Services
Our services combine technology expertise, industry knowledge, and managerial acumen to help clients manage their technology risks and maximize return on their IT investments through mature governance and control processes. Solutions include:
- IT Governance Frameworks & Process Maturity - COBIT, Val IT, ITIL
- Strategic Alignment between IT and Business Objectives
- Risk Management and Assessment
- Regulatory Compliance: Sarbanes-Oxley, GLBA, HIPPA, PCI, etc.
- Managing outsourcing / off-shoring engagements
- Ensuring Value Delivery of technology investments and resource allocation
- Serving as interface between a client's IT organization and its audit entities
Using a holistic and integrated methodology that addresses both information and physical security concerns, IntelliGRACS Group prescribes a risk-based approach to protecting the confidentiality, integrity, and availability of information. Services include:
- CSO/CISO Services
- Security Strategy creation in alignment with business objectives
- Security Program creation, oversight, and management
- Policy, Procedures, and Security Awareness content creation
- Conduct gap analysis against ISO27001 standards, required regulations, and policies
- Risk assessment - processes, data privacy, locations, controls, environmental, operations
- Business Continuity and Disaster Recovery Planning
The contribution of IT audit (particularly from specialists with a combination of deep technical skills and industry knowledge) is critical to the quality, efficiency, and effectiveness of the audit function. IntelliGRACS Group helps clients develop and sustain world-class IT audit capabilities. Services include:
- IT Audit Strategy & Planning, a risk-based approach to audit planning
- IT Audit Co-sourcing or Outsourcing of IT Audit functions
- Preparing organizations for audits of IT infrastructure, Risk, BCP/DR, and Security Programs
- Writing controls, testing requirements, and remediation planning
IntelliGRACS Group delivers high quality, practical training to IT audit and information security professionals. Our course offerings are information-packed and assurance-focused. Courses include:
- Certification Boot Camps: CISSP, CISA, CISM, and CGEIT
- Hands-on courses in Risk Assessment, Security Program development, or IT Governance
- Private, on-site training is available based on the needs of your organization.
- Customized security awareness training can be created to help ensure your user community understands their security related responsibilities to the firm.