Skip to main content

      In the course of digital transformation, companies are faced with the task of digitalising their business processes while maintaining control over the associated risks. In order to overcome this challenge, control mechanisms must be further developed without losing sight of the controllability of risks. At the same time, governance structures need to be continuously adapted to regulatory innovations and technological advances.

      Process flows in organisations must be efficient, traceable, secure and controllable. A compliant and resilient organisation is based on clear IT governance and an effective internal control system (ICS). Workflow management systems such as ServiceNow support companies in creating a structured approach to transparent risk management and clear role allocations. In addition, the digital development of the internal control system can be promoted, business objectives can be realised and the company's success can be strengthened in the long term.

      In addition, an integrated ICS and strong IT governance can be used to build sustainable compliance and digital resilience in a targeted manner.


      IT Governance, Risk & Control – Customised strategies

      Our experts take a holistic view of IT governance and IT compliance: from the strategy and the corresponding guidelines to the resulting processes and organisational structures through to the employees and the technical IT components. They support the development, implementation and continuous optimisation of the processes and ensure that not only the individual components work on their own, but also their interaction. Important areas of focus include IT strategy, IT organisation, IT processes and guidelines as well as IT security, but also IT risk & controls, IT compliance and the corresponding alignment with the Target Operating Model (TOM).

      We support you with:

      • IT Governance- & Compliance-Structure
      • Risk management
      • IT Internal Audit
      • IT process and control design
      • Software selection
      • IT Project Governance & Compliance
      • Archiving (E-Invoicing, Document management and workflow)
      • Document-Lifecycle-Management
      • Energy-specific process analyses (EPA)
      • ERP Roll-out Compliance
      • Identity- & Access-Management
      • Authorisation concept and user administration processes
      • Invoice automation
      • IT-Service-Management-Processes (Incident-, Change and problem management))
      • System Decommissioning Services

      Your contact

      Axel Bachmann

      Partner, Audit, Regulatory Advisory, Head of Digital Process Compliance, Head of Kirchen and Non-Profit-Organisations

      KPMG AG Wirtschaftsprüfungsgesellschaft