Governance, Risk & Compliance Advisory Blog

Bringing IT to your business

About the author

Author Name is someone.
E-mail me Send mail

Recent posts

Recent comments


The opinions expressed herein are my own personal opinions and do not represent my employer's view in anyway.

© Copyright 2015

Defining and Planning the Scope of an IT Audit

IT Audit is the process of collecting and evaluating evidence to determine whether a computer system has been designed to maintain data integrity, safeguard assets, allows organisational goals to be achieved effectively, and uses resources efficiently. The most crucial aspect of conducting an IT audit is to well define the scope and objective of what would be covered as part of this audit. Scope would mean what the organization would like to include such as time period and departments. Objectives are what the organization is trying to achieve. Example: Comply with legal requirements etc. 

An audit’s primary objective is to examine key controls and ensure that:

  • Systems are in place departmentally and across the organization
  • Information in the systems are reliable and integrity has not been compromised
  • Compliance exists with policies, procedures, laws, and regulations.
  • Assets are safeguarded and verify the existence of those assets.
  • Operations or processes are consistent with established management goals and objectives.
  • Employees in the organization are enabled to successfully perform their duties, discharge their responsibilities and pertinent information concerning their activities is being reviewed.

While deciding on the scope of the audit, care should be taken to clearly define the objective that is sought to be met by this audit. Also for every control one must take into account the amount of risk if that particular activity is not executed or that particular control has been breached. Scope of audit could be just to meet to company procedures or it may be to comply with legal requirements. Also the coverage of the audit, for example entire organization or just one department should also be specified. If the audit is done as per part of a client requirement they may also have a say in deciding the locations or organizational activities that are to be included in the audit. In that case the scope and depth of the audit should be designed to meet the client information security needs. If appropriate even the auditee can be included in deciding the scope of the audit. The key here is to stay within the scope decided and not to wander from it. 

The organization would also need to ensure that the resources committed to the audit are sufficient to meet the decided scope and objective. The primary audit objectives are to review the original data and processes to determine the level of procedural compliance, review the procedures themselves, and produce an audit report on the accuracy of the data and level of compliance. This usually is important in a range of different industries since stakeholders would want to know need to know how much they can rely on reports coming in from various processes and the level of risk in different areas of the operation. The risk of audit error is an important audit objective. This just implies that the auditor came to a wrong conclusion or could not detect a non conformance. For example, if the purpose of the audit was to identify the rate of compliance with legal requirements, and the auditor confirmed compliance was found, the audit risk is the chance that this is not the case and that the auditor missed it. Other objectives of audit are to assist management in the pursuit of return on investment. This is achieved through economic, efficient and effective use of resources. 

Audit also would be conducted by people who are not from the process being reviewed. Hence the organization may have a separate internal audit team or get help from external auditors to conduct the audit. However this needs to be planned in advance. 


Defining the scope of audit helps organization prepare a blue print of the desired action. The audits can get completed in time. Allocation of work gets better as well as the reporting too. It also provides confidence to the process owners about the working of various departments. It helps in the prevention and detection of errors. A well scoped and planned audit also provides an independent opinion of the auditor about business condition.

Be the first to rate this post

  • Currently 0/5 Stars.
  • 1
  • 2
  • 3
  • 4
  • 5

Posted by nirav on Sunday, May 30, 2010 5:23 PM
Permalink | Comments (45) | Post RSSRSS comment feed

Related posts


Payday Loans Online hr

Saturday, January 22, 2011 4:11 PM


Great blog, keeping me from working

Payday Advance sg

Saturday, January 22, 2011 8:51 PM


Interesting post :)

diablo 2 cd key dz

Thursday, January 27, 2011 4:09 AM


Thanks,have a good time in diablo 2!

Charlie ar

Saturday, January 29, 2011 9:52 AM


What a super blog!

pregnancy massage us

Wednesday, March 16, 2011 4:08 PM


We provide osteopathy, Chiropractic, acupuncture, massage and nutrition services in the North Ryde, Lane Cove, Macquarie Park and Ryde areas of Sydney, NSW.

thomas sabo us

Saturday, March 19, 2011 1:24 PM


nd Ryde areas of Sydney, NSW.

William Barentine us

Monday, March 21, 2011 9:08 PM


A payday loan is a small, short-term loan that is intended to cover a borrower's expenses until his or her next payday. The loans are also sometimes referred to as cash advances, though that term can also refer to cash provided against a prearranged line of credit such as a credit card. <a href="";>Payday Loan Guy</a>

vigrx plus us

Thursday, March 24, 2011 6:33 PM


thank you for this.. by the way, your layout is great.

travel marketing us

Monday, March 28, 2011 12:31 AM


Its been nice to go through your post.
It has given me much knowledge & so many valuable information.

