With a Security Audit you get a true picture of the exposure level of your Information Systems at the security level.
In auditing we verify security in the authenticity, confidentiality, integrity, availability and auditing capacity of the information processed by systems
The objectives of information systems Security Audit are:
| • |
Checking environment and systems security |
| • |
Verifying compliance with effective rules and regulations |
| • |
Drafting of an independent report |
| • |
Use of ISACA, ISC2, ISO 27002 standards |
The methodology we apply for information Systems Auditing establishes performance by phases:
| • |
Defining the scope of the Audit, Initial Analysis and Auditing Plan |
| • |
Gathering information, identifying and carrying out Audit Testing, including, if agreed upon, Ethical Hacking actions or vulnerability or applications analysis |
| • |
Evidence Analysis, documentation of results obtained and conclusions. |
| • |
Audit Report, in which actions carried out along the Audit process and detected shortcomings are recorded. The report contains an executive summary in which the most significant items in the Audit are highlighted |
| • |
Improvement Plan, with the analysis and recommendations proposed to correct the discovered security incidents and maintain in the future a stable and secure situation of Information Systems |