
Audit Program for Domain 1 - Access Control
Explore domain two backup and media, where data and critical systems are backed up, retained, restored, and tested to ensure usable, accessible backups and robust business continuity.
Verify offsite backups are securely stored and protected from damage; identify key corporate data and ensure monthly reviews, tested backups, and environmental controls with access safeguards.
Apply standard file naming and backup checklists, align with data retention laws for accounting data, test long-term backups, dispose media securely, and label removable media for quick identification.
Back-up & Media Audit Program
Identify and use only authorized, current versions of programs and libraries in the live production environment, and enforce segregation of duties to prevent unauthorized transfers between development and production.
Change Management Audit Program
IT Sites Audit Program
Ensure procurement from reliable suppliers, enforce software licensing and asset management through monitoring and preventive controls, and conduct annual licensing reviews to prevent piracy and unauthorized data access.
Laptop & Personal Computers Audit Program
Explore domain six on system acquisition and development in a comprehensive IT audit for non-IT auditors, covering governance, requirements, testing, change management, and monitoring of new application systems.
Systems Acquisition & Development Audit Program
Contingency Plan Audit Program
Explore the database management audit program, including control objectives for data structure, testing steps for documentation, data integrity, change management, and disaster recovery planning.
Explore the electronic data interchange audit program, validating EDI solutions against IT and business objectives while ensuring data accuracy, contingency plans, and protection against unauthorized, duplicated, and erroneous transactions.
Are you a non-IT auditor looking to expand your skill set and enhance your ability to audit IT systems effectively? This course, "Comprehensive IT Audit for Non-IT Auditors," is designed to provide you with the essential knowledge and tools to perform thorough IT audits, even if you don't have a technical background.
In today's digital age, IT systems are the backbone of most organizations, and understanding how to audit these systems is crucial for ensuring compliance, security, and operational efficiency. This course breaks down complex IT concepts into easy-to-understand modules, making it accessible for auditors of all experience levels.
What You'll Learn:
Access Control Auditing: Assess how organizations protect sensitive data by managing who has access to their systems.
Backup & Media Auditing: Ensure critical data is safely backed up and can be recovered in case of an emergency.
Change Management Auditing: Review how changes to IT systems are controlled and documented to prevent unauthorized modifications.
IT Sites Auditing: Evaluate the physical and environmental controls at IT facilities to ensure data security.
Laptop & Personal Computers Auditing: Inspect the security and management of endpoint devices used within the organization.
Systems Acquisition & Development Auditing: Analyze the processes involved in acquiring and developing IT systems to ensure they meet organizational needs.
Contingency Planning Auditing: Ensure that effective disaster recovery plans are in place to minimize downtime in case of unexpected events.
Database Management Auditing: Examine how databases are managed and secured to protect critical organizational data.
Electronic Data Interchange (EDI) Auditing: Review the security and efficiency of electronic transactions between organizations.
IT Governance - IT Structure and Resources Auditing: Evaluate the organization's IT structure and resource allocation to ensure alignment with business goals.
IT Governance - Strategic Planning Auditing: Assess the strategic planning processes that guide IT investments and initiatives.
IT Operations Auditing: Review the efficiency and effectiveness of day-to-day IT operations.
Systems & Operating Software Auditing: Analyze the management and security of operating systems and software applications.
User Support Auditing: Ensure that user support systems are effective and responsive to organizational needs.
Virus Management Auditing: Evaluate the effectiveness of virus protection and response strategies within the organization.
Each module is accompanied by a downloadable audit program, providing you with a practical tool to apply what you've learned immediately.
By the end of this course, you'll be equipped with the knowledge and confidence to perform comprehensive IT audits, adding significant value to your organization and your career. Whether you're an internal auditor, compliance officer, or just looking to broaden your auditing expertise, this course is your gateway to mastering IT audits