<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>auditor &#8211; РИСК-АКАДЕМИЯ &#8211; АНО ДПО ИСАР</title>
	<atom:link href="https://risk-academy.ru/tag/auditor/feed/" rel="self" type="application/rss+xml" />
	<link>https://risk-academy.ru</link>
	<description>Управление рисками, риск менеджмент, обучение по управлению рисками, тренинг риск менеджмент</description>
	<lastBuildDate>Mon, 14 Dec 2020 07:24:15 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://raruswebsite.s3.amazonaws.com/wp-content/uploads/2018/02/10213225/cropped-favicon-32x32.png</url>
	<title>auditor &#8211; РИСК-АКАДЕМИЯ &#8211; АНО ДПО ИСАР</title>
	<link>https://risk-academy.ru</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Delivering value from IT audit</title>
		<link>https://risk-academy.ru/delivering-value-from-it-audit/</link>
		
		<dc:creator><![CDATA[riskacademy]]></dc:creator>
		<pubDate>Tue, 08 Dec 2020 22:18:11 +0000</pubDate>
				<category><![CDATA[Блоги на английском]]></category>
		<category><![CDATA[Иностранные блоги]]></category>
		<category><![CDATA[deloitte]]></category>
		<category><![CDATA[Auditing]]></category>
		<category><![CDATA[Companies]]></category>
		<category><![CDATA[banking]]></category>
		<category><![CDATA[auditor]]></category>
		<category><![CDATA[adviser]]></category>
		<category><![CDATA[France]]></category>
		<category><![CDATA[COOPERS & LYBRAND]]></category>
		<category><![CDATA[Linkage Editor]]></category>
		<category><![CDATA[RPG]]></category>
		<guid isPermaLink="false">https://risk-academy.ru/delivering-value-from-it-audit/</guid>

					<description><![CDATA[Some of you may not know this, but earlier in my career I was an IT auditor (starting with Coopers &#38; Lybrand). In fact, I was a bit of a [&#8230;]]]></description>
										<content:encoded><![CDATA[<div>
<p>Some of you may not know this, but earlier in my career I was an IT auditor (starting with Coopers &amp; Lybrand). In fact, I was a bit of a techie and trailblazer when it came to understanding how the operating and related systems could affect the operation of applications and, thereby, business operations.</p>
<p>I had some fun with this when the IT audit leaders in France contradicted me. I wrote a simple RPG ii program then compiled and ran it twice. I changed a couple of lines in the Linkage Editor so that the results were different.</p>
<p>Anyway, IT audit has been a passion of mine for many years.</p>
<p>So, when I saw that Deloitte has published a piece, The Future of IT Audit[1], I was interested.</p>
<p>Here are some excerpts with my comments:</p>
<ul>
<li>In a world where everything from automotive to banking relies upon technology, IT audit methodology needs to change. The future of IT audit should align itself with IT’s new strategic role and to act as an adviser, not solely an auditor.</li>
</ul>
<p style="padding-left:80px">Comment: being an auditor <em>is</em> being an adviser. That should not be a change.</p>
<p style="padding-left:80px">Comment: what may need to change is that a larger percentage of the audit plan and staffing should be on technology-related risks and opportunities.</p>
<ul>
<li>As boards are recognizing a paradigm shift wherein IA takes on a strategic role, they expect IT not just to keep pace, but also to&#8230;</li>
</ul>
</div>
<p><a href="https://normanmarks.wordpress.com/2020/12/08/delivering-value-from-it-audit/">Подробнее&#8230;</a></p>
<script async src="https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js"></script>
<!-- RA -->
<ins class="adsbygoogle"
     style="display:inline-block;width:728px;height:90px"
     data-ad-client="ca-pub-6192158489792937"
     data-ad-slot="6411604661"></ins>
<script>
     (adsbygoogle = window.adsbygoogle || []).push({});
</script>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>3.8m documents stolen from NSW Govt &#124; Information Age</title>
		<link>https://risk-academy.ru/3-8m-documents-stolen-from-nsw-govt-information-age/</link>
		
		<dc:creator><![CDATA[riskacademy]]></dc:creator>
		<pubDate>Tue, 08 Sep 2020 02:25:48 +0000</pubDate>
				<category><![CDATA[Cyber Risks]]></category>
		<category><![CDATA[Technology Internet]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[auditor]]></category>
		<category><![CDATA[federal government]]></category>
		<category><![CDATA[Service NSW]]></category>
		<category><![CDATA[state services]]></category>
		<category><![CDATA[NSW Police]]></category>
		<guid isPermaLink="false">https://risk-academy.ru/3-8m-documents-stolen-from-nsw-govt-information-age/</guid>

					<description><![CDATA[Political vultures were circling within hours of revelations that personal information relating to some 186,000 NSW residents had been exposed in an April data breach that saw some 3.8 million [&#8230;]]]></description>
										<content:encoded><![CDATA[<div>
<p>Political vultures were circling within hours of revelations that personal information relating to some 186,000 NSW residents had been exposed in an April data breach that saw some 3.8 million documents stolen by cyber criminals.</p>
<p>The breach of online government agency Service NSW was announced in May, but authorities have only now released details of the breach after a four-month investigation involving the NSW Police, auditor general, and cyber security experts that confirmed some 738 gigabytes of data had been stolen after 47 staff email accounts were compromised in a phishing attack.</p>
<p>Service NSW has “accelerated our cyber security plans and the modernisation of legacy business processes to keep customer information as safe as possible,” the agency said, outlining a notification process by which affected citizens will be given “important information about the specific individual data accessed during the breach”.</p>
<p>The agency’s success in consolidating state services – both in person and online – has made it the model for broader efforts such as the federal government’s Services Australia initiative, announced late last year, and state-based efforts in <a...</p>
</div>
<p><a href="https://ia.acs.org.au/article/2020/3-8m-documents-stolen-from-nsw-govt.html">Read More&#8230;</a></p>
<script async src="https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js"></script>
<!-- RA -->
<ins class="adsbygoogle"
     style="display:inline-block;width:728px;height:90px"
     data-ad-client="ca-pub-6192158489792937"
     data-ad-slot="6411604661"></ins>
<script>
     (adsbygoogle = window.adsbygoogle || []).push({});
</script>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Fed agencies cop mass fail in core systems cyber review &#8211; Strategy &#8211; Security</title>
		<link>https://risk-academy.ru/fed-agencies-cop-mass-fail-in-core-systems-cyber-review-strategy-security/</link>
		
		<dc:creator><![CDATA[riskacademy]]></dc:creator>
		<pubDate>Fri, 29 May 2020 06:00:28 +0000</pubDate>
				<category><![CDATA[Cyber Risks]]></category>
		<category><![CDATA[pdf]]></category>
		<category><![CDATA[Australian National Audit Office]]></category>
		<category><![CDATA[national audit office]]></category>
		<category><![CDATA[Australian Signals Directorate]]></category>
		<category><![CDATA[Home Affairs]]></category>
		<category><![CDATA[important systems]]></category>
		<category><![CDATA[national auditor]]></category>
		<category><![CDATA[auditor]]></category>
		<category><![CDATA[Services Australia]]></category>
		<category><![CDATA[Tax Office]]></category>
		<guid isPermaLink="false">https://risk-academy.ru/fed-agencies-cop-mass-fail-in-core-systems-cyber-review-strategy-security/</guid>

					<description><![CDATA[Only one of the federal government’s largest agencies has fully applied the Australian Signals Directorate&#8217;s essential eight to some of its most important systems, the national auditor has found. The [&#8230;]]]></description>
										<content:encoded><![CDATA[<div id="article-body" itemprop="articleBody">
<p><span style="font-weight: 400;">Only one of the federal government’s largest agencies has fully applied the Australian Signals Directorate&#8217;s essential eight to some of its most important systems, the national auditor has found.</span></p>
<p><span style="font-weight: 400;">The finding is contained in the 2019 interim financial controls audit of major entities, which reviewed the implementation of the controls now considered the baseline for cyber resilience.</span></p>
<p><span style="font-weight: 400;">The Australian National Audit Office’s review focused on the financial and HR systems of 18 agencies, including Defence, Services Australia, Home Affairs and the Tax Office.</span></p>
<p><span style="font-weight: 400;">“The review was undertaken to confirm the accuracy of reporting and identity cyber security risks that may impact on the preparation of financial statements,” the auditor said [</span><span style="font-weight: 400;">pdf</span><span style="font-weight: 400;">].</span></p>
<p><span style="font-weight: 400;">“The review consisted of analysis of policy and procedural documentation, testing of mitigation strategies specific to the FMIS and HRMIS, results of sprint assessments and interviews with entity personnel.”</span></p>
<p><span style="font-weight: 400;">It follows a series of target audits conducted by the auditor since 2013 that have uncovered serious cyber resilience shortcomings, particularly around the implementation of the top four.</span></p>
<p><span style="font-weight: 400;">But as with previous&#8230;</span></p>
</div>
<p><a href="https://www.itnews.com.au/news/fed-agencies-cop-mass-fail-in-core-systems-cyber-review-548738">Read More&#8230;</a></p>
<script async src="https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js"></script>
<!-- RA -->
<ins class="adsbygoogle"
     style="display:inline-block;width:728px;height:90px"
     data-ad-client="ca-pub-6192158489792937"
     data-ad-slot="6411604661"></ins>
<script>
     (adsbygoogle = window.adsbygoogle || []).push({});
</script>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
