Purpose
An IT audit is different from a financial statement audit. While a financial audit's purpose is to evaluate whether an organization is adhering to standard accounting practices, the purposes of an IT audit are to evaluate the system's internal control design and effectiveness. This includes, but is not limited to, efficiency and security protocols, development processes, and IT governance or oversight. Installing controls are necessary but not sufficient to provide adequate security. People responsible for security must consider if the controls are installed as intended, if they are effective if any breach in security has occurred and if so, what actions can be done to prevent future breaches. These inquiries must be answered by independent and unbiased observers. These observers are performing the task of information systems auditing. In an Information Systems (IS) environment, an audit is an examination of information systems, their inputs, outputs, and processing.
Read more about this topic: Information Technology Audit
Famous quotes containing the word purpose:
“The purpose of getting power is to be able to give it away.”
—Aneurin Bevan (18971960)
“What if we fail to stop the erosion of cities by automobiles?... In that case America will hardly need to ponder a mystery that has troubled men for millennia: What is the purpose of life? For us, the answer will be clear, established and for all practical purposes indisputable: The purpose of life is to produce and consume automobiles.”
—Jane Jacobs (b. 1916)
“The strongest wind cannot stagger a Spirit; it is a Spirits breath. A just mans purpose cannot be split on any Grampus or material rock, but itself will split rocks till it succeeds.”
—Henry David Thoreau (18171862)