Difference between revisions of "Internal Audit"

From BCMpedia. A Wiki Glossary for Business Continuity Management (BCM) and Disaster Recovery (DR).
Jump to navigation Jump to search
 
m
Line 1: Line 1:
{| style="margin-left: 0px; text-align: left; font-style: none; width:100%; font-weight: none; background: #F0F0F0; border:1px"
+
 
|'''1.''' Internal [[Audit]] is an ongoing internal independent and objective appraisal of the [[Organization|organization]]’s operational activity in accordance to the [[Business Continuity Management System (BCMS)| BCMS]] requirement.
+
{| style="margin-left: 0px; text-align: left; font-style: none; width:100%; font-weight: none; background: #F0F0F0; border:1px"
<br>
+
|-
'''''Notes''''': During an internal audit, [[Internal Auditors| internal auditors]] will evaluate and monitor a organization’s risk management, reporting, and control practices and make suggestions for improvement.
+
| '''1.''' Internal [[Audit|Audit]] is an ongoing internal independent and objective appraisal of the [[Organization|organization]]’s operational activity in accordance to the [[Business_Continuity_Management_System_(BCMS)|BCMS]] requirement.  
<br><br>
+
<br/> '''''Notes''''': During an internal audit, [[Internal_Auditors|internal auditors]] will evaluate and monitor a organization’s risk management, reporting, and control practices and make suggestions for improvement.<br/> <br/> {{BcmBoK 7 CL 2A}}<br/> <br/> [[File:WCCSG 2016 GooglePlus.jpg|thumb|right|300px|]] [[File:A Managers Guide to Auditing v1.1.jpg|thumb|left|140px|'''A Manager's Guide to Auditing and Reviewing Your Business Continuity Management Program''' (2009) ]]<br/> '''Courses: ISO 22301 BCMS Audit'''
{{BcmBoK 7 CL 2A}}
+
 
<br><br>
+
*Attend: [http://www.bcm-institute.org/courses/iso-22301-bcms-auditor BCM-8030: ISO 22301 BCMS Auditor] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-auditor-bcca BCCA]  
[[Image:WCCSG 2016 GooglePlus.jpg|right|thumb|300px| [http://www.worldcontinuitycongress.com/wcc-singapore-2016/ Attend Asia Pacific largest BCM Conference - World Continuity Congress Singapore @ Marina Bay Sands May 11, 2016]]]
+
*Attend: [http://www.bcm-institute.org/courses/iso-22301-bcms-lead-auditor BCM-8530: ISO 22301 BCMS Lead Auditor] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-lead-auditor-bccla BCCLA]  
[[Image:A Managers Guide to Auditing v1.1.jpg|thumb|left|140px|'''A Manager's Guide to Auditing and Reviewing Your Business Continuity Management Program''' (2009) [http://store.bcm-institute.org/books/bcm-manager-s-guide-specialist-series BUY!]]]  
+
 
<br>
 
'''Courses: ISO 22301 BCMS Audit'''
 
* Attend: [http://www.bcm-institute.org/courses/iso-22301-bcms-auditor BCM-8030: ISO 22301 BCMS Auditor] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-auditor-bcca BCCA]
 
* Attend: [http://www.bcm-institute.org/courses/iso-22301-bcms-lead-auditor BCM-8530: ISO 22301 BCMS Lead Auditor] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-lead-auditor-bccla BCCLA]
 
 
'''Courses: BCM Certification'''
 
'''Courses: BCM Certification'''
* Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-planner BCM-230: ISO22301 BCMS Planner] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-planner-bccp BCCP]
+
 
* Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-implementer BCM-300: ISO22301 BCMS Implementer] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-specialist-bccs BCCS]  
+
*Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-planner BCM-230: ISO22301 BCMS Planner] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-planner-bccp BCCP]  
* Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-manager BCM-400: ISO22301 BCMS Manager] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-expert-bcce BCCE]
+
*Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-implementer BCM-300: ISO22301 BCMS Implementer] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-specialist-bccs BCCS]  
* Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-expert-implementer BCM-5000: ISO22301 BCMS Expert Implementer] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-expert-bcce BCCE]
+
*Attend: [http://www.bcm-institute.org/courses/iso-22301-business-continuity-management-systems-bcms-manager BCM-400: ISO22301 BCMS Manager] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-expert-bcce BCCE]  
 +
*Attend: [https://www.bcm-institute.org/courses/business-continuity-management-courses-2/business-continuity-management-certification-courses/bcm-5000-iso-22301-business-continuity-management-system-expert-implementer/ BCM-5000: ISO22301 BCMS Expert Implementer] leading to [http://www.bcm-institute.org/certification/business-continuity-certified-expert-bcce BCCE]  
 +
 
 
{{Bcm Institute Source}}
 
{{Bcm Institute Source}}
 +
 
|}
 
|}
[[Category:BCM Institute Audit Glossary]]
 
[[Category:BcmBoK 7 CL 2A]]
 
  
 
'''2.''' Information required to be controlled and maintained by an [[Organization|organization]] and the medium on which it is contained.
 
'''2.''' Information required to be controlled and maintained by an [[Organization|organization]] and the medium on which it is contained.
  
'''''Note ''''':         In many cases, particularly in smaller [[Organization|organizations]], independence can be demonstrate by the freedom from responsibility for the [[Activity|activity]] being [[Audit|audited]].
+
'''''Note''''': In many cases, particularly in smaller [[Organization|organizations]], independence can be demonstrate by the freedom from responsibility for the [[Activity|activity]] being [[Audit|audited]].
  
 
{{ISO 22301 Source}} - clause 3.22
 
{{ISO 22301 Source}} - clause 3.22
Line 35: Line 32:
  
 
{{AS/NZS 5050.3 Source}}
 
{{AS/NZS 5050.3 Source}}
 
  
 
'''5.''' Internal auditing is an independent, objective assurance and consulting activity designed to add value and improve an organization's operations. It helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes.
 
'''5.''' Internal auditing is an independent, objective assurance and consulting activity designed to add value and improve an organization's operations. It helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes.
  
('''Source''': http://www.theiia.org Institute of Internal Auditors)
+
('''Source''': [http://www.theiia.org http://www.theiia.org] Institute of Internal Auditors)
 
 
  
 
'''6.''' Internal Audit is a systematic investigation of the intent, implementation and effectiveness of selected aