IT Examiner School - Oct 2025
First page
Table of contents
Next page
Last page
Agenda
2
Introduction
4
Regulations and Guidance
10
IT Examination Work Programs
19
Audit
32
Cyber Maturity Assessment/FFIEC CAT Tool
53
Support & Delivery
56
Development & Acquisition
92
Third-Party Risk Management
100
Information Security Framework & Risk Assessment
107
Business Continuity Planning/ Disaster Recovery
126
Management
136
Composite Rating
150
Emerging Issues
156
Appendix
166
URSIT Ratings Handout
166
FDIC Abbreviated Workprogram Procedures & CSBS Analysis
172
RD Memo 2025-027-RMS
172
Information Technology Profile (ITP)
193
Information Technology Risk Examination Procedures
245
2024 Changes to InTREx
247
Sample Risk Assessment
282 - 283
Data Center Walkthrough Checklist
284
Depository vs. Non-Depository
286 - 287
Associate Certified Information Security Examiner
295
Learning Roadmaps
296 - 297
Made with
FlippingBook
Learn more on our blog