From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
Audit strategy
From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep
Audit strategy
- [Instructor] Okay, let's take a look at our audit strategy. So of course we have to have a strategy, we have to have a broad plan, and sort of a map, if you will, about what our process is going to be. So this will allow our audit executive to define our starting point, figure out what our target state is, and determine the processes and resources necessary. That's exactly what you expect from a strategy. Here's where we are, here's where we want to go, and then how are we going to get there. So this is ISAC's layout of an IT audit strategy. And as you'd expect, we talk about our starting point. We have to have input. Now, the business impact analysis is important because this shows us those elements that have the greatest impact on the success of our organization. So of course that's going to be a high focus. Then we have our IT risk assessment. So what are the risks that exist and where's our standing? Where are we currently? Who are the resources that we have? What are the…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
CISA welcome and intro9m 10s
-
(Locked)
Introduction to IS audit12m 20s
-
(Locked)
Information Technology Assurance Framework (ITAF)7m 31s
-
(Locked)
Audit strategy4m 15s
-
(Locked)
Laws and regulations2m 52s
-
(Locked)
Business processes3m 26s
-
(Locked)
Types of controls11m 47s
-
(Locked)
Risk-based audit, part 16m 51s
-
(Locked)
Risk-based audit, part 26m 33s
-
(Locked)
Audit execution4m 56s
-
(Locked)
Audit evidence collection5m 48s
-
(Locked)
Sampling11m 23s
-
(Locked)
Communication of results5m 48s
-
(Locked)
Additional types of audit4m 24s
-
-
-
-
-