Assurance
Information Technology Audit
The IT Audit division provides advisory and assurance services within the information systems environment. These services ensure that the controls in the general computer and information systems environment and controls over applications used to process financial and operational information are adequate to enable financial audit to place reliance on the information generated by the systems. The IT Audit Division provides support to both Internal and External audit clients. Our team is comprised of Chartered Accountants, Certified Information Systems Auditors, etc
IT Audit Services include:-
- General Controls Review – audit designed to address risks which are pervasive across the IS environment.
- Application Controls Review – audit designed to address application specific risks during input, processing and output.
- Computer Assisted Audit Techniques (CAATS) – audit designed to use computer procedures to process data of audit significance (data analysis) from an organisations accounting, personnel and other computer systems.
- Network Reviews – designed to establish the integrity of the networks supporting communication.
- Security Reviews – audit designed to establish information security management in an organisation.
- Disaster Recovery Review – audit is designed to review and the test the process, policies and procedures related to preparing for recovery of IT infrastructure critical to an organisation.
- IT Project Review – audit designed to establish whether IT projects have followed a formalized process and aligned to business requirements.
- Post Implementation Reviews – audit is designed to establish amongst others whether the intended objectives of implementing an IT solution are aligned to business objectives, to evaluate the adequacy of procedures and controls over input, processing and output and to identify potential risks and weakness in controls.
- SAP Basis and Authorisations Audit – audit designed to test basis module and segregation of duties amongst users.
- IT Due diligence – System reviews on a mergers and acquisition transaction.
- IT Tender Process / Procurement – Evaluate tender compliance review process.
- Process Assurance – Analysis to identify deviations to a best practice process or even benchmarked processes.
- IT Audit training – Training to an internal audit department
- IT Audit Dept Evaluation – as part of IIA Quality Assessment Review process.
- IT Policy and Procedure Review – Evaluation and Compilation of standard IT policies.
- IT System Selection – facilitate a Request for Proposal (RFP) process for an organisation.
Contact us for any related IT Assurance needs, click here (ITAudit@nkonki.com)