IT/Cybersecurity Audit & Compliance

IT/Cybersecurity Audit & Compliance

$3,000.00

This course is tailored for beginners and those looking to refresh their foundational understanding of IT audits and compliance. It provides a practical approach to conducting IT audits, with a strong focus on risk mitigation and executing key compliance tasks within the IT environment.

Category:

Description

Course Curriculum

  • Introduction to IT Compliance and Regulatory frame works
  • IT Audit planning, Request list and walkthroughs
  • IT General controls, Access control and Control testing
  • Business continuity plan and Disaster recovery
  • CISO exceptions and C&A
  • Data Center operation and server room access
  • ISO framework and Risk Analysis
  • Software incense monitory
  • Third party risk assessment and SOC
  • Remediation and control mapping

 

Course Objectives

Here’s what you’ll gain from the training:

  • Technical Knowledge: Understand IT infrastructure, networks, databases, cybersecurity risks, encryption, and data protection laws.
  • Risk Assessment & Management: Assess and manage risks related to technology, data, and processes, using frameworks like COBIT, NIST, and ISO/IEC 27001
  • Compliance Frameworks: Be familiar with key regulations such as GDPR, HIPAA, SOX, PCI DSS, and ISO/IEC 27001, along with industry-specific standards
  • Audit Techniques & Methodologies: Conduct audits, test controls, and collect evidence while using sampling techniques and effectively reporting findings.
  • Attention to Detail: Ensure thoroughness and accuracy in reviewing systems and processes to identify compliance risks.
  • Analytical Thinking: Analyze data to detect patterns and assess the effectiveness of internal controls.
  • Communication Skills: Present and document audit findings clearly for both technical and non-technical audiences
  • Problem-Solving & Troubleshooting: Identify issues in IT systems or compliance processes and develop creative solutions
  • Project Management: Manage multiple audits and compliance projects efficiently with strong organizational skills
  • Ethics & Integrity: Maintain high ethical standards when handling sensitive information and follow ethical guidelines in auditing
  • Regulatory & Legal Knowledge: Apply relevant laws and regulations, such as GDPR and HIPAA, to IT and compliance processes
  • Continuous Learning: Stay updated on technological advancements, regulatory changes, and pursue certifications like CISA or CISSP.
  • Tool Proficiency: Gain familiarity with auditing and compliance management tools like PeopleSoft, Active Directory, and OneTrust.