Skip to main content

Audit & Attestation

Information System Audit

Review of IT general controls, application controls and information security.

Overview

Information system audit is the examination of an entity's information technology environment — its general controls, application controls, data integrity and information security — and the effect of that environment on the financial reporting process.

The engagement is undertaken in accordance with the applicable professional standards and the ICAI's guidance on information systems audit.

Scope & areas covered

  • IT general controls: access, change management and operations
  • Application and interface controls over financial systems
  • Data integrity, backup and business continuity arrangements
  • Information security and segregation-of-duties review