Information Systems Auditing, Controls and Assurance

所在平台: Coursera

课程主页: https://www.coursera.org/learn/information-systems-audit

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:信息系统审计、控制与保障 概述:该课程被Class Central评选为“有史以来最佳免费在线课程”和“2021年度最佳在线课程”。 信息系统(IS)是商业组织的重要资产,并普遍存在于我们的日常生活中。随着大数据、金融科技、虚拟银行等最新信息系统技术的出现,公众对组织如何维护系统完整性的问题日益关注,如数据隐私、信息安全和遵守政府法规等。组织管理层也需要确信系统按预期运行。信息系统审计师在处理这些问题中扮演着关键角色。 在“信息系统审计、控制与保障”课程中,您将探索信息系统的风险,以及通过适当的信息系统控制来降低这些风险。您还将熟悉信息系统审计程序及其在系统开发生命周期(SDLC)中如何应用。 最后,您将观察如何通过正式的信息系统管理实践(如变更管理控制和紧急变更)使系统变更更具可管理性。 课程讲师Percy Dias教授与信息系统审计实践者的对话将为您提供关于信息系统审计师如何履行职责、成为信息系统审计师所需的素质以及信息系统审计行业未来前景的具体见解。 本课程适合信息系统、信息技术和计算机科学的学生及毕业生,亦适合有志于进入信息系统审计领域的IT从业者。同时,它也是希望进一步学习信息系统审计认证(如注册信息系统审计师CISA)的学习者的良好起点。 课程大纲: 1. 信息系统审计简介: - 介绍信息系统审计与风险、控制及保障的关联,阐述风险的概念及三步风险管理过程。通过日常示例说明风险控制的重要性。 2. 执行信息系统审计: - 探索信息系统审计与财务审计的区别,了解一般信息系统审计程序和审计员需进行的两大主要测试,以及获取证据以编写审计报告的步骤。 3. 商业应用开发与信息系统审计师的角色: - 审视信息技术从业者在系统开发生命周期(SDLC)中如何开发商业应用,信息系统审计师在SDLC不同阶段所发挥的作用。 4. 信息系统维护与控制: - 探讨信息系统的常规变更请求及其管理,强调组织应遵循正式程序进行变更管理,介绍变更管理控制、维护实践及紧急控制的概述。同时,与信息系统审计实践者的对话将给您提供关于信息系统审计未来发展的深入见解,以及其对新兴金融科技行业的支持。

课程大纲

Name:Introduction to Information Systems (IS) Auditing

Description:IS Auditing is related to risks, controls and assurance. In the first module, Prof. Dias introduces what risk is about. Getting deeper to risk, the 3-step risk management process is elaborated. To manage risks, controls need to be established. Prof. Dias also demonstrates with daily examples on what the controls are.

Name:Perform IS auditing

Description:You may have heard of financial auditing, do you know the difference between IS auditing and financial auditing? You are going to explore more about IS auditing through the conversation between Prof. Dias and the IS audit practitioner. Prof. Dias then explains the general IS audit procedures and two major testings that IS auditors/compliance officers have to conduct. Prof. Dias also explains the procedure to obtain evidence in order to produce justified audit reports.

Name:Business Application Development and the Roles of IS Auditors

Description:IT practitioners develop business applications following the Systems Development Life Cycle (SDLC). IS auditors are in place to ensure the controls are implemented to mitigate the risks of developing application systems throughout the SDLC. Prof. Dias is going to review what IT practitioners usually do, and further elaborate the role that IS auditors play in different phases of SDLC.

Name:IS Maintenance and Control

Description:Information systems seldom remain static, it is common for users to make change requests to add new features, or refine existing functions some time after the information system launches. Organizations should follow a formal procedure to make the changes in their systems manageable. Prof. Dias is going to give you an overview on the change management controls which organizations should follow. Different kinds of maintenance practices, and Emergency Controls are also discussed in this module. Finally, Percy's conversations with the IS audit practitioner give you better insights on the future development of IS audit and how IS audit support the newly emerged FinTech industry.

课程评论(0条)

课程详情

The course is awarded The Best Free Online Courses of All Time, and Best Online Courses of the Year (2021 Edition) by Class Central (http://www.classcentral.com). --- Information systems (IS) are important assets to business organizations and are ubiquitous in our daily lives. With the latest IS technologies emerging, such as Big Data, FinTech, Virtual Banks, there are more concerns from the public on how organizations maintain systems’ integrity, such as data privacy, information security, the compliance to the government regulations. Management in organizations also need to be assured that systems work the way they expected. IS auditors play a crucial role in handling these issues. In the course “Information Systems Auditing, Controls and Assurance”, you will explore risks of information systems, and how to mitigate the risks by proper IS Controls. You will also get familiar with the IS Audit procedures and how they are applied during the IS development throughout the Systems Development Life Cycle (SDLC). Finally, you will get to observe how we can make the system changes more manageable using formal IS Management practices, such as Change Management Controls and Emergency Changes. The conversations between the course instructor - Prof. Percy Dias, and the IS auditing practitioner will give you a concrete idea on how IS auditors perform their duties, the qualities to become IS auditors and future prospects of IS auditing industry. This course is suitable for students and graduates from Information Systems, Information Technology and Computer Science, and IT practitioners who are interested to get into the IS auditing field. It is also a good starting point for learners who would like to pursue further studies for IS audit certifications – such as Certified Information Systems Auditor (CISA).

课程标签

0人关注该课程

主题相关的课程