Books
x dismiss this message

Did you know you can edit this page?

see page history

Description edit see section history

This three-hundred-forty page (6 wide by 9 length) publication provides auditors and security professionals with an appreciation for the complexities associated with assuring information assets protection and list numerous references for further in-depth information.

“IT Auditing:... read more

Summary edit see section history

"IT Auditing: Assuring Information Assets Protection" provides a proven approach to assessing IT security frameworks, architectures, methods, and techniques. In terms of content, this publication converts selected audit standards and guidelines into practical applications using detailed... read more

"IT Auditing: Assuring Information Assets Protection" provides a proven approach to assessing IT security frameworks, architectures, methods, and techniques. In terms of content, this publication converts selected audit standards and guidelines into practical applications using detailed examples and conceptual graphics. This publication also allows auditors and security professionals to understand various steps and processes required to adequately initiate, document, and compile information assets protection audit or review phases. Through this publication, auditors and security professionals will acquire an appreciation for the complexities associated with assuring information security programs.

Popular Covers

Loading covers…

Choose your book’s cover

Quotes edit see section history

  • “Potential stakeholders usually rely upon governance elements prior to investing their time, talent, and/or money.”
    Author
  • “Risk management incorporates a systematic approach for identifying risk and defining the impact on an entity’s ability to provide goods and/or services.”
    Author
  • “When performing risk-based assurance engagements, IT auditors should consider training and awareness for each auditable unit category at the detail risk assessment level; while maintaining a separate classification for this subcategorized item at the audit-plan-auditable-unit-level for working papers, if this item is within the audit or review ambit.”
    Author
  • “Since knowledge and ideas are an important part of cultural heritage, social interaction and business transactions, they retain a special value for many societies. Logically, if the associated electronically formatted information is valued, preventive and detective measures are necessary to ensure minimum organizational impact from an IPR security breach.”
    Author

Organizations edit see section history

  • Asia-Pacific Economic Co-operation (APEC): "Our primary goal is to support sustainable economic growth and prosperity in the Asia-Pacific region."
  • Council of Europe (COE): "The primary aim of the Council of Europe is to create a common democratic and legal area throughout the whole of the continent, ensuring respect for its fundamental values: human rights, democracy and the rule of law."
  • Information Systems Audit and Control Association (ISACA): "As a nonprofit, global membership association for IT and information systems professionals, ISACA is committed to providing its diverse constituency of more than 95,000 worldwide with the tools they need to achieve individual and organizational success."
  • Information Technology Governance Institute (ITGI): "The IT Governance Institute (ITGI) exists to assist enterprise leaders in their responsibility to ensure that IT is aligned with the business and delivers value, its performance is measured, its resources properly allocated and its risks mitigated."
  • Information Technology Infrastructure Library (ITIL): "ITIL advocates that IT services must be aligned to the needs of the business and underpin the core business processes. It provides guidance to organisations on how to use IT as a tool to facilitate business change, transformation and growth."
  • International Organization for Standardization (ISO): "The International Organization for Standardization (ISO) is a non-governmental organization based in Geneva, Switzerland, that works to develop technical standards for products and services sold around the world."
  • Organization for Economic Cooperation and Development (OECD): "Our mission is to promote policies that will improve the economic and social well-being of people around the world."
  • Organization of American States (OAS): "The OAS was established to achieve among its member states, as stated in Article 1 of its Charter, "an order of peace and justice, to promote their solidarity, to strengthen their collaboration, and to defend their sovereignty, their territorial integrity, and their independence.""
  • U.S. National Institute of Standards and Technology (NIST): "NIST's mission is to promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life."
  • World Intellectual Property Organization (WIPO): "The World Intellectual Property Organization (WIPO) is a specialized agency of the United Nations. It is dedicated to developing a balanced and accessible international intellectual property (IP) system, which rewards creativity, stimulates innovation and contributes to economic development while safeguarding the public interest."
  • World Trade Organization (WTO): "The WTO provides a forum for negotiating agreements aimed at reducing obstacles to international trade and ensuring a level playing field for all, thus contributing to economic growth and development."
Show all 11 organizations

First Sentence edit see section history

Globally, laws and regulations have been enacted and reinforced to ensure entities comply with a particular society’s expectations for ethical behavior when conducting business.

Table of Contents edit see section history

Chapter 1: Information Security Laws & Regulations
Chapter 2: Information Security Governance
Chapter 3: Control Environment
Chapter 4: IAP Management
Chapter 5: Entity Employees
Chapter 6: IT Audits and Reviews

Glossary edit see section history

  • Analog Signature: are a continuously varying waveform representing on and off bits appended to electronic information.
  • Phreaking: is the manipulation of a telephone system illicitly to enable an individual to utilize services without paying for them.
  • Safeguarding Malfeasance: is misconduct or wrongdoing regardingthe protection of entrusted assets.

Series & Lists edit see section history

This is book 8 of 16 in IT Auditing. (standard series)

Preceded by IT Auditing: Information Security Governance, and followed by IT Auditing: Business Continuity and Disaster Recovery.

This book is in Information Assets Protection. (community list)
This is book 8 of 16 in IT Auditing (community list). (community list)

Preceded by IT Auditing: Information Security Governance, and followed by IT Auditing: Business Continuity and Disaster Recovery.

This book is in "Non-Fiction". (community list)
This book is in Network Security. (community list)

Authors & Contributors edit see section history

  1. Robert E. Davis (Author)

First Edition edit see section history

Original Language: English
Publisher: Lulu.com
Country: United States of America
Publication Date: June 8, 2010
ISBN: 978-0-557-23537-7
Page Count: 340

More Books Like This edit see section history

   
  • IT Auditing: Assuring Information Assets Protection
  • IT Auditing: Assuring Information Assets Protection
  • IT Auditing: Using Controls to Protect Information Assets

Books with Additional Background Information edit see section history

   
  • IT Auditing: An Adaptive Process
  • IT Auditing: An Adaptive Process
  • IT Auditing: An Adaptive System
  • IT Auditing: The Process

We’re hiding the ridiculously simplified synopses, errata, awards, classification, reading level, movie connections, books that influenced this book, books influenced by this book, books that cite this book and books cited by this book sections. If you would like to add content to them, you must first make them visible.