IT AUDIT AS A SERVICE: IMPACT ON UNCOVERING TECHNOLOGY AND INFORMATION SECURITY RISKS

Authors

  • Mukta Sharma Sr. IT Compliance Analyst, Intercontinental Exchange, Virginia, USA. Author
  • Krunal Patel Lead Engineer, StitchFix, USA. Author

Keywords:

Compliance, Cybersecurity, IT Audit, Software, Software Development Lifecycle (SDLC)

Abstract

In today's dynamic business environment, the convergence of IT audit with risk management, governance, and cybersecurity is paramount. This paper explores the concept of IT Audit as a Service (ITaaS), emphasizing its strategic importance in addressing proactive measures to mitigate risks and enhance decision-making processes. By recognizing cyber risk as an intrinsic business risk, ITaaS provides a comprehensive approach to maintaining organizational resilience. Through continuous control assessments and effectiveness measurements, ITaaS supports organizations in strengthening their governance frameworks and ensuring robust cybersecurity postures. Traditionally, Internal Audit (IA) has acted as the third line of defense, providing independent and objective assurance. However, ITaaS can go beyond this role by offering a fresh eyes perspective, enabling more dynamic and forward-looking insights. This study underscores the pivotal role of ITaaS in fostering a proactive, resilient, and well-governed enterprise landscape.

References

Stoel, Dale, Douglas Havelka, and Jeffrey W. Merhout. "An analysis of attributes that impact information technology audit quality: A study of IT and financial audit practitioners." International Journal of Accounting Information Systems 13.1 (2012): 60-79.

The Institute of Internal Auditors. About the IIA. https://www.theiia.org/en/about-us/

VMware. Disaster Recovery. https://www.vmware.com/topics/disaster-recovery

Amazon. What is SDLC. https://aws.amazon.com/what-is/sdlc/

Azizi, M., Hakimi, M., Amiri, F., & Shahidzay, A. K. (2024). The Role of IT (Information Technology) Audit in Digital Transformation: Opportunities and Challenges. Open Access Indonesia Journal of Social Sciences, 7(2), 1473-1482.

Gartner, Inc. (2023). Magic Quadrant for CRM Customer Engagement Center. https://www.gartner.com/en/doc/444047

Downloads

Published

2024-10-04

How to Cite

Mukta Sharma, & Krunal Patel. (2024). IT AUDIT AS A SERVICE: IMPACT ON UNCOVERING TECHNOLOGY AND INFORMATION SECURITY RISKS. INTERNATIONAL JOURNAL OF INFORMATION TECHNOLOGY AND MANAGEMENT INFORMATION SYSTEMS (IJITMIS), 15(2). https://lib-index.com/index.php/IJITMIS/article/view/527