Dergiler / BDDK Bankacılık ve Finansal Piyasalar Dergisi / 2007 / Cilt: 1 - Sayı: 2
Operasyonel Risk Yönetimi için Bütünleştirilmiş Bilgi Teknolojileri Kontrol Listesi
- Sayfa
- 49–75
- DOI
- —
Abstract
This study addresses the issue of the Information Technology (IT) Governance frameworks and standards that respond to different levels of operational risks, especiallythose caused by the information systems and technology infrastructure. A requirement analysis regarding Basel II is conducted, a gap analysis between the InformationControl Models (ICMs) is performed, and the aggregated IT checklist for Operational Risk Management (ORM) is proposed by mapping the control objectives in ICMs tothe operational risk categories described in Basel II as loss event types. The validity and reliability of the study is based on the focus group assessment of the mappings.