information that I obtain from clients or colleagues. –I will be impartial in giving advice and fully disclose any potential conflicts of interest. –I will work to advance my profession and actively support my professional colleagues.

“The professional association providing leadership in information systems and technologies.” Privacy Commissioner’s Comments “The Office of the Privacy Commissioner of Canada supports the work of IT professionals in setting a Code of Ethics for their profession. The leadership demonstrated by CIPS is to be applauded and emulated. By incorporating privacy protection as a core element of its ethical framework, CIPS not only demonstrates that IT professionals are an integral part of the value chain of their organizations by ensuring that systems – and the information assets they contain are protected against abuse and misuse;... By up-holding the highest standards and putting in place mechanisms for greater professional accountability, IT professionals, through their own ethical conduct and unique expertise, will become important architects of privacy protection in systems and applications.” Jennifer Stoddart -Privacy Commissioner

“The professional association providing leadership in information systems and technologies.” CIPS Will Be Important in Making This Happen Code of Ethics Body of Knowledge Best IT Practices Risk Management Standard

“The professional association providing leadership in information systems and technologies.” Body of Knowledge Adopted the BCS Syllabus Moving Towards to Body of Knowledge Similar to Computer Science Graduate –Not Necessarily Obtained in Degree Program –Alternate Paths to Demonstrate Mastery of BOK

“The professional association providing leadership in information systems and technologies.” CIPS Will Be Important in Making This Happen Code of Ethics Body of Knowledge Best IT Practices Risk Management Standard

“The professional association providing leadership in information systems and technologies.” Best IT Practices – The Future Adopting Best Practices that Will Provide More Rigour to IT Activities –Mandatory vs. Recommended vs. Best Practices –International Standards Linked to I.S.P. Professional Practice Requirements

“The professional association providing leadership in information systems and technologies.” CIPS Will Be Important in Making This Happen Code of Ethics Body of Knowledge Best IT Practices Risk Management Standard

“The professional association providing leadership in information systems and technologies.” Risk Management Standard Emerging Standard of Practice : –All professional assignments must begin with a risk assessment, and risk management must be practiced throughout professional assignments. –Approved in Principle By National Board in April 2006 –SOP Is Now Under Development

“The professional association providing leadership in information systems and technologies.” Summary Business Risks Are Ever-Present CIPS Helps Organizations Manage Risk –CIPS Offers The Only Professional IT Certification In Canada That Is Recognized By Statute –Professional Certification That Embodies Technical Competence AND Professionalism –Discipline –Accreditation Of Educational Institutions –Standards Of Practice Are Emerging –Leads To Highly Professional Workforce And Lower Business Risk Trusted Competence Trusted Intentions

“The professional association providing leadership in information systems and technologies.” “When you’re through changing… you’re through.” Will Rogers

“The professional association providing leadership in information systems and technologies”