Assess Your Organization's Information Governance using the Generally Accepted Recordkeeping ® Principles September, 2012 1.

Slides:



Advertisements
Similar presentations
The Impact of Auditing on Records Management Risk and Compliance Susan B. Whitmire, CRM, FAI Manager, Enterprise Records and Information Management BlueCross.
Advertisements

Major Accident Prevention Policy (MAPP) and Safety Management System (SMS) in the Context of the Seveso II Directive.
Introduction to Records Management Policy
Welcome! Please sign in and take a seat at one of the front tables 1.
What is GARP®? GARP® is an Acronym for Generally Accepted Recordkeeping Principles ARMA understands that records must be.
Records Management for UW-Madison Employees – An Introduction UW-Madison Records Management UW-Archives & Records Management 2012 Photo courtesy of University.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco Confidential 14854_10_2008_c1 1 Holistic Approach to Information Security Greg Carter, Cisco Security.
SLIDE 1 Westbrook Technologies from Fortis: A Healthcare Solution for Medical Records, Billing and HIPAA.
IT Governance Infocom India Presentation December 6, 2006.
How a Large Company Used the Principles to Establish its Corporate Information Governance Robin Woolen, MBA, IGP President / Principal.
Effective Information Governance Legal Tech Asia Technology Summit March 3, 2014 Marilyn Bier, CEO ARMA International.
GRC SUMMIT 2013 Apr 30 - May 1, 2013 | Mandarin Oriental, Las Vegas, NV © MetricStream, Inc. |All Rights Reserved ENGAGE | INSPIRE | TRANSFORM GRC SUMMIT.
September 24, 2013 Nonprofit Essentials Institute for Public Engagement Governance: What Makes for Bad Board Governance.
TRAC / TDR ICPSR Trustworthy Digital Repositories.
1 Archive Access Audit Keys to Effective Compliance Lifecycle Management.
EDiscovery and Records Management. Records Management- Historical Perspective- Paper Historically- Paper was the “Corporate Memory” – a physical entity.
Sarbanes-Oxley Compliance Process Automation
Security Controls – What Works
Developing a Records & Information Retention & Disposition Program:
ISO 17799: Standard for Security Ellie Myler & George Broadbent, The Information Management Journal, Nov/Dec ‘06 Presented by Bhavana Reshaboina.
Information Management – Access and Privacy Monday, April 20, 2015 Nanaimo, BC Julie Luckevich, MLIS, CIAPP-P Eclaire Solutions Inc.
Author(s): David A. Wallace and Margaret Hedstrom, 2009 License: Unless otherwise noted, this material is made available under the terms of the Creative.
Financial structure, management, and IFRS Reporting Creating value for growth Presenter: John Robinson Partner.
Click to add text © 2010 IBM Corporation OpenPages Solution Overview Mark Dinning Principal Solutions Consultant.
Integrated IT Service Management
Electronic Discovery (eDiscovery) Chad Meyer & John Vyhlidal ConAgra Foods.
Pharmaceutical Regulatory and Compliance Congress and Best Practices Forum 21 CFR Part 11 Considerations November 14, 2002.
The Principles: How we incorporated them into our Business Process by Lawrie Barroner.
AIIM Presentation Selecting and Implementing A Records Management System June 5, 2008.
Class 14: Information Governance Jason R. Baron UMD Seminar on Ediscovery LBSC 708X/INFM 708X May 3, 2012.
© Copyright 2013 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. The New Information Governance.
MethodGXP The Solution for the Confusion.
The Evergreen, Background, Methodology and IT Service Management Model
