preview

Role Of Auditing And Regulatory Compliance

Better Essays

ROLE OF AUDITING IN REGULATORY COMPLIANCE BY: SHEFALI VERMA (A-20325809) ILLINOIS INSTITUTE OF TECHNOLOGY, CHICAGO

ABSTRACT
Risk, compliance and governance activities are by nature interconnected and rely on common sets of information, processes, technology and methodology. The traditional approach to governance, risk and compliance relies on working in silos and using separate point solutions to address each assurance group’s requirements. This creates a fragmented approach …show more content…

This research paper focuses on how IT audits are done and how they can help in assisting an organization in its regulatory compliance effort by identifying information security weaknesses prior to an external audit. The key players and their roles are defined, as well as organizational, results-based, point-in-time systems and extended-period audits. This leads to a natural question. In this new world of connected GRC, what is the role of internal audit compared to compliance? Where do these roles remain separate and where do they share responsibilities? How can these professionals work together to drive business value?
This paper can help in understanding how the board, management, and internal audit each have a significant role in ensuring information security is effective. We can learn that internal auditing can also help prepare the organization for an external regulatory audit (SOX or HIPAA, for example) by evaluating management 's efforts and providing recommendations for improvement prior to the external audit. This can help in understanding that IT security audits contribute to an organization 's regulatory compliance efforts by confirming to senior management and

Get Access