|
KonTraG
|
Please note, that the Knowledge Base isn't translated to english completely at the moment. You will still find some german texts - we are translating permanently the outstanding parts! Thank you for understanding! |
Compliance |
| |
|
|
|
Compliance requirements can come from different directions and different stakeholders. Decisions caused by compliance are not driven by economic reasons rather than the costs of taking part in this business respectively what would be the costs of not being compliant.
|
Regulatory Compliance |
Regulatory compliance is the fulfillment of laws, regulations and contractual conditions. Not going compliant to legal requirements can end up in loss of money, higher taxes or even custiodial sentence. There can be pressure by legal authorities but also non governmental organisations and banks via such regulations. Internationale bodies put pressure by setting technical standards.
Compliance for technical standards and laws like DSG, KontraG, SigG. (austrian and german laws), regulatoions like CobiT, Basel II, and valid contracts are subsumed in Regulatory Compliance.
|
Partner Compliance |
Banks also have a supervising functions and are making great demands like Basel II. But also important partners which you cooperate may put pressure on you with their decisions.
|
Customer Compliance |
Customer are interested in interoperablility by conformity to technical standards. Key Accounts may put high pressure by threat of sanctions.
|
Competitive Compliance |
Lack of compliance to standards or to key customers can result in lowered competitiveness.
|
compliance in security standards |
Compliance is part of each security standard. In ISO/IEC 17799 / ISO 27002, chapter 12 is about Compliance, focusing on regulatory compliance, the security policy as well as technical compliance and system audit. In CobiT Compliance is process 8 in Planning and Organisation.
|
|
|