Features
- Cover Type: Hard Cover with 720 pages
- Published by: AUERBACH
- Edition: 2nd Edition March 26, 2004
- Written in: English
- ISBN 10 Number: 0849320321
- ISBN 13 Number: 978-0849320323
-
Book Dimensions:
9.5 x 6.6 x 2 inches
- Weighs: 3 pounds
Product Review
The book is very useful for beginners as well as practitioners[It] is well written and presented. Its practical implementation in the country of origin of the authors (USA) should provide resiliency to IT security in the emerging cyberworld.
- Information Systems Control Journal, Vol. 4, 2005
Product Description
Information Technology Control and Audit, Second Edition is an great introductory textbook for IT auditing. It covers a wide range of topics in the field including the audit process, the legal environment of IT auditing, security and privacy, and much more. This textbook first looks at the foundation of IT audit and control, discussing what IT auditing involves and the guidance provided by organizations in dealing with control and auditability issues. It then analyzes the process of audit and review, explores IT governance and control, and discusses the CobiT framework and steps that align IT decisions with business strategy. This volume looks at project management processes that ensure that projects are controlled from inception through integration. It continues by addressing auditing IT acquisition and implementation, describing risks and controls as related to the life cycle of application systems. It highlights the purchase and installation of new systems, as well as change management. The next section looks at the auditing of IT operations in both standalone and global environments, covering types of IT operation, issues related to specific platforms, risk and control assessment, and audit methods and support tools. The textbook concludes with a review of emerging issues, providing undergraduate and graduate students with a thorough overview of a topic critical to organizational security and integrity.
Reader Reviews
This review is from: Information Technology Control and Audit (Hardcover)
I will take CISA on coming Saturday, in fact, this is my reference material, I found that those materials are very comprehensive and it quotes some practical cases and examples to illustrate the concept. Meanwhile, I found that some sample CISA questions are obtained from there, that's reason I persist to complete it. In addition, the most important point is that it provides some useful appendix like Sample Audit Program and Audit Cases Excercises, it is readily helpful. It do helps me to enrich myself in MIS techniques and review what I have experienced in the past once I have adopted an audit and control mindset. The 2nd edition is released and you could refer it as below: http://www.isaca.org/Template.cfm?Section=bookstore&Template=/Ecommerce/ProductDisplay.cfm&Productid=155
Comment | |
(Report this)