Tag: technology

cybersecurity phone image

New Guide on Auditing Business Applications

The Institute of Internal Auditors has published a new guide to aid internal auditors in auditing business applications. It says the new guide will help internal auditors provide assurance and consulting services related to business applications. The practice guide also describes how to identify and assess the risks and standardized Read More

Auditing access management

Some Thoughts on Auditing Identity and Access Management

GUEST BLOG POST The Institute of Internal Auditors regularly publishes useful Global Technology Audit Guides (GTAGs), available to members on their website under Standards and Guidance. They are considered recommended rather than mandatory guidance for internal auditors. As part of that effort, the IIA recently published a second edition of Read More

Data privacy

U.K. Agency Issues Guidance on Auditing Artificial Intelligence Use

The Information Commissioner’s Office, the United Kingdom’s independent authority established to uphold information rights in the public interest, has released beta guidance on managing artificial intelligence and data protection risks. The guidance, which the ICO calls a “toolkit,” contains risk statements to help organizations that are using AI to process Read More

Harnessing the Power of Continuous Internal Auditing

In the current business environment, senior management is asking some internal audit functions to do more work that resembles quality assurance. There are several reasons for this, but generally those reasons fall under the heading of business process disruption in one form or another. These may be disruptions to the Read More

Internal auditors return to the office

Internal Audit Offices Are Reopening, but Things May Never Be the Same

As more Americans receive vaccinations and the rate of COVID-19 cases steadily declines, more companies are planning for employees to return to their offices. Even as they do, work promises to look different than it did before many started working from their dining room tables and basements. Perhaps nowhere is Read More

Machine learning could improve cloud security

As Pandemic Wanes, GRC Professionals Look to Cloud Solutions

The COVID-19 pandemic has affected many aspects of both professional and non-professional life, and its impact on internal audit has been unmistakable. In fact, a recent survey found that more than half of governance, risk management, compliance (GRC), and internal audit professionals say that their workload has increased significantly since Read More

deduping data

Three Steps for Better Compliance with ISO 27001 on InfoSec

The recent hack of the Colonial Pipeline, which has crippled the transmission of fuel in the Southeast United States, serves as a stark and alarming reminder to all businesses of the vulnerability of information systems to security breaches, hacks, and ransomware attacks. Over the last several years, most businesses have Read More