Download as doc, pdf, or txt
Download as doc, pdf, or txt
You are on page 1of 2

Audit Report

ABC IT Firm

Procedure Title: IT Audit Checklist Auditor: Chief Internal Auditor Audit No: 01
Procedure Ref No: Key Areas within six months Auditee: Date:

Rating Key: n/c – Non-Conformity; OBS – Observation;  - Pass

Ref No Audit Item Outcome Rating

Section 1 - Auditing Entity-Level Controls, Auditing Data Centres and Disaster Recovery

 Level Controls, Auditing Data Areas considered include:


Centres and Disaster Recovery  Document Approval
 Authentication levels of the company
 Disaster Recovery plan

 Data storing centres

1
The company management has initially start the section 1 auditing for the ABC IT firm.

As disaster recovery plan for data backup and restoration of electronic information is
essential. Additionally company can transfer important data to another branch at the end
of the day or week

Section 2 - Auditing Routers, Switches, Firewalls and Security Devices

Areas considered include:


 Setup proper routers, switches, firewalls and security devices
 Routers, Switches, Firewalls and  Maintenance 
2
Security Devices  Regular updates

763943210.doc 1
Audit Report
Ref No Audit Item Outcome Rating

Section 3 Auditing Windows Operating Systems, Auditing UNIX and Linux Operating Systems, Database & Storage

 Windows Operating Systems, Areas considered include:


Auditing Unix and Linux  Operating System Updates and Maintenance
Operating Systems, Database &  Database and Storage backup mechanisms

Storage  Restoring databases and storage devices

In the 3rd section od auditing company has to concentrate on networking OS and


databases of the company. It is important to make sure these components are properly
checked and maintain. For example it is important to update OS and backup databases.

Section 4 Auditing Applications, Web Servers, Web Applications and Projects

Areas considered include:


 Use authorized applications and make sure to update
 Web Servers should properly secure and protected from the threads
 Applications, Web Servers, Web 
4  Web applications should update and make changes according the company needs
Applications and Projects
 Projects should be properly managed and finish before given deadline

763943210.doc 2

You might also like