%0 Journal Article %T Revisión de estándares relevantes y literatura de gestión de riesgos y controles en sistemas de información %J ESTUDIOS GERENCIALES - Vol. 27 No. 121 - Octubre/Diciembre 2011; %D 2011 %@ 01235923 %U http://www.icesi.edu.co/revistas/index.php/estudios_gerenciales/article/view/1124 %X Risk management and controls in information systems (RMCIS) are important activities involved with management systems. Nevertheless, although organizations seem to have an interest in its application, RMCIS has not yet achieved its real impact because there is an inadequate understanding of its meaning or purpose and there is also a lack of organizational change processes needed for its implementation. This article presents a review of the current most relevant RMCIS standards for the purpose of proposing an integration of the roles and activities that organizations should carry out, together with an analysis of the risk levels and their implications for information systems. %K ESTÁNDARES %K GESTIÓN DEL RIESGO %K SISTEMAS DE INFORMACIÓN %K Information systems %K STANDARD %~ GOEDOC, SUB GOETTINGEN