Tuesday, May 27, 2008

My IT Audit Notes

  1. Functions/Areas under purview for IT Audit


  • Application Software Development (Development methodologies, Change control procedures,
  • Service Continuity
  • Problems/Incidents reporting
  • Access to Computer resources

    • Logical Access (written policies & Procedures, resignations, New User requests, password storage)
    • Physical Access (Access to computer systems, Document with password storage areas)
    • Manage Software & Hardware (Inventory , policy for installation etc)
  • System software controls (Forced Password change controls, block bad internet access, dial-in access control)
  • Operating System installation procedures
  • Software licences
  • Operational procedures


Steps in performing IT Audit (Information Technology Audit Process)

  1. Planning
  2. Studying and Evaluating Controls
  3. Testing and Evaluating Controls
  4. Reporting
  5. Follow-up
  6. Preliminary Review
  7. Establish Materiality and Assess Risk
  8. Plan Audit Perform Audit Procedure

No comments:

My IT Audit Notes

Functions/Areas under purview for IT Audit Application Software Development (Development methodologies, Change control procedures, Service C...