The high cost of compliance

By Dan Blacharski, ITworld.com |  Storage Add a new comment

This week's highlighted research:



Gartner Inc. "Sarbanes-Oxley spending continues to disrupt software purchases."




Forrester Research. "Business complexity challenges compliance."




AMR Research. "Spending in an age of compliance, 2005."




IDC. "Worldwide information management for compliance 2005-2009 forecast."




Regulations like Sarbanes-Oxley (SOX), HIPAA and Gramm-Leach-Bliley serve their purposes, whether it be protecting the privacy of consumer information, or preventing the books from being cooked. And for the most part, they're necessary. But neither legislator nor businessperson can deny that there is a cost, and it is substantial. While it may not break the budget, it's certainly going to put a dent in it for most companies. What is the ongoing impact of compliance on corporate spending and the economy in general?



Gartner's report says the increased level of spending on compliance and corporate governance issues is indeed going to have a big impact on the IT budget. According to their survey, financial compliance management spending is going to increase to 10 to 15 percent of the IT budget in 2006. In 2004, compliance spending took up less than five percent of the IT pie. The survey showed that SOX and other regulatory mandates are diverting new IT project discretionary resources to support compliance and governance issues. Many of the corporations surveyed had to cancel or delay non-compliance related projects. Efforts to comply with SOX meant purchases of software for new technologies and new projects have been inhibited.



But there is a flipside to the inhibited spending. While some IT projects are being delayed, new IT spending that is related to compliance is starting, as more corporations seek IT solutions to ease the compliance burden. Initially, IT spending on compliance was focused on one-off projects, due to the time pressures imposed by compliance deadlines. Now, corporations are more able to settle into a "big picture" view, and implement IT solutions and changes in business processes that are more long-term and programmatic--which will ultimately make that 10 to 15 percent figure go back down.



The complexity of compliance as well as business itself is the focus of Forrester's report. The complex and dynamic nature of business, as well as global competition and competitive pressures, are all challenges to compliance, says Forrester. Forrester also notes that initial compliance initiatives were handled in fragmented silos throughout the organization, but now we are starting to see compliance oversight becoming more centralized, often under the purview of a single compliance officer, and taking shape as an enterprise risk management discipline.



AMR Research also looks into the cost of compliance, predicting that it will hit $80 billion over the next five years. Their research estimates that corporations will have spent about $15.5 billion on compliance in 2005, with the average corporation spending about half a million. AMR says SOX is by far the most expensive initiative, and accounts for 39 percent of compliance spending. The largest budget item related to compliance is investment on internal staff.


IDC takes a five-year look at compliance issues as a worldwide market opportunity for software, hardware and services, also noting that corporations are more driven to invest in technology to create a more sustainable compliance environment.

 

 

    Add a comment

    Post a comment using one of these accounts
    Or join now
    At least 6 characters

    Note: Comment will appear soon after you have activated your account.
    Obscene/spam comments will be removed and accounts suspended.
    The information you submit is subject to our Privacy Policy and Terms of Service.

    ITworld LIVE

    StorageWhite Papers & Webcasts

    White Paper

    AppAssure vs Acronis

    In this study of data protection for environments with virtual and physical servers running Windows, openBench Labs tested AppAssure Backup and Replication software v 4.7 and Acronis Backup & Recovery 11. Both solutions utilize block-based technology to unify data protection operations.

    White Paper

    Guaranteeing 100% Backup Recovery

    The single biggest challenge for IT personnel involved in the data protection process is making sure that their backups are recoverable every time. Management and users won't remember the ninety-nine successful recoveries but they will always remember the one failure.

    White Paper

    ESG Analyst White Paper - VMware's vSphere Storage Appliance: High Availability for Small IT Operations

    Learn how small and midsized businesses are increasingly adopting virtualisation to deliver consolidation, improve data back up and disaster recovery and increase security with an in-depth new paper from the Enterprise Strategy Group (ESG). Learn directly from your peer's experiences and see why VMware's solutions are perfect for the growing and ambitious business.

    Webcast On Demand

    Understand Your Data: The Future of Backup and Archiving

    Archiving and Backup are the foundation of the next generation of information governance. However, commodity data protection tools and basic archives are only good for storing data. In the changing IT landscape, understanding what you are keeping, when to delete, and delivering insight to the business from your data is the future of these systems. Join us to hear the impact of private and public cloud solutions, "big data" and your choices while market evolves.

    Sponsor: Autonomy

    White Paper

    NetVault: #1 in the 2011 Oracle Backup Solutions Buyer's Guide

    Want to know how NetVault Backup compared against other Oracle backup software solutions - and why it's DCIG's #1 choice? In this 37-page report you'll get unbiased, third-party evaluations of Oracle backup software - and why NetVault Backup sits on the top of the list. Download your copy today.

    See more White Papers | Webcasts

    Ask a question

    Ask a Question