IT Auditing can mean a variety of things,
you can audit for security,
or bandwidth utilization,
or any other number of things you wish to check for,
Most commonly, its used for security,
you use sniffers and probes to check your network for vulnerabilites.
After you find them, you create or purchase solutions to close them.
You also check for strong password policies.
such as, do people have to change their password every 30 days?
do they have to use alphanumeric characters? A-Z a-z and 0-9 and one special character? !@#$%^&*()_{}+:"><
can they reuse passwords or do you force them to make changes and not reuse the last 12 passwords?
the list goes on and on.
2006-08-10 02:27:24
·
answer #1
·
answered by digital genius 6
·
0⤊
0⤋
from Wikipedia:
An information technology (IT) audit or information systems (IS) audit is an examination of the controls within an entity's Information technology infrastructure. It is the process of collecting and evaluating evidence of an organization's information systems, practices, and operations. Obtained evidence evaluation can ensure whether the organization's information systems safeguard assets, maintains data integrity, and is operating effectively and efficiently to achieve the organization's goals or objectives.
An IT audit is similar to a financial statement audit in that the study and evaluation of the basic elements of internal control are the same. However, the purpose of a financial statement audit is to determine whether an organization's financial statements and financial condition are presented fairly in accordance with generally accepted accounting principles (GAAP). Regarding Protection-of-Information-Assets, one purpose of an IT audit is to review and evaluate an organization's information system's availability, confidentiality, and integrity by answering questions such as:
Will the organization's computer systems be available for the business at all times when required? (Availability)
Will the information in the systems be disclosed only to authorized users? (Confidentiality)
Will the information provided by the system always be accurate, reliable, and timely? (Integrity).
IT audits are also known as automated data processing (ADP) audits and computer audits.
2006-08-10 09:30:03
·
answer #2
·
answered by kristina 2
·
0⤊
0⤋
Checking if the Software programme (coding) written for a particular purpose is correct and functions properly without "bugs" and "hangings"
In India (where I come from) IT also stands for Income Tax - so an Audit of this means a certified (Chartered) Accountant going through my Tax returns and confirming that the figures and the calculations are correct.
2006-08-10 09:26:49
·
answer #3
·
answered by bagsprosh 4
·
0⤊
0⤋
income tax auditing....auditing accounts to calculate the amount of tax to be paid
2006-08-10 09:25:50
·
answer #4
·
answered by Anonymous 2
·
0⤊
0⤋
put in one sentence, IT auditing means to proove a companys systems in place for proper use and configuration.
2006-08-10 09:25:46
·
answer #5
·
answered by Anonymous
·
0⤊
0⤋
http://www.skyboxsecurity.com/solutions/consultant1.html?gclid=CMbYldmb1YYCFU1dDgodjzMcdQ
2006-08-10 09:24:14
·
answer #6
·
answered by Bolan 6
·
0⤊
0⤋