Risks, controls and governance associated with internet of things technologies on accounting information

被引:0
|
作者
van Niekerk, Anja [1 ]
Rudman, Riaan [1 ]
机构
[1] Stellenbosch Univ, Sch Accountancy, Stellenbosch, South Africa
关键词
Internet of things; safeguards; controls; risks; corporate governance; IT governance; INJECTION ATTACKS; SECURITY; FRAMEWORK; PRIVACY; ARCHITECTURE; WIRELESS; BEHAVIOR;
D O I
暂无
中图分类号
F8 [财政、金融];
学科分类号
0202 ;
摘要
Adopting Internet of Things (IoT) as part of a business's operations could generate value for a business through data generation and integration, as well as enhanced information quality, by gathering information in real-time through sensor technologies embedded in uniquely identifiable physical or virtual objects. In order for a business to enhance its information capabilities, they may be quick to adopt IoT, without fully understanding its enabling technologies and associated risks. The objective of this paper is to identify the risks financial information faces when implementing IoT technologies in accounting and auditing environments in a business. It is imperative that financial information retain its characteristics of validity, accuracy, completeness and timeliness when IoT is deployed in a business. The study also recommends appropriate controls which can be implemented to mitigate the risks. A systematic literature review was conducted to define IoT and to acquire an understanding of the enabling technologies of IoT. In order to identify the risks underlying the technologies enabling IoT comprehensively, it was necessary to select a governance framework which could be utilised as a benchmark for a complete list of risks and controls. The understanding gained of IoT technologies was mapped against the COBIT 5 processes relating to accounting information risks to identify the relevant threats and to recommend possible controls. A risk-matrix was developed to identify key risks and mitigate controls. The identified risks for financial information centred on data integrity, confidentiality, authenticity, network availability and semantic technology vulnerabilities. A multi-layered approach of technical and non-technical internal controls, including a policy component, was formulated to mitigate the identified risks to an acceptable level.
引用
收藏
页码:15 / 30
页数:16
相关论文
共 50 条
  • [1] Application of Internet of Things and Blockchain Technologies to Improve Accounting Information Quality
    Wu, Jiapeng
    Xiong, Feng
    Li, Cheng
    IEEE ACCESS, 2019, 7 : 100090 - 100098
  • [2] Adaptive governance for the Internet of Things: Coping with emerging security risks
    Brass, Irina
    Sowell, Jesse H.
    REGULATION & GOVERNANCE, 2021, 15 (04) : 1092 - 1110
  • [3] Emerging information technologies in accounting and related security risks
    Rindasu, Sinziana-Maria
    PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ACCOUNTING AND MANAGEMENT INFORMATION SYSTEMS (AMIS 2017), 2017, : 151 - 171
  • [4] Information technology governance in Internet of Things supply chain networks
    Gunasekaran, Angappa
    Subramanian, Nachiappan
    Tiwari, Manoj Kumar
    INDUSTRIAL MANAGEMENT & DATA SYSTEMS, 2016, 116 (07) : 1298 - 1302
  • [5] Governance Challenges for the Internet of Things
    Almeida, Virgilio A. F.
    Doneda, Danilo
    Monteiro, Marilia
    IEEE INTERNET COMPUTING, 2015, 19 (04) : 56 - 59
  • [6] The Internet of Things: Governance Model
    Razdan, Deeksha
    Joglekar, Chaitanya
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, DATA SCIENCE AND ENGINEERING (CONFLUENCE 2017), 2017, : 552 - 556
  • [7] Port Information Platform Service Design based on Internet of things Technologies
    Qu, Lili
    Hou, Jian-heng
    PROCEEDINGS OF 2017 2ND INTERNATIONAL CONFERENCE ON COMMUNICATION AND INFORMATION SYSTEMS (ICCIS 2017), 2015, : 164 - 169
  • [9] A Survey of Technologies for the Internet of Things
    Gazis, Vangelis
    Goertz, Manuel
    Huber, Marco
    Leonardi, Alessandro
    Mathioudakis, Kostas
    Wiesmaier, Alexander
    Zeiger, Florian
    Vasilomanolakis, Emmanouil
    2015 INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2015, : 1090 - 1095
  • [10] A Survey of Technologies in Internet of Things
    Tan, Jasper
    Koo, Simon G. M.
    2014 IEEE INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING IN SENSOR SYSTEMS (IEEE DCOSS 2014), 2014, : 269 - 274