This article provides an overview of SOX 404 control Manage Performance & Capacity.

The typical SOX 404 IT controls for Manage Performance and Capacity are outlined below.

Description: Systems are adequately maintained through the management of performance and the regular review of capacity.

Control Objective: A documented process exists and is enforced for performance management and capacity review.

Typical Evidence:

  1. The process describes the performance management steps for the application.
  2. There is a documented process for reviewing automated performance alerts.
  3. There is a documented process for reviewing expected capacity (in line with patterns of business activity) for the foreseeable future at least annually.
  4. There is a documented process for reviewing problems and incidents and feeding lessons learnt back into operational processes.

For more information please contact Morland-Austin at info@morland-austin.com.