Presentation is loading. Please wait.

Presentation is loading. Please wait.

1 Computer Auditing ( What is it, what skill set do you require & how much can you earn?) John Mitchell Academic Relations Director ISACA London Chapter.

Similar presentations


Presentation on theme: "1 Computer Auditing ( What is it, what skill set do you require & how much can you earn?) John Mitchell Academic Relations Director ISACA London Chapter."— Presentation transcript:

1 1 Computer Auditing ( What is it, what skill set do you require & how much can you earn?) John Mitchell Academic Relations Director ISACA London Chapter LHS © John Mitchell

2 LHS © John Mitchell 2 Confusion then, confusion now! "On two occasions, I have been asked by members of Parliament, 'Pray, Mr. Babbage, if you put into the machine wrong figures, will the right answers come out?' I am not able to rightly apprehend the kind of confusion of ideas that could provoke such a question." Charles Babbage (1791-1871)

3 LHS © John Mitchell 3 What is It? n An objective & independent service to management providing: –assurance on the reliability of the IT governance processes –quality assurance of developments –help build controls into systems –provide risk management advice –conduct special investigations –computer forensics

4 LHS © John Mitchell 4 Why is it Important? n IT is becoming a top priority for executive management n Increased access to and use of computers n Growing concern for data security due to proliferation of technology n Increased systems complexity n Increasing statutory and regulatory compliance requirements n Growth in computer crime

5 LHS © John Mitchell 5 Technology Developments 1970 to Present n Single batch program n Batch Multi-tasking n On-line retrieval n Real-time update n Stand alone PCs n Networking n File servers & distributed processing n Internet, Intranet & Extranet n Palm Devices n Phone devices n Implants

6 LHS © John Mitchell 6 IT Responsibilities Hardware Base Software (Operating System & DBMS) Network Application Software Data User Processes IT Processes

7 LHS © John Mitchell 7 Traditional Audit Responsibilities Hardware Base Software (Operating System & DBMS) Network Application Software Data Computer Audit Financial Audit User Processes IT Processes

8 LHS © John Mitchell 8 Type of Work n Infrastructure reviews n Application reviews n Pre-implementation reviews n Security reviews n Network control reviews n IT risk management n Advisory roles n Training n Data integrity assurance n IT governance assurance n Control design advice

9 LHS © John Mitchell 9 Why Do It? n Permits a fast, high-level understanding of the entity and industry n Exposure to senior-level management n Transportable disciplines n Growth market n Networking opportunities n Potential travel

10 LHS © John Mitchell 10 Skill Set Required n In-depth knowledge of IT & IS n Business knowledge n Risk management knowledge n Interviewing skills n Good written & oral communication n Excellent analytical ability n Investigative skills n Project management skills n Documentation skills n Knowledge of the law n Social skills

11 LHS © John Mitchell 11 What Qualifications? Not mandatory, but the options are: –Certified Information Systems Auditor (CISA) –Qualification in Computer Audit (QiCA) –Member of the British Computer Society (MBCS) –Diplomas in Internal Auditing (PIIA, MIIA, CIA) –Certified Information System Security Practitioner (CISSP) –Certified Information Security Manager (CISM) –Chartered Software Engineer (CEng) –BSc/MSc in Computer Science or Computer Security Smarty Pants ££££

12 LHS © John Mitchell 12 Different Aspects/ Different Skills

13 LHS © John Mitchell 13 Career Progression? n Director of IT n Director of Internal Audit n Project manager n Consultancy n Academia n Forensic computing n Law enforcement n Money launderer?

14 LHS © John Mitchell 14 Tools n Computer Assisted Audit Techniques (CAATs) n Control Objectives for IT (CobiT) n Information Security Management Standard (ISO 17799) n Firewall/Network penetration software n Development methods (e.g. PRINCE)

15 LHS © John Mitchell 15 CobiT n Control Objectives for IT n Produced by the Information Systems Audit & Control Association (ISACA) n International open standard n Used by over 30,000 auditors n www.isaca.org

16 LHS © John Mitchell 16 CobiT n Planning & Organisation n Acquisition & Implementation n Delivery & Support n Monitoring

17 LHS © John Mitchell 17 Professional Support n Information Systems Audit & Control Association (ISACA) n BCS Information Risk Management & Audit Specialist Group (BCS-IRMA) n IT Faculty of the Institute of Chartered Accountants

18 LHS © John Mitchell 18 ISACA n Founded in 1969 n Facilitates a free exchange of audit techniques and problem-solving approaches among members n Promotes increased awareness of IT Governance and IS controls n Provides membership opportunities for students as well as experienced practitioners

19 LHS © John Mitchell 19 Local Support n Local chapter - London n Third largest in the world (circa 900 members) n 10 free monthly meetings per year n Networking opportunities n Low cost seminars and conferences n Publications þ Monthly newsletter þ Quarterly award winning magazine þ Award winning web site n Reduced student member rate (£32)

20 LHS © John Mitchell 20 What Can You Earn? n Partner of Big 4 - £350,000+ n Senior IT Auditor in London: £30,000 - £90,000 n Middle East: £50,000 - £150,000

21 LHS © John Mitchell 21 Further Information www.isaca-london.org

22 LHS © John Mitchell 22 Questions? John Mitchell Academic Relations LHS Business Control 47 Grangewood Potters Bar Hertfordshire EN6 1SL England Tel: +44 (0)1707 851454 Fax: + 44 (0)1707 851455 john@lhscontrol.com www.lhscontrol.com


Download ppt "1 Computer Auditing ( What is it, what skill set do you require & how much can you earn?) John Mitchell Academic Relations Director ISACA London Chapter."

Similar presentations


Ads by Google