科技报告详细信息
Audits Made Simple
Belangia, David Warren1 
[1] Los Alamos National Lab. (LANL), Los Alamos, NM (United States)
关键词: General & Miscellaneous(99) Audit;   
DOI  :  10.2172/1177976
RP-ID  :  LA-UR--15-22546
PID  :  OSTI ID: 1177976
美国|英语
来源: SciTech Connect
PDF
【 摘 要 】

A company just got notified there is a big external audit coming in 3 months. Getting ready for an audit can be challenging, scary, and full of surprises. This Gold Paper describes a typical audit from notification of the intent to audit through disposition of the final report including Best Practices, Opportunities for Improvement (OFI), and issues that must be fixed. Good preparation can improve the chances of success. Ensuring the auditors understand the environment and requirements is paramount to success. It helps the auditors understand that the enterprise really does think that security is important. Understanding and following a structured process ensures a smooth audit process. Ensuring follow-up on OFIs and issues in a structured fashion will also make the next audit easier. It is important to keep in mind that the auditors will use the previous report as a starting point. Now the only worry is the actual audit and subsequent report and how well the company has done.

【 预 览 】
附件列表
Files Size Format View
1160KB PDF download
  文献评价指标  
  下载次数:7次 浏览次数:24次