What are the steps for performing audits on Information Systems?

  • Context: Comp Sci 
  • Thread starter Thread starter shivajikobardan
  • Start date Start date
  • Tags Tags
    Information Systems
Click For Summary
SUMMARY

The discussion centers on the steps for performing audits on Information Systems, highlighting the variability in resources available. Key sources include the ISO and BSI standards, as well as IBM Redbooks, which provide extensive guidelines and frameworks. The conversation emphasizes that the audit process can vary significantly based on the executing entity, with large consultancies like PWC offering comprehensive insights. Participants express confusion due to the abundance of differing information on the topic.

PREREQUISITES
  • Understanding of Information System Audit processes
  • Familiarity with ISO and BSI standards
  • Knowledge of IBM Redbooks resources
  • Awareness of consultancy frameworks, particularly from PWC
NEXT STEPS
  • Research the ISO 27001 standard for Information Security Management Systems
  • Explore the BSI guidelines for Information Systems auditing
  • Review IBM Redbooks on Information System auditing techniques
  • Investigate audit frameworks used by major consultancies like PWC
USEFUL FOR

Information Systems auditors, IT compliance professionals, and anyone involved in the governance and security of Information Systems will benefit from this discussion.

shivajikobardan
Messages
637
Reaction score
54
Homework Statement
confused in what to write
Relevant Equations
none


https://ioesolutions.esign.com.np/n...rol,-Audit-and-Security-of-Information-System

Here are what I have researched but both of these don't cover what are information system audit steps.

Then here is sth that I am not sure of.

https://www.yourarticlelibrary.com/...ess-of-information-system-audit-4-steps/10494
Here is another thing. The thing is I am finding different different things for same thing. I am confused what should I write? I don't have good teacher so can't ask to teacher as well.
 
Physics news on Phys.org
The answer depends partly on who executes the audit. In general, the list is long, very long. Have you checked the websites of the big consultancies, e.g. PWC?

Other public sources are standards like ISO or BSI.
 
  • Like
Likes   Reactions: berkeman and shivajikobardan
IBM Redbooks has copious pdf resources on these subjects, available for free download.

Here's a broad spectrum example:

sg24-7472-00_x2.jpg


http://www.redbooks.ibm.com/abstracts/sg247472.html?Open
 

Similar threads

  • · Replies 8 ·
Replies
8
Views
2K
  • · Replies 5 ·
Replies
5
Views
1K
  • · Replies 2 ·
Replies
2
Views
2K
  • · Replies 1 ·
Replies
1
Views
1K
  • · Replies 6 ·
Replies
6
Views
1K
  • · Replies 1 ·
Replies
1
Views
2K
  • · Replies 7 ·
Replies
7
Views
4K
  • · Replies 2 ·
Replies
2
Views
1K
  • · Replies 16 ·
Replies
16
Views
2K
  • · Replies 1 ·
Replies
1
Views
1K