IT Examiner School

Guidance for IT Audit

FFIEC IT Examination Audit Handbook

Federal Agency Rules and Regulations

 Interagency Policy Statement on the Internal Audit Function and its Outsourcing  Interagency Policy Statement on External Auditing Program of Banks and Savings Associations  Interagency Guidelines Establishing Information Security Standards (GLBA) Information Systems Audits and Control Association (ISACA)

IT Audit Engagement

Engaged and signed by an individual or committee not responsible for IT operations. •Preferably signed by a member of the Board or Audit Committee.

Expectations and responsibilities

The scope, timeframes, and cost of work to be performed

Institution access to audit workpapers

Made with FlippingBook Digital Publishing Software