Staff Structure Support HCCA Special Interest Group New Regulations: A Strategy for Implementation Sharon Schmid Vice President, Compliance and.
Compliance Presented by: Marty McNulty, ARMA Board Member.
Electronic Records Management: What Management Needs to Know May 2009.
Occupational Health and Safety
DAS: State Controller's Division1January 2010 Department of Administrative Services State Controller’s Division Updated January, 2010.
Principle of Protection By C’Les Jensema About ARMA International and the Generally Accepted Recordkeeping Principles® ARMA International (
STORAGE MANAGEMENT/ EXECUTIVE: Managing a Compliant Infrastructure Processes and Procedures Mike Casey Principal Analyst Contoural Inc.
Generally Accepted Recordkeeping Principles Generally Accepted Recordkeeping Principles ® Registered Trademark of ARMA International.
Environmental auditing
Chapter © 2009 Pearson Education, Inc. Publishing as Prentice Hall.
EDiscovery, Records Management and Records Retention.
ISO 9001:2008 to ISO 9001:2015 Summary of Changes
1.Summary of Needs Analysis 2.Summary of Action Plan 3.Systems Analysis between Microsoft SharePoint® and OpenText Content Server 4.System Recommendation.
Priscilla Emery President, ECM Scope.  What is Compliance?  What is GARP?  What is considered Best Practice in this area?  A Framework for Compliance.
Connecting the Dots A Practical Approach to Integrating Compliance, Risk and Quality Jody Ann Noon RN, JD Partner Health Care Regulatory Practice.
ERP For Payments Presented by: Greg Midtbo Oracle Corporation Industry Vice President Financial Services.
[Hayes, Dassen, Schilder and Wallage, Principles of Auditing An Introduction to ISAs, edition 2.1] © Pearson Education Limited 2007 Slide 7.1 Internal.
Example Incident Mgmt Initiation No recording of Incidents Users can approach different departments Solutions of previous incidents are not available.
Generally Accepted Recordkeeping Principles Generally Accepted Recordkeeping Principles ® Registered Trademark of ARMA International.
Generally Accepted Recordkeeping Principles: The Principle of Transparency Alaska Chapter of ARMA International Presented by: Tara Carey, ARMA Board Member.
11 Proposed A-16 Portfolio Metrics Lifecycle Management Workgroup Geospatial Line of Business For Preliminary Discussion FGDC Coordination Group (09/21/10)
John Weigelt, MEng, PEng, CISSP, CISM National Technology Officer Microsoft Canada November 2005 Fighting Fraud Through Data Governance.
Information Resource Stewardship A suggested approach for managing the critical information assets of the organization.
RIM Presentation Records & Info Management by Sandra M. Taggart.
Screening activities Mike E. Farrell James E. Bartlett and Ghislaine C.Y. Gillessen Munich, January 2014.
Compliance at the Crossroads: How can the Compliance Profession Move to the Second Generation? A Practical Approach to Integrating Compliance, Risk and.
GRC: Aligning Policy, Risk and Compliance
Information Security tools for records managers Frank Rankin.
Maximizing the Value of Information Information Governance As A Strategic Framework Presenter: Margaret Hermesmeyer, MLIS, IGP, CRM Division Chief Information.
Trailblazer.us.com Lessons Learned using the IG Maturity Model Maura Dunn, CRM 1.
SECRRA and SARA Updates March 4,
Pipeline Safety Management Systems
UW-Madison Guidelines for Managing the Records of Departing Employees*
Asset Management Accountability Framework
Proactive Information Management and eDiscovery
RECORDS AND INFORMATION
Computer System Validation
Presentation transcript:

Assess Your Organization's Information Governance using the Generally Accepted Recordkeeping ® Principles September,

Presenting Fred Pulzello, CRM Vice President, Information Governance Archive Systems, Inc. Past Treasurer of ARMA International Co-creator of the Generally Accepted Recordkeeping Principles ® 2 About ARMA International and the Generally Accepted Recordkeeping Principles ® ARMA International ( is a not-for-profit professional association and the authority on managing records and information. Formed in 1955, ARMA International is the oldest and largest association for the information management profession with a current international membership of more than 10,000. It provides education, publications, and information on the efficient maintenance, retrieval, and preservation of vital information created in public and private organizations in all sectors of the economy. It also publishes Information Management magazine, and the Generally Accepted Recordkeeping Principles ® More information can be found at

Principles 3 “As to methods there may be a million and then some, but principles are few. The man who grasps principles can successfully select his own methods. The man who tries methods, ignoring principles, is sure to have trouble.” Ralph Waldo Emerson

4 Principles based

Failures of Compliance 5 “There have been a lot of emphasis on compliant record keeping systems over the years, with the emphasis perhaps on those organizations who have failed, rather than those who do have a compliant system.” Information Overload Issue 6: Information Management Compliant Records Management System, Feb 2003

6 Arthur Anderson

Compliance considerations  Government –NARA –FOIA  Financial –Dodd-Frank Act –SEC  Pharmaceutical –HIPAA –FDA 21 CFR Part 11 for electronic records keeping 7

Need to have consistent governance  Policies need to be consistent regardless of media 8

Where to Start?  Perform Generally Accepted Recordkeeping Principles ® Assessment  Current State  Gap Analysis  Future State  Perform Detailed Assessment  People  Process  Technology  Perform Risk Analysis  Identify  Quantify  Prioritize 9

10 Generally Accepted Recordkeeping Principles ®

COMPLIANCE AVAILABILITY INTEGRITY TRANSPARENCY RETENTION PROTECTION GOOD BUSINESS PRACTICES ACCOUNTABILITY DISPOSITION Objective Standards Principles used to support effective recordkeeping within an organization. 11

ATIPCARDATIPCARD accountability transparency integrity protection compliance availability retention disposition Each principle:  implies certain rules of behavior  dictates certain controls  carries oversight requirements  carries recordkeeping requirements  carries audit implications  carries continuous improvement implications Generally Accepted Recordkeeping Principles ®

Information Governance Maturity Model Maturity Level Color Status 1 Sub-standard RED 2 In Development ORANGE 3 Essential AMBER 4 Proactive BLUE 5 Transformational GREEN 13

14 Detailed Assessment

Assessment Process Governance Streamline Policies And Procedures Streamline Policies And Procedures Setup Planning Assess Current Policies and Procedures Evaluate against Requirements Determine Future State Strategic Roadmap Generally Accepted Recordkeeping Principles ® Tools & Technology Enhance Current Tools – Install New Tools Enhance Current Tools – Install New Tools Infrastructure Update Infrastructure Update Infrastructure Regulatory Preparedness, Efficient Information Management, and Improved ROI 15

Deep Dive Analysis  Governance  Policy  Compliance  Organization  Business requirements  Technology  ROI 16

17 Risk Analysis

18

19 Assessment Tool

Assessment-Basic  Basic Package:  1 organizational assessment  1-5 respondents  Access to your data for one year, renewable each year  Compare against your previous organizational assessments with each purchase  Assessment reports provide your GARP® score by principle, overall GARP® score, and individual responses  Ideal for:  Small organizations  Assessing an individual department, location, or division  Proving program needs to management 20

Assessment - Premium  Premium Package:  Unlimited organizational assessments per year  Unlimited respondents in multiple configurations based on your needs  Compare against your previous organizational assessments  Ongoing access to your reports while your one-year subscription is active  Assessment reports provide your GARP® score by principle, overall GARP® score, and individual responses  Industry baseline data (Coming Soon!)  Ideal for:  Large organizations  Organizations needing flexible deployment options  Continual assessment to show program improvement and ROI 21

Assessment Reporting 22

Baseline and Average Score 23

Average Score by Principle 24

Dashboard Reporting 25

Dashboard Reporting 26

Dashboard Reporting 27

Dashboard Reporting 28

How Archive Systems Can Help 29

Holistic Approach to Records Management  Changing the way the world manages documents  Building the bridge between paper and electronic records  Compliant solutions at all stages of the information lifecycle  Modular consulting approach 30

Strategic Consulting: A.A.R.P.  Advisory  Assessment  Remediation  Production 31

Advisory 32 Assessment Remediation Production

Archive Metrics – Main Screen

Archive Metrics – Lifecycle Graphs

Audience Questions? Slide 35 Thank You!