Fundamentals of IT Auditing – Virtual
23/02/2021 - 25/02/2021 @ 12:00 pm - 4:00 pm - About this course: Course Description This course will provide attendees with an introduction to IT auditing, emphasizing the concepts through exercises and case studies. Internal audit professionals will develop knowledge of basic IT audit concepts that can be used to facilitate integrated audit efforts within their organization. The course will also provide attendees the opportunity [...]
Map Unavailable

Date/Time
Date(s) - 23/02/2021 - 25/02/2021
12:00 pm - 4:00 pm

Location


About this course:

Course Description

This course will provide attendees with an introduction to IT auditing, emphasizing the concepts through exercises and case studies. Internal audit professionals will develop knowledge of basic IT audit concepts that can be used to facilitate integrated audit efforts within their organization.

The course will also provide attendees the opportunity to perform an audit of IT applications supporting key business processes, coordinate the assessment of IT risk with the evaluation of IT general controls, and perform a risk assessment and evaluation of controls over end user computer applications.

 

Course Schedule

  • Day 1: 12:00 – 16:00
  • Day 2: 12:00 – 16:00
  • Day 3: 12:00 – 16:00

 

Course Objectives

  • Utilizing general IT control audit concepts, perform an audit of IT applications supporting key business processes.
  • During the performance of an audit of IT applications, which supports key business processes, coordinate the assessment of IT risk with the evaluation of IT general controls.
  • Describe the concepts of application controls as they relate to the Software Development Life Cycle (SDLC).
  • Utilizing general IT control concepts, perform a risk assessment and evaluation of controls over end user computer applications.

 

Course Topics

Overview of IT Auditing, Concepts and Controls: Why IT Auditing and What Is It?

  • Why IT auditing?
  • What is IT auditing?
  • What are the benefits of an IT audit?
  • What is the role of an IT auditor?
  • Growth of the IT auditor, including background
  • Common IT audit certifications
  • IIA standards related to an IT audit
  • Key components of IT
  • How COSO and GAIT relate to IT audit
  • Guide to the Assessment of IT Risk (GAIT)
  • Major U.S. laws that impact IT audit
  • IT general and application controls
  • End-user computing
  • IT governance

Case Study

General Control: Logical Security

  • General security concepts
  • Access management concepts
  • Access management principles
  • Common access management controls
  • Password configuration and authentication

General Control: Business Continuity Planning (BCP), Disaster Recovery (DR), and Backup Processing

  • Business Continuity Management (BCM)
  • Disaster Recovery (DR)
  • Backup processing
  • BCM Implementation Requirements
  • Recovery solutions

Application Controls

  • Application control concepts
  • Input controls
  • Processing controls
  • Output controls
  • Interface controls
  • Audit trails
  • Application security

General Control: Change and Patch Management

  • What is change and patch management?
  • Why do change and patch management?
  • What are the types of changes?
  • Elements of a typical change process
  • Types of risks and controls
  • Indicators and recognizable symptoms of poor change management practices
  • Change management success measures
  • Variations in change management processes

Cloud Computing and Service Organization Control (SOC) Reports

  • Cloud computing
  • SOC reports

General Control: System Development Lifecycle (SDLC)

  • Aspects of the SDLC
  • SDLC phases
  • Impacts of project failures
  • Pre and post implementation reviews

End User Computing

  • User Developed Applications (UDAs)
  • Benefits, risks, and controls of UDAs
  • Auditor’s approach to UDAs

 

Course Duration: 3 days

CPE Credits: 12

Level: Beginners

Field of Study: Auditing

Pre-requisites: None

Advance Preparation: None

Delivery Format: eLearning (Group-Internet-Based); On-site Training (Group-Live); Seminar (Group-Live)


Bookings

Bookings are closed for this event.

Disclaimer

The UAE IAA reserves the right to amend the Terms & Conditions at any time without prior notice.

While the UAE Internal Audit Association and its staff make every effort to observe and maintain the schedule of every training course as set forth in the organization’s training schedule, under certain circumstances that are out of our control we might feel obligated to cancel and/or reschedule any training course or event. Under these circumstances, our training department will forward all registrants to the next available schedule for the same course. The individual participant or the sponsoring organization will have the ability to request a different schedule for the same course or a different course within the same calendar year.

CPEs: 12 Point
Course Level: All
Duration: 3 Day/s
Language: English
Member Fees:777USD
Nonmember Fees: 860USD

Number of Attendees:

Book your calendar