I'm feeling very nice to be here. so enjoyable...!

poland flower pl

Tuesday, March 29, 2011 3:20 AM


Wow! Great post. Thanks again...

mothers day flowers delivery Japan jp

Tuesday, March 29, 2011 3:21 AM


This website is pretty cool!

travel marketing us

Sunday, April 03, 2011 4:12 AM


That is a great post, indeed!
I liked very much to go through it...

pacquiao vs mosley us

Saturday, April 23, 2011 10:48 AM


This blog is really Cool! You can visit my site for the upcoming fight of Pacquiao vs Mosley.

pacquiao vs mosley us

Monday, May 09, 2011 10:56 AM


Hello buddy, can I guest post in your blog? I really like your blog that's why i want to post here.

pacquiao vs mosley us

Wednesday, May 11, 2011 6:57 PM


your blog is very informative.... i love reading it!

mspa B-130 us

Monday, May 23, 2011 7:10 AM


What a great ability of writing this post contains. Its been a true pleasure to go through your post. Keep up this good working.

Dominant Violin Strings us

Tuesday, May 31, 2011 6:09 PM


The largest selection of violin strings on the internet. Great prices, world class service.

infrared quartz heaters us

Monday, June 13, 2011 3:00 AM


A look into the world of heating through Infrared Heaters. Infrared heaters have numerous uses and are much more efficient than the common immobile heaters.

Pandora Bracelets us

Sunday, June 19, 2011 12:52 PM


nice way to present infrmation this, your blog is very easy for the user to read

alkalizer water us

Monday, July 04, 2011 4:23 PM


I really like your blog and there are some interesting points made. There are so many sites out there which are badly presented that it's a pleasant suprise to find a good one.

extra large dog doors

Tuesday, August 09, 2011 10:44 PM


Save 20% now on all horse saddles storewide. Featuring the most popular brands and styles from Abetta, Fabtron, Big Horn, TexTan, American Saddlery, Saddlesmith of Texas and more!

best pitching machine

Thursday, August 11, 2011 3:48 PM


Save 20% now on all horse saddles storewide. Featuring the most popular brands and styles from Abetta, Fabtron, Big Horn, TexTan, American Saddlery, Saddlesmith of Texas and more!

best propane patio heater

Monday, August 15, 2011 1:47 AM

Gravatar offers information on selecting a Patio Heater, including Outdoor and Electric Patio Heaters and Patio Heating.

apb cash us

Thursday, August 18, 2011 4:36 PM


However this needs to be planned in advance.

buy dragon nest gold us

Saturday, August 20, 2011 6:37 AM


We write original and non-plagiarized essays.

anonymous proxy us

Sunday, September 11, 2011 9:53 AM


This is a great post. I think there is many thing to learn from this post. So i request all for visiting the site.

good online casino us

Thursday, September 15, 2011 11:52 PM


Now i'm and so pleased to obtain determined your site. I need your subject matter who have utilized here. Stunning employment.

ATV Parts

Tuesday, September 20, 2011 2:13 PM


ATV Part Center is a full-service, online Atv parts catalog tailored to the needs of any Polaris ATV or Polaris Ranger owner.

CPA-traffic us

Friday, September 23, 2011 5:21 AM


Scope of audit could be just to meet to company procedures or it may be to comply with legal requirements. Also the coverage of the audit, for example entire organization or just one department should also be specified.

viral marketing forums us

Monday, September 26, 2011 6:24 PM


The most crucial aspect of conducting an IT audit is to well define the scope and objective of what would be covered as part of this audit.

Chapel Hill Photos us

Friday, November 04, 2011 2:00 AM


This is the homepage for - the community portal for the Chapel Hill, Carrboro, Hillsborough, and Orange County community.

Petroleum Litigation us

Friday, November 04, 2011 2:34 AM


Johnson & Repasky's experience in the area of petroleum marketing law and litigation is unmatched in the state of Kentucky, and extends regionally. us

Friday, November 04, 2011 8:54 AM


Trover Solutions is the premier provider of healthcare recoveries and insurance subrogation in the U.S.

ford lexington ky us

Friday, November 04, 2011 9:39 AM


Things to do in Lexington KY, including lexington event calendars, event photos, movie times, keeneland, uk sports, and so much more.

toyota lexington ky us

Sunday, November 06, 2011 12:10 PM


Searching for Toyota south motors in Lexington ky? Then visit, one of the best Toyota Lexington ky classified website. You will get all the information about Toyota Lexington.

