Explain the management plan for conducting it audits

Assignment Help Auditing
Reference no: EM131524275

Term Paper Assignment: Managing an IT Infrastructure Audit

This assignment consists of four sections: an internal IT audit policy, a management plan, a project plan, and a disaster recovery plan. You must submit all four sections as separate files for the completion of this assignment. Label each file name according to the section of the assignment it is written for. Additionally, you may create and /or assume all necessary assumptions needed for the completion of this assignment.

Imagine you are an Information Security Manager for a large national retailer. You have been hired to be directly responsible for the planning and oversight of IT audits. At the request of the Board of Directors, the CEO has tasked you with developing a plan for conducting regular audits of the IT infrastructure. The planning and management aspects of IT audit are critical to the overall success of the audit, and as a result, the overall success of the systems implemented within the organization. You must develop a policy for conducting IT audits and develop a project plan for conducting two week IT audits.

In addition to the typical networking and Internetworking infrastructure of a medium-sized organization, the organization has the following characteristics:

• They have a main office and 268 stores in the U.S.

• They utilize a cloud computing environment for storage and applications.

• Their IT infrastructure includes Cisco workgroup and core switches, Cisco routers, Cisco firewalls and intrusion prevention systems, and servers running Microsoft Windows Server 2012.

• They have over 1000 desktops and approximately 500 organization-owned laptops in the main headquarters.

• They allow employees to bring their own devices into the organization; however, they are subject to being searched upon entry and exit from the building.

• They enable remote access to corporate information assets for employees and limited access to extranet resources for contractors and other business partners.

• They enable wireless access at the main office and the stores.

• They process an average of 67.2 credit card transactions per hour every day at each location and via their corporate Website.

Section 1: Internal IT Audit Policy

Write a three to four page paper in which you:

1. Develop an Internal IT Audit Policy, which includes at a minimum:

a. Overview

b. Scope

c. Goals and objectives

d. Compliance with applicable laws and regulations

e. Management oversight and responsibility

f. Areas covered in the IT audits

g. Frequency of the audits

h. Use at least two quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Section 2: Management Plan

Write a four to six page paper in which you:

2. Explain the management plan for conducting IT audits, including:

a. Risk management

b. System Software and Applications

c. Wireless Networking

d. Cloud Computing

e. Virtualization

f. Cybersecurity and Privacy

g. BCP and DRP

h. Network Security

i. Use at least three quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Section 3: Project Plan

Use Microsoft Project or an Open Source alternative, such as Open Project to:

3. Develop a project plan which includes the applicable tasks for each of the major areas listed below for each element of the IT audit mentioned above; plan for the audit to be a two week audit.

a. Risk management

b. System software and applications

c. Wireless networking

d. Cloud computing

e. Virtualization

f. Cybersecurity and privacy

g. Network security

Section 4: Disaster Recovery Plan

Write a five to seven page paper in which you:

4. Develop a disaster recovery plan (DRP) for recovering from a major incident or disaster affecting the organization.

a. The organization must have no data loss.

b. The organization must have immediate access to organizational data in the event of a disaster.

c. The organization must have critical systems operational within 48 hours.

d. Include within the DRP the audit activities needed to ensure that the organization has an effective DRP and will be able to meet the requirements stated above.

e. Use at least three quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Your assignment must follow these formatting requirements:

• Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format. Check with your professor for any additional instructions.

• Include a cover page containing the title of the assignment, the student's name, the professor's name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.

Reference no: EM131524275

Questions Cloud

Describe general observations of the client : Describe general observations of the client during the assessment period provided in the chosen personality assessment scenario.
Distributed systems perspective of our case study : Please discuss how the distributed systems perspective of our case study of the Internet from class match up to the tenants of transparency.
Advantage of abnormal corn crush spread levels : Describe spread trading strategies that take advantage of abnormal corn crush spread levels.
What profit does the spread trader make on the trade : What profit does the spread trader make on the trade ($/pound)?
Explain the management plan for conducting it audits : Explain the management plan for conducting IT audits. evelop a project plan which includes the applicable tasks for each of the major areas listed.
Common database security issues : Write a research paper that discusses common database security issues and point out the vulnerabilities and potential threats.
What subjective judgment must analyst make in creating model : Suppose that an analyst for an insurance company is interested in using regression analysis to model the damage caused by hurricanes when they come ashore.
Explain the ethical challenges in the case : Explain the ethical challenges in the case related to the codes of ethics you have selected.Explain how this ethical challenge might have been prevented.
Assume semiannual compounding periods : You purchased a zero-coupon bond one year ago for $279.83. The market interest rate is now 9 percent. Assume semiannual compounding periods.

Reviews

Write a Review

Auditing Questions & Answers

  Discuss why internal auditors often fail to detect frauds

Discuss in your own words why internal auditors often fail to detect frauds. You should discuss a minimum of four reasons.

  Nike auditing and independent

What could Nike's Corporate Responsibility team do to improve Nike's public image. Why did Nike's attempt to address it critics prove unsuccessful?

  Describe necessary qualifications and experience

Describe the preferred format of the internal audit report, comparing it the recent report from the external auditors.

  How the auditor partner might defend the claim

How the auditor partner might defend the claim. What you think the court's decision will be if the case goes to trial. How the lawyers for First Hardware might present the case against the auditor.

  In many of the cases that we read in this course the

in many of the cases that we read in this course the auditors appeared to lack the exercise of professional skepticism.

  List and discuss several inherent risk factors

HA3032 AUDITING AND ASSURANCE SERVICES - Discuss several factors that would have contributed to an increased inherent risk assessment at the financial report level.

  Identify the most recent auditing standard issued

Identify the most recent auditing standard issued. Describe the nature of the standard and discuss the reason(s) that the Board issued the standard.

  Demonstrate the different phrases of an audit

New client acceptance and Risk assessment and assessment of internal controls in sales cycle - Critically analyse situations which will impact on the audit process - demonstrate the different phrases of an audit

  Write an essay on role of auditors

Describe their role in Enron Scandal. What are their responsibilities in order to prevent such situation.

  Why would hih have wanted to hire prior members

Identify and discuss in detail THREE (3) relevant legal concepts which are related to the collapse of HIH. In your answer, explain why these principles are relevant - What conditions need to exist for a negligence action to be upheld?.

  Describe the rationale for the selection of the benchmark

Basis for Materiality Amounts. Considering the needs and expectations of financial statement users, describe the rationale for the selection of the benchmark and percentages in steps 2Ä4.

  Discuss the systems approach to auditing

Outline the purpose of an audit engagement letter and discuss the "Systems Approach" to auditing.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd