Description
Project auditing requires three skills: audit rules and ethics, expertise in IT technologies and mastery of project management processes. This seminar presents the fundamental principles of auditing IT projects, within the framework of current standards (CMMI and COBIT).
Who is this training for ?
For whom ?
Auditors who want to master the techniques and specificities of auditing IT projects or IT professionals who wish to progress towards auditor functions.
Prerequisites
Basic knowledge of Information Systems. Experience required in leading IT projects.
Training objectives
Training program
- Auditing outsourced projects
- Rules and practices on the mission: traceability of information collected, presentation of conclusions.
- Evaluation of deliverables and products
- Conformity of the definition of the solution to the needs.
- Quality evaluation of the architecture.
- Adequacy of the technical choices.
- Quality factors.
- The quality of the documentation.
- Risk analysis of a project
- What is a risk?
- Notions of event, causes and consequences.
- Types of risks: strategic, projects, products, use, maintenance.
- Evaluation of project management
- Verification and measurement of the level of progress and consumption.
- Evaluation of the "Remainder to be done".
- Compliance of project processes with procedures and standards applicable.
- Conduct an audit mission
- The initiation of the audit.
- The mission letter.
- The composition of an audit team.
- Sources of information: documentation, analysis of tests and project management data.
- Preparation of the audit report, standard forms and plans.
- Project audit and compliance with standards
- The notion of conformity.
- Application to IT projects, limits and principles.
- Good IT governance, the place of COBIT, avenues audit, control objectives.
- CMMI: a maturity model for improving project processes.
- IS audit and security.
- The ISO 17799 standard: principles.
- ITIL®: preparation and implementation of support for project deliverables, configuration management.
- Introduction to project auditing
- Definition (audit, inspection, control, review) and audit practices.
- Auditing standards, auditor ethics: essential rules.
- The certifications of CISA, CISM (ISACA-AFAI) and CIA (IIA-IFACI) auditors.
- IT projects today
- Observations, progress and difficulties of IT projects.
- Areas for improvement, success factors.
- Trends: the project as a investment, professionalization, good practices.
- Notion of organizational maturity (CMMI approach) and consequences on project management.