delITad High-Level IT Audit
Your organization can reach a point where you want to look ahead. For the past years your IT department has been evolving and very likely growing and you want to make sure you can take your department in the right direction. A number of questions might pop up:
- Am I still in full control of my IT department?
- Am I still in compliance with a regulatory requirements?
- What challenges am I facing in the near future?
As IT manager these questions are your responsibility, but the answers may not be so obvious. This is where delITad can be at your service. We offer our High Level IT Audit aimed specifically at getting a fast, no nonsense view of the state of your IT department including its main processes.
The total approach of the audit takes place according to these phases:
Analyze and understand:
To get a good picture of the functioning of the IT department we need to get a high level understanding of the strengths and weaknesses. To attain this information we will detail the environment surrounding the IT processes. We create an overview of your applications, sysels and platforms and link this to the processes they support.
Determine the Risks
It is important to note that at this stage we will only assess the Risk Profile. This means we will not yet assess the effectiveness of risk controls but we will focus on the so-called Inherent Risk to the IT environment.
Determine the Controls
Following the risk assessment we will try to get insight in the way the risks we identified in the previous stage are mitigated. This will concentrate around conducting interviews. At this stage we are reviewing the design of the controls: we define the control processes based on what we are told. In the next phase we move forward and start to perform tests of selected controls.
Risk and Control Matrix
The risks and controls will be illustrated in a matrix. This matrix will show the residual risk (controls versus risk) in terms of HIGH – MEDIUM – LOW for all IT areas. In the audit report this matrix will be discussed in great detail.
Reporting and Estimate
In the final phase of our audit a prioritized list will be created in collaboration with the IT manager focusing on all areas that need to be addressed based on the results of our high level IT audit. This includes an estimate on the possible number of days that would be needed to attain a reasonable level of assurance on the specific control.





