Skip to main content

Audit & Attestation

Information System Audit

Review of IT general controls, application controls and information security.

From below of fiber optic switch with sockets and connected rubber cables on blurred background
Photograph by Brett Sayles on Pexels

Overview

Information system audit is the examination of an entity's information technology environment — its general controls, application controls, data integrity and information security — and the effect of that environment on the financial reporting process.

The engagement is undertaken in accordance with the applicable professional standards and the ICAI's guidance on information systems audit.

Scope & areas covered

  • IT general controls: access, change management and operations
  • Application and interface controls over financial systems
  • Data integrity, backup and business continuity arrangements
  • Information security and segregation-of-duties review