Sulfate Shampoo us

Thursday, November 17, 2011 1:09 PM


This is getting a bit more subjective, but I much prefer the Zune Marketplace. The interface is colorful, has more flair, and some cool features like 'Mixview' that let you quickly see related albums, songs, or other users related to what you're listening to. Clicking on one of those will center on that item, and another set of "neighbors" will come into view, allowing you to navigate around exploring by similar artists, songs, or users. Speaking of users, the Zune "Social" is also great fun, letting you find others with shared tastes and becoming friends with them. You then can listen to a playlist created based on an amalgamation of what all your friends are listening to, which is also enjoyable. Those concerned with privacy will be relieved to know you can prevent the public from seeing your personal listening habits if you so choose.

Sulfate Free Shampoo us

Friday, November 18, 2011 11:48 AM


Sorry for the huge review, but I'm really loving the new Zune, and hope this, as well as the excellent reviews some other people have written, will help you decide if it's the right choice for you.

Sharjah hotel apartmentsjah ae

Thursday, December 22, 2011 4:58 AM


Hi, I found your post really helpful. It helped me all the way in completing my assignment, I am also giving a reference link of your blog in my case study. Thanks for posting such informative content. Keep posting.

sperm count increase

Saturday, April 14, 2012 5:28 AM


increase ejaculation volume


Sunday, April 22, 2012 7:09 PM



treatment for ibs

Wednesday, April 25, 2012 4:02 PM


treatment for irritable bowel syndrome

Stun Gun us

Sunday, May 06, 2012 10:55 AM


Hands down, this is one of the best blog you have here and would like to visit again some day. It’s a violent world that we live and a lot of times we will be in situations where we feel like we may be threatened or that we have to protect ourselves. The good news is that even though it’s a violent world out there, you have many options to use to protect yourself. One of these options is to get a <a href=""" rel="nofollow">";>Stun Guns</a>Top notch post and will be back one day. This is getting a bit more subjective, but I much prefer spend money on protecting myself and my family by securing personal safety gear like <a href=""" rel="nofollow">";>Stun Guns</a>

abercrombie fitch paris

Monday, May 07, 2012 6:27 AM


La sua come avete letto la mia mente! Ti sembra di cogliere molto di questo, come lei ha scritto il libro e in essa o qualcosa del genere. Io credo che si possa fare semplicemente con un po 'p.c. di ricondurre il messaggio un po ', ma invece di quello, che è grande blog. Una lettura fantastica. Mi sarà sicuramente indietro. Era davvero una questione vera e propria problematica per me, tuttavia, scoprendo la modalità di trattamento specializzato che mi ha costretto a piangere sulla felicità.

abercrombie deutschland us

Wednesday, May 30, 2012 3:52 PM


Es war sehr hilfreich für mich. Halten Sie den Austausch solcher Ideen in der Zukunft. Das war eigentlich das, was ich gesucht habe, und ich bin froh, hierher gekommen! Dank für das Teilen einer solchen Information mit uns.

true religion sale

Friday, June 01, 2012 10:50 AM


Decide on True Religion could quite possibly bluejeans being existing

When absolutely everyone entanglements decide that the label of shorts, following I propose you a small number of model design and style tight pants or skirts, I actually may choose to True Religion may well trousers in addition to diesel engine power denims.

Once you want to benefit from creator dresses, any moment shorts are already 1st developed, no-one can certainly think about which variety daytime you will possess any sort of famous type of a pair of jeans. True Religion denim jeans concerning many more guide operate, since this kind of components may take numerous take advantage of. Simply begun to principally concerning people format denims, when gals did start to use bluejeans. True Religion could trousers all over the extensive location, is going to be offered primary retail merchant on the inside Ny coastline, Are generally. Some other type of chain stores throughout C . your ., Hillcrest, New york city, Boston celtics and also Altlanta ga, Chicago, illinois, il, Seattle, washington and also Kansas city, Houston, Orlando, florida, fl, roseville (New york), Newport seaside Cabazon, roseville cole Japanese Madeira, Polk, Philly, grant's destination, New york copa toy store, Nv, New jersey, Tigard, (or simply), quick fields, Paramus, Nj-new hat), Ocean urban centre, tyson, a new Mindset, identity, beech, Sherman oaks "SAN jose, bell and mainly throughout Greater london and as well Pittsburgh. Can also detect True Religion might possibly denim jeans. If however, you visit haya Ross department shops or maybe a valuable thing richie's spot merchant, you will see truth be told there while in the True Religion recent can bluejeans.

In buy to pick out a wonderful celebration compensation definately pals, and so True Religion might possibly pants would be a effective selection.

Comments are closed