Text
CISA: certified information systems auditor study guide
Contents:
Introduction
Assessment test
Chapter 1 Secrets of successful auditor
Understanding the demand for IS audits
Understanding policies, standards, guidelines, and procedures
Understanding professional ethics
Understanding the purpose of an audit
Differentiating between auditor and auditee roles
Implementing audit standards
Auditor is an executive position
Understanding the corporate organizational structure
Summary
Exam essentials
Review questions
Chapter 2 Governance
Strategy planning for organization control
Overview of tactical management
Planning and performance
Overview of business process reengineering
Operations management
Summary
Exam essentials
Review questions
Chapter 3 Auditor process
Understanding the audit program
Establishing and approving an audit charter
Preplanning specific audits
Performing an audit risk assessments
Determining whether an audit is possible
Performing the audit
Gathering audit evidence
Conducting audit evidence testing
Generating audit findings
Report findings
Conducting follow-up (closing meeting)
Summary
Exam essentials
Review questions
Chapter 4 Networking technology basics
Understanding the differences in computer architecture
Selecting the best system
Introducing the open systems interconnection model
Understanding physical network design
Understanding network cable topologies
Differentiating network cable types
Connecting network devices
Using network services
Expanding the network
Using software as a service (SaaS)
The basics of managing the network
Summary
Exam essentials
Review questions
Chapter 5 Information systems life cycle
Governance in software development
Management of software quality
Overview of the executive steering committee
Change management
Management of the software project
Overview of the system development life cycle
Overview of data architecture
Decision support systems
Program architecture
Summary
Exam essentials
Review questions
Chapter 6 Systrm implementation and operations
Understanding the nature of IT services
Performing IT operations management
Performing capacity management
Using administrative protection
Performing problem management
Monitoring the status of controls
Implementing physical protection
Summary
Exam essentials
Review questions
Chapter 7 Protecting information assets
Understanding the threat
Using technical protection
Summary
Exam essentials
Review questions
Chapter 8 Business continuity and disaster recovery
Debunking the myths
Understanding the five conflicting disciplines
Defining disaster recovery
Defining the purpose of business continuity
Uniting other plans with business continuity
Understanding the five phases of a business
Understanding the auditor interests in BC/DR plans
Summary
Exam essentials
Review questions
Appendix Answers to review questions
Index
No other version available