Islands Data Governance Forum: Audits and Auditing
CIISF/JDPA: Why security and data protection specialist should ’embrace the audit’.
Audits and assessments are the life-blood of the security and DP teams. Whether it’s ISO 27001 audits, ICO investigations, self-assessments from head office, SWIFT attestations (if you’re a bank you’ll know all about those), it can feel like we’re constantly battered by auditors and assessors. We’ll talk about why it’s in our interest to make the most of these assessments, and what we can do to ease the pain.
BCS: Audits are a pain – but we should make the most of them.
Any company that has an annual financial audit will have an annual call on the IT team for the “IT General Controls” element – where the auditors are grilling the IT team to ensure that IT systems have sufficient controls in place to prevent someone from cooking the books. It’s a nuisance – but can we, the IT team, use it to our advantage?
Virtual attendance via Zoom:
- ID: 811 1199 3107
- PC: 092636