Audits Made Simple | |
Belangia, David Warren1  | |
[1] Los Alamos National Lab. (LANL), Los Alamos, NM (United States) | |
关键词: General & Miscellaneous(99) Audit; | |
DOI : 10.2172/1177976 RP-ID : LA-UR--15-22546 PID : OSTI ID: 1177976 |
|
美国|英语 | |
来源: SciTech Connect | |
【 摘 要 】
A company just got notified there is a big external audit coming in 3 months. Getting ready for an audit can be challenging, scary, and full of surprises. This Gold Paper describes a typical audit from notification of the intent to audit through disposition of the final report including Best Practices, Opportunities for Improvement (OFI), and issues that must be fixed. Good preparation can improve the chances of success. Ensuring the auditors understand the environment and requirements is paramount to success. It helps the auditors understand that the enterprise really does think that security is important. Understanding and following a structured process ensures a smooth audit process. Ensuring follow-up on OFIs and issues in a structured fashion will also make the next audit easier. It is important to keep in mind that the auditors will use the previous report as a starting point. Now the only worry is the actual audit and subsequent report and how well the company has done.
【 预 览 】
Files | Size | Format | View |
---|---|---|---|
1160KB | download |