Resource Center
Security Tools
Links to the top 25 security tools. A comprehensive list can be found at http://www.insecure.org
Vulnerability Assessments
We have partnered with a Vulnerability Assessment firm to provide Free Online System Vulnerability Assessments. This service is available to clients and subscribing members.
IT Auditor ToolBox
Over the years our IT audit professionals have assembled the ideal workstation. We refer to it as their toolbox...a notebook computer with both a MS Windows and LINUX operating systems and software tools from ACT, for data analysis, to Nessus scanner, for system security assessments. If you would like details of our Best-in-Class workstations, contact us.
References and Links
The following is a list of the categories of our frequently referenced links.
- IT Audit Training
- IT Audit Sites (Questionnaires, Checklists, Static Audit Programs)
- Audit Organizations
- Computer Security
- Useful Sites
SOX Testing Estimator
Click here to access our SOX Testing Estimator tool. It determines the total number of hours to perform SOX IT testing by process. The estimates are based on thousands of historical hours of performing SOX testing of General Computer Controls, Application Technical Controls and Application Access Controls.
Custom Audit Programs
The industry's first database-driven application for the creation of IT Audit Programs. Now, you can stop using last years audit programs which haven't been updated with today's technology risks. A few of the benefits include:
- Database of 20,000 audit steps.
- Updated daily with new audit steps as new vulnerabilities and risks are identified.
- You define how comprehensive an audit you want to execute.
- Preview the web-app-generated audit program online.
- Edit your steps online.
- You choose the format (PDF, MS Word (RTF), or HTML).
- Each dynamically generated audit programs has a corresponding Client/Customer Assistance Document Request (CADR) schedule.
- Email the audit program and/or the CADR immediately.
- Why maintain an library of audit programs that are static and seldom updated?
If the audit program you want is not available, we'll have one for you in 24 hours.
Sample Deliverables
We have provided a few samples of our deliverables for some of our standard projects, including:
- IT Audit Report
- Technology Risk Matrix
- ERP Segregation of Duties Analysis
For other sample deliverables please contact us.
Speaker Request
Securance Consulting is not only a superior co-source internal audit provider we support the internal audit industry by supporting the following organizations and their respective chapters:
- Institute of Internal Audit (IIA);
- Information Systems Audit and Control Association (ISACA);
- Association of Local Government Auditors (ALGA); and
- Association of Healthcare Internal Auditors (AHIA).
Additionally, our executive management team and consultants are frequently asked to present at conferences, lead workgroup training sessions and provide expert commentary related to technology risk.
For information or to request a speaker, please click here.
|