E-Commerce - COSO and COBIT Are Comparable Frameworks

This article will help you to understand some similaritiesThe domains of COBIT are:
and differences between two frameworks: COSO- Planning and organizing
and COBIT. Some basic knowledge about these two- Acquisition and implementation
networks is required especially for E-Commerce.- Mange IT investment
COSO and COBIT are comparable frameworks,- Delivery and support
COSO's approach is more broad-based, fewer- Monitoring and evaluation.
complexes, without so much technical issues andCOBIT focuses on IT components, which are process
COBIT is more comprehensive, process-orientated,orientated. Moreover, the COBIT contains the system
risk, control needs, and it relates more to technicalof development, operation, delivery, and implementation.
issues. COBIT covers quality and security requirementsCOBIT helps strengthens assessment, understanding
such as effectiveness, efficiency, integrity, availability,and exercise of appropriate internal controls. COBIT
compliance, confidentiality and reliability of information.also, provides a good framework for risk management
These are the foundations for the control objectivesand improves communication among management,
of COBIT.users and auditors regarding IT governance.
As recognized by the COSO agenda, the process ofAccordingly, COSO focuses on monitoring and
internal control comprises of five components. Theseevaluation, which is also one of the COBIT's domains.
make up for a highly competent framework forTherefore, COSO and COBIT build together a strong
investigating and evaluating the system of internalassessment of IT based systems and processes.
control that is put to use in a business. TheseFor example, the company is implementing a new
components are stated below:system. Therefore, the business can take an
- "Control Environment, this deals with setting theadvantage of COBIT and COSO. In this case, COBIT
character of a business and influencing the controlwill be very helpful to span the system on technology
awareness of its staff and it includes the honor, moralbased processes. CABIT would also help in
values, operating methods of the management,configuration of two different systems (new with an
system for assigning authority and the necessaryexisting accounting system). COSO would help to
procedures for organizing and developing the staff in aevaluate the financial part and risk. Moreover, the
business association.COSO also will review all accounting related aspects
- Risk assessment, which includes the detection andand the COBIT will help in technological integration and
examination of the risks that are most likely to pose ait also will help with delivery and support of the
threat to attaining desired objectives.implementation.
- Control Activities, these are the rules and regulationsThe combination of COSO and COBIT will be very
which assist in guaranteeing that the orders of thebeneficial for AFM Corporation. All analysis and
management are satisfactorily carried out.documentation of processes could be scoped by the
- Information and communication which are responsibleCOSO framework and all technological issues could
for all news related to the operation and finances etcbe reviewed in details by the COBIT framework.
of a business that helps in its smooth runningCOBIT would also help with the complexity of
- Monitoring of internal controls which points out anysoftware system. On the other hand, the COSO will
shortage in its quality making sure it is remedied so thesupport control activities and the COBIT will help in
system can be improved "(Bushman, 2007).detailed monitoring and evaluating.