11.09

From Arizona Citizen Voice
Revision as of 20:17, 27 August 2026 by Neil thibodaux (talk | contribs) (→Election Anomalies)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Control Activities

Principle 11 - Design General Control Activities over Information Technology

Attribute 11.09 - General control activities may be applied at the entity, system, and business process levels. General control activities include the following:

  • Security management - A separate process, addressing all components of internal control, for responding to risks related to information security.
  • Logical and physical access - Control activities that restrict access to information technology to authorized users.
  • Configuration management - Control activities to develop and maintain the operating and security features of information technology and control changes to their configuration.
  • Segregation of duties - Separating control activity responsibilities related to information technology to prevent individuals from controlling all critical stages of a process or overriding automated processes.
  • Contingency planning - Control activities that maintain the continuity of operations and rely on information technology, including contingency plans for recovery after a disruption of service.


>>>Navigational Buttons<<<


Jamie's Story

No examples are available to illustrate governance gaps for this attribute.

Election Anomalies

Arizona Senate Allegations

Arizona Senate allegations arose from MC's failure to recognize the Arizona Senates Oversight Role. These allegations were investigated and reported on by the Arizona Attorney General's Office 2020 General Election Investigation. This Green Book attribute applies given the Arizona Senate's concern that the 2020 election related to the integrity of the data.