COSO, COBIT, service management, and major external compliance regimes.
This chapter explains the governance and compliance frameworks that shape how organizations manage technology risk. ISC questions in this area usually turn on knowing which framework or regulatory lens best fits the situation.