Rafael Enrique Rodriguez-Rodriguez, Andrés Felipe Quevedo Vega, A. F. Sánchez, Alexandra López, Jaime Fernando Pérez
{"title":"Design of an Automation Model for Taking Documentary Evidence of Compliance Tests of the IT Audit","authors":"Rafael Enrique Rodriguez-Rodriguez, Andrés Felipe Quevedo Vega, A. F. Sánchez, Alexandra López, Jaime Fernando Pérez","doi":"10.1109/CONIITI.2018.8587090","DOIUrl":null,"url":null,"abstract":"Nowadays IT audit is a priority for large, medium and small companies, for this reason techniques and methodologies have been developed to manage IT audits, in order to avoid the spread of threats and risks within organizations. For the project development, methodologies and good practices were investigated in order to manage IT audits, looking for the most aligned to the collection of evidences as well as the execution of the tests that are done to the controls in the systems of information, the foregoing aims to make a diagnostic selection of the available methodologies for IT audit evidence collecting, as well as identify the characteristics of the applications used in the management of IT audits also called CAAT tools with their functional aspects to categorize their effectiveness against applied methodologies, for the analysis of the results of the methodologies and thus propose a model to automate the collection of documentary evidence in compliance tests in IT audit, based on a methodology.","PeriodicalId":292178,"journal":{"name":"2018 Congreso Internacional de Innovación y Tendencias en Ingeniería (CONIITI)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 Congreso Internacional de Innovación y Tendencias en Ingeniería (CONIITI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CONIITI.2018.8587090","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
Abstract
Nowadays IT audit is a priority for large, medium and small companies, for this reason techniques and methodologies have been developed to manage IT audits, in order to avoid the spread of threats and risks within organizations. For the project development, methodologies and good practices were investigated in order to manage IT audits, looking for the most aligned to the collection of evidences as well as the execution of the tests that are done to the controls in the systems of information, the foregoing aims to make a diagnostic selection of the available methodologies for IT audit evidence collecting, as well as identify the characteristics of the applications used in the management of IT audits also called CAAT tools with their functional aspects to categorize their effectiveness against applied methodologies, for the analysis of the results of the methodologies and thus propose a model to automate the collection of documentary evidence in compliance tests in IT audit, based on a methodology.