How to obtain information and resources for the audit

Assignment Help Computer Engineering
Reference no: EM132242637

Assignment: Planning an IT Infrastructure Audit for Compliance (8-10 page)

The audit planning process directly affects the quality of the outcome. A proper plan ensures that resources are focused on the right areas and that potential problems are identified early. A successful audit first outlines the objectives of the audit, the procedures that will be followed, and the required resources.

Choose an organization you are familiar with and develop an eight to ten page IT infrastructure audit for compliance in which you:

1. Define the following items for an organization you are familiar with:

a. Scope

b. Goals and objectives

c. Frequency of the audit

d. Duration of the audit

2. Identify the critical requirements of the audit for your chosen organization and explain why you consider them to be critical requirements.

3. Choose privacy laws that apply to the organization, and suggest who is responsible for privacy within the organization.

4. Develop a plan for assessing IT security for your chosen organization by conducting the following:

a. Risk management

b. Threat analysis

c. Vulnerability analysis

d. Risk assessment analysis

5. Explain how to obtain information, documentation, and resources for the audit.

6. Analyze how each of the seven (7) domains aligns within your chosen organization.

7. Align the appropriate goals and objectives from the audit plan to each domain and provide a rationale for your alignment.

8. Develop a plan that:

a. Examines the existence of relevant and appropriate security policies and procedures.

b. Verifies the existence of controls supporting the policies.

c. Verifies the effective implementation and ongoing monitoring of the controls.

9. Identify the critical security control points that must be verified throughout the IT infrastructure, and develop a plan that includes adequate controls to meet high-level defined control objectives within this organization.

10. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Your assignment must follow these formatting requirements:

• This course requires use of Strayer Writing Standards (SWS). The format is different than other Strayer University courses. Please take a moment to review the SWS documentation for details.

• Include a cover page containing the title of the assignment, the student's name, the professor's name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.

The specific course learning outcomes associated with this assignment are:

• Describe the parameters required to conduct and report on IT infrastructure audit for organizational compliance.

• Describe the components and basic requirements for creating an audit plan to support business and system considerations

• Develop IT compliance audit plans

• Use technology and information resources to research issues in security strategy and policy formation.

• Write clearly and concisely about topics related to information technology audit and control using proper writing mechanics and technical style conventions.

Reference no: EM132242637

Questions Cloud

Discuss the five central tenets of critical race theory : Identify and discuss the five central tenets of Critical Race Theory along with key concepts including Whiteness.
What is gst and how is it implemented : What is GST and how is it implemented? who required to register for GST? what piece of legislation primarly governs GST?
Organisation maintain financial records : They include manul systems and computer-based system. How do computer and manaul systems operate?
Why do organisation need acurate and timely financial : Why do organisation need acurate and timely financial information? What information is required to manage the organisation's finances?
How to obtain information and resources for the audit : Explain how to obtain information, documentation, and resources for the audit. Analyze how each of the seven (7) domains aligns within your chosen organization.
Hiring an assistant-individual differences : If you were a manager, what individual differences would be important to you in hiring an assistant? Why?
Is money a motivator in the workplace : Is money a motivator in the workplace? Why or why not? . Do you think money motivates CEOs more or less than employees within the same companies?
What characteristics make good : What characteristics make good/effective global managers? What characteristics make bad/ineffective global managers?
Retirement policy so that jobs open up for younger employees : Should companies have a 'forced' retirement policy so that jobs open up for younger employees?

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd