Expert Advice Community

Guest

IT audit

  Quote
Guest
Guest user Created:   Apr 13, 2017 Last commented:   Apr 13, 2017

IT audit

1. How can we carry out the IT Audit of a company?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Apr 13, 2017

Answer: First of all you must define an audit methodology, and after that identify the audit scope (e.g., process, assets, locations, etc.) and which references you'll be using to perform the audit (e.g., ITIL, ISO 27001, etc.). With these information you can built a proper audit plan.

I suggest you to take a look at this free online course to get a better view of the audit process: ISO 27001:2013 Internal Auditor Course https://advisera.com/training/iso-27001-internal-auditor-course/

2. Can I use the knowledge of ISO 27001 to conduct one?

Answer: Yes. Many of the ISO 27001 requirements and controls are perfectly applicable to audit IT environments.

3. Must the company be certified?

Answer: This will depend upon the requirements of the audit client (the person or organization that demands the audit). You should verify this with the organization.

4. Which certification body do we use in case the client wan ts to be certified?

Answer: This is a decision of the organization that wants to be certified, because there are many variable to be considered that will impact not only operations but future strategic decisions.

This article will provide you further explanation about certification bodies:
- How to choose a certification body https://advisera.com/27001academy/knowledgebase/how-to-choose-a-certification-body

These materials will also help you regarding IT audit:
- ISO Internal Audit: A Plain English Guide https://advisera.com/books/iso-internal-audit-plain-english-guide/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Apr 13, 2017

Apr 13, 2017

Suggested Topics

Guest user Created:   Dec 20, 2020 ISO 27001 & 22301
Replies: 1
0 0

IT Auditing

Guest user Created:   May 24, 2017 ISO 27001 & 22301
Replies: 1
0 0

Framework for IT audit.