From the course: ISACA Certified Information Systems Auditor (CISA) Cert Prep

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

Business processes

Business processes

- [Instructor] So, we talked just a little bit about laws and regulations. Let's look at our business processes now. So of course, we've got to figure out, are we adequately managing risk as part of our audit? Do we have evidence that supports that claim? So, first of all, we have to figure out what the purpose of the processes are. And again, this comes at the beginning in the planning phases, one of the first things we do is we meet with the individuals that are hiring the audit function or authorizing the audit function. What is the purpose? Legal compliance? Process compliance? Is it some sort of industry standard? What's the purpose? Always have to start with the purpose. The importance, significance to the organization, and the effectiveness of those business activities. That kind of sums it up right there, right? Figure out what the purpose is, how critical it is, and is it effective? So, risk analysis, is it effective can be answered by risk analysis. And we want to make sure…

Contents