Skip to product information
Information Systems Audit Practice for Beginners
Information Systems Audit Practice for Beginners
Description
Book Introduction
Completed by Chief Supervisor Han Pil-soon with 20 years of know-how
Beginner's Guide to Information Systems Auditing
The importance of supervision remains constant even in rapidly changing IT technologies.
Now, supervision goes beyond simple inspection and becomes a partner in success!

This book comprehensively covers the essential information system supervision practices and the basic qualifications and work ethic of supervisors that should be essential in the modern information technology environment.
Currently, in our society, information systems that generate data through databases, such as artificial intelligence (AI), big data, and ChatGPT, are rapidly emerging.
It is indispensable to life, providing useful information to individuals and business groups, helping them effectively carry out their work, and providing useful assistance in decision-making.
The role of the Information System Supervisor, who comprehensively supervises and manages matters related to the establishment and operation of information systems within this area, serves as an important institutional device for improving the quality of information systems.

This book is a practical guide for beginner supervisors.
In addition to basic supervision training, it is structured around practical skills that can only be acquired through hands-on experience. It describes the outline of supervision practices, step-by-step supervision, and supervision methods, and will be helpful to those who wish to carry out supervision systematically and effectively.
Additionally, we aim to provide basic concepts of information system auditing, practical examples that can be applied in the field, and guidance on various situations and responses that entry-level auditors may encounter.
The rapidly changing development of IT technology presents new challenges to the field of information system supervision.
We hope that this will serve as a practical and useful stepping stone for entry-level supervisors who will assist in the development of their companies and the successful execution of various IT projects.
  • You can preview some of the book's contents.
    Preview

index
Introducing the revised edition

01.
Information System Audit Overview


Information System Audit Background
Understanding Information System Quality Characteristics and Audit
Step-by-step supervision procedures and supervision focus
Preliminary investigation and inspection items
Composition of each stage supervision report

02.
Supervision method and report writing at the requirements definition stage


On-site supervision at the requirements definition stage
Preparation of a report on the results of the inspection at the requirements definition stage

03.
Design phase supervision method and report writing


Design phase field supervision
Preparation of design phase supervision results report

04.
End-of-stage supervision method and report writing


On-site supervision at the end stage
Preparation of the end-stage inspection results report

05.
How to check corrective action and write a report


How to check corrective action
Preparation of a corrective action confirmation report

06.
Supervision area and key document inspection


Business Management and Quality Assurance Activities Area
Inspection of the inspection standards
DB is from relationship checking to data transfer.
Review of system structure and security areas
Characteristics of ERP projects and key areas for supervision
Integration tests are not a collection of unit tests.

07.
The first day of regular inspection starts with reading the RFP.


Absolutely no review of regular deliverables from day one
What should I do on the first day of quarantine?
Invasion of other supervisory areas!

08.
Create a 5-day supervision schedule


Day 1 (Monday)
Day 2 (Tuesday)
Day 3 (Wednesday)
Day 4 (Thursday)
Day 5 (Friday)
The scope of inspection varies depending on the supervision area.
Various reviews of the discovered issues
Through email rather than a hasty interview
Easy to write a diary

09.
The supervisor is not a fortune teller.


How to check for defects
The profession of a supervisor
How is it different from supervision in other fields?
With so many flaws pointed out, is the evaluation average?
The nature and independence of supervision

10.
Lazy supervisor, diligent supervisor, clever supervisor, foolish supervisor


There are no deliverables to be produced for supervision.
Words and actions that hurt developers
Appropriate age to perform supervisory duties
Supervision is the final bastion of system quality.
Absurd incidents and embarrassing events

11.
Good report, bad report


Regarding the composition of the title of the improvement recommendation
Regarding the writing of the current status, problems, and improvement directions
Is it suitable or not suitable?
Reflection of reports on surveillance evidence
I always like statistics
Structure of a modified sentence

12.
Information systems auditing is a service industry.


The concept of information system auditing
communication skills
Professional ethics and responsibility

Conclusion

Useful Excel for Inspection of Attached Documents

Into the book
The types of projects subject to supervision are categorized into information technology architecture construction projects, information strategy plan establishment projects, system development projects, database construction projects, and system operation projects. However, this book focuses on projects based on object-oriented and component-based development models among the system development projects, which are the most common type of projects.
Because it is a development model that has been commonly used for the past 10 years.
--- p.16

In an information system audit report, prerequisites mean clearly stating any constraints or assumptions that may arise during the audit process.
In other words, it is an essential element to increase the reliability of the inspection results and prevent misunderstandings in interpreting the report.
--- p.56

Inspection of the application system includes functional tests such as integration tests and reviews of various documents for each inspection item, describing the contents of any defects found, and recommending improvements.
--- p.90

In the case of developing information systems for tasks such as human resources, accounting, management, purchasing, facilities, and construction, if the supervision area for each work area is assigned to each supervisor, the quality will be reviewed at the same level as the developer. Although there is no particular problem with this area assignment during the unit testing stage, during the integration testing stage, attention must be paid to the accuracy of information communicated between work areas, so it can be said that it is even more important to review the quality according to the work flow across each work area.
--- p.129

When reviewing deliverables at the inspection site and discovering defects, many people hastily collect evidence and sort out the problem, only to end up in trouble later. Therefore, it is important to examine the surrounding area evenly rather than focusing on a single problem.
--- p.168

Compared to other technical fields, the lifespan of engineers in the information technology field is particularly short.
This is because technology changes rapidly and the scope of change is wide.
Sometimes, engineers in the information technology field feel a sense of crisis that they will be left behind if they cannot adapt to such rapid changes.
Because some information technologies do not develop incrementally by referencing past ones, but start from an entirely new foundation.
--- p.208
GOODS SPECIFICS
- Date of issue: January 24, 2025
- Page count, weight, size: 250 pages | 500g | 152*225*15mm
- ISBN13: 9791172244781
- ISBN10: 1172244782

You may also like

카테고리