YOUR FEEDBACK
More on the Software Assembly Question - Do Design Patterns Help?
Yanic wrote: Hi, > UML and MDA are being changed to be more data and doc...
SOA World Conference
Virtualization Conference
$50 Savings Expire May 23, 2008... – Register Today!


2007 West
GOLD SPONSORS:
Active Endpoints
Your SOA Needs BPEL for Orchestration
BEA
Virtualized SOA: Adaptive Infrastructure for Demanding Applications
Nexaweb
Overcoming Bandwidth Challenges with Nexaweb
TIBCO
What is Service Virtualization?
SILVER SPONSORS:
WSO2
Using Web Services Technologies and FOSS Solutions
Click For 2007 East
Event Webcasts

2008 East
PLATINUM SPONSORS:
Appcelerator
Think Fast: Accelerate AJAX Development with Appcelerator
GOLD SPONSORS:
DreamFace Interactive
The Ultimate Framework for Creating Personalized Web 2.0 Mashups
ICEsoft
AJAX and Social Computing for the Enterprise
Kaazing
Enterprise Comet: Real–Time, Real–Time, or Real–Time Web 2.0?
Nexaweb
Now Playing: Desktop Apps in the Browser!
Sun
jMaki as an AJAX Mashup Framework
POWER PANELS:
The Business Value
of RIAs
What Lies Beyond AJAX?
KEYNOTES:
Douglas Crockford
Can We Fix the Web?
Anthony Franco
2008: The Year of the RIA
Click For 2007 Event Webcasts
SYS-CON.TV
TODAY'S TOP SOA & WEBSERVICES LINKS


Sarbanes-Oxley Will Change Your Life

Digg This!

This column may require a little patience on your part, but I think it will be worth it in the end. Let's start with a simple premise: within a year, nearly everyone reading these words will be deeply impacted by Sarbanes-Oxley, yet many have never heard of it. The purpose of this note is to offer you a preview of what's to come. In other words, a wake-up call.

First of all, who or what is Sarbanes-Oxley? Simply put, the Sarbanes-Oxley Act (SOA) is the federal law that was put in place last year in response to the scandals at Enron, MCI, and other large public corporations. The law contains a wide variety of provisions around improving corporate ethical behavior, including assurances that companies' financial statements accurately reflect the state of their business. And it puts teeth into those provisions with heavy fines and prison for senior executives if their companies do not comply.

Why, then, is this month's guest editorial in XML-Journal about federal legislation? After all, this is a technology magazine. Why isn't this a technical editorial about the Semantic Web, RSS, or InfoPath? Well, sometimes it's better to come out from under the technology, and remember why we build this stuff. Usually, the reason is to serve a business, quite often an American public company. If you work for such a company, then you need to understand the implications of Sarbanes-Oxley, because its provisions apply to every publicly traded American company.

Remember Y2K, and the pervasive impact it had on all of our lives just a few years ago? Sarbanes-Oxley is every bit as pervasive as Y2K, but it has no end. Every system that impacts your company's financial statements - even indirectly - will be impacted by Sarbanes-Oxley, presumably forever.

This brings us to the burning question: "How does Sarbanes-Oxley affect me?" After all, this magazine targets XML technologists, and Sarbanes-Oxley is just about reporting accurate financial numbers, right? Actually, no. And it's here that the subject gets interesting.

What is XML all about? Integration of course. XML provides a platform-independent mechanism to integrate disparate, heterogeneous computer systems. What is Sarbanes-Oxley compliance all about? Well, it's about the integration of information across large, heterogeneous organizations in a highly controlled manner. Sound familiar?

Consider this. A key provision of the Sarbanes-Oxley Act (a provision known as Section 404) is that companies must (a) document every business process that impacts their financial reports, and (b) put systematic controls into place that ensure that these business processes produce accurate data. Sounds simple, right? All you have to do is document every single process in your global, multibillion dollar company, and then put controls in place to make sure that the processes execute flawlessly. And if you get it wrong, you can go to jail. As you can imagine, companies are scrambling right now. And matters are only made worse by the deadline for compliance, which for most companies is 2004.

So how will these controls be implemented? I thought you'd never ask.

Many business process controls are being implemented today with manual solutions, such as spreadsheet-based data consolidation, checklist procedures, and other similar solutions. Given the time pressures of Sarbanes-Oxley, and the enormity of the task, there is simply no alternative to these manual, one-off answers. But how long will these manual controls be allowed to exist? After all, like nearly all manual systems, they will be expensive to implement and monitor, prone to failure, and - most important - they simply will not scale well. Remember that these are controls that must cross organizational boundaries, diverse geographies, and heterogeneous systems.

I believe it is self-evident that the CFOs and corporate auditors who today are driving the implementation of mostly manual Sarbanes-Oxley controls will soon turn to the CIOs, seeking cost reduction, better automation and quality control, and scalable solutions. To whom will the CIOs turn? To you. They will look to the integrators; the architects and technologists with the ability to leverage a platform-independent mechanism that can implement enterprise-wide business processes and controls. They will look to you to be the agent of change. Are you ready?

About Andrew Astor
Andy Astor is co-founder, president and CEO of EnterpriseDB. Prior to EDB, he was a vice president at webMethods, Inc., where he was responsible for technical marketing, corporate acquisition integration and standards leadership and evangelism. While at webMethods, he was elected twice to the Board of Directors of the Web Services Interoperability Organization (WS-I), and he served as that organization's Marketing Chair. A frequent speaker at industry conferences, Andy is also on the International Advisory Board for SOA Web Services Journal.

XML JOURNAL LATEST STORIES . . .
3rd International Virtualization Conference & Expo: Themes & Topics
From Application Virtualization to Xen, a round-up of the virtualization themes & topics being discussed in NYC June 23-24, 2008 by the world-class speaker faculty at the 3rd International Virtualization Conference & Expo being held by SYS-CON Events in The Roosevelt Hotel, in midtown
EDI to XML: A Practical Approach
While EDI transactions account for most worldwide commercial activity, XML-based alternatives are beginning to gain traction. According to Forrester Research, stateful XML, stateless XML, and even flat file exchanges are all projected to grow at a faster rate than EDI over the next few
Red Hat Named "Platinum Sponsor" of Virtualization Conference & Expo
Red Hat is a trusted open source provider. Red Hat offers enterprise customers a long-term plan for building infrastructures on the quality and innovation of open source. Combining open source operating system platform, Red Hat Enterprise Linux, together with applications, management
JustSystems Contributes Key XBRL Rendering Technology to Financial Community
JustSystems announced that it is contributing intellectual property rights for its invention of eXtensible Business Reporting Language (XBRL) rendering technologies to XBRL International, the standards body responsible for the oversight of the XBRL specification. The invention, known a
JustSystems Launches Campaign for XBRL Success
JustSystems announced its campaign to help organizations adopt XBRL (eXtensible Business Reporting Language), the XML-based standard for communicating financial and business information. In related news, JustSystems also announced that it has contributed intellectual property rights of
SUBSCRIBE TO THE WORLD'S MOST POWERFUL NEWSLETTERS
SUBSCRIBE TO OUR RSS FEEDS & GET YOUR SYS-CON NEWS LIVE!
Click to Add our RSS Feeds to the Service of Your Choice:
Google Reader or Homepage Add to My Yahoo! Subscribe with Bloglines Subscribe in NewsGator Online
myFeedster Add to My AOL Subscribe in Rojo Add 'Hugg' to Newsburst from CNET News.com Kinja Digest View Additional SYS-CON Feeds
Publish Your Article! Please send it to editorial(at)sys-con.com!

Advertise on this site! Contact advertising(at)sys-con.com! 201 802-3021

SYS-CON FEATURED WHITEPAPERS


ADS BY GOOGLE
BREAKING XML NEWS
Woodstream Selects EXTOL Business Integrator to Improve Business Processes, Customer Collaboration and Internal Integration
Woodstream, providers of pet, lawn-care and animal-friendly brands such as Perky-Pet,