Audit and Assurance

This is a forum to collaborate on all topics related to IT audit and assurance.  Examples includes discussions on audit programs, sources of assurance, audit best practice, audit methodologies, audit charters, audit standards, the IT Assurance Framework (ITAF), audit news etc.

Topic Leaders

Director of Internal Audit
Continuity NZ, Ltd
Director/Principal Consultant

List of Discussions

  • Hi Marko, Thanks for your reply and thanks for the attached document, this is what I was looking for. ------------------------------ Bader Abuhilal Information Systems Auditor ------------------------------

  • Thanks for your input, Andreas. I appreciate the help. ------------------------------ Rick Infusino IT Auditor ------------------------------

  • Dears, kindly provide some references for RCM's (Risk and Control Matrix) which used in the planning  for audit missions, in addition to the control test program it exist.   Regards, Ahmad ------------------------------ Ahmad AlZubi --------------- ...

  • Hi Mike, You can consider NIST CSF 1.1 version toolkit to start with. Here are the very few simple steps, which you can adhere to implement . My assumption is you have IT security infrastructure in place. First of all keep your  entire IT asset management ...

    1 person likes this.
  • We have established the need to consider pandemics as part of DRP and BCP. In supprt, what are some of those questions to ask audited entity's in planning audits- starting from the March year ends? ------------------------------ Rumbidzai Mhuka Assistant ...

  • Hi Chayan, Than you for the additional information.   I am finding it difficult to suggest anything useful.  (Help please, dear Wider Community - especially if you are involved in SWIFT-related audits, security or compliance.) My current thoughts are: ...

  • Hello Rita, It has been quite a while (> 4 years) since I have looked at VPNs, but here are some thoughts.  Practising experts should be able to provide more advice. I can't comment on the high-level diagram because there must be a lot underpinning ...