These are policies and procedures that relate to many applications and support the effective functioning of application controls. They apply to mainframe, mini-frame and end-user environments. General IT controls that maintain the integrity of information and security of data commonly include controls over the following:
data centre and network operations
system software acquisition, change and maintenance
program change
access security
application system acquisition, development, and maintenance (ISA 315 (Redrafted))
‘End-user environment’ refers to the situation in which the users of the computer systems are involved in all stages of the development of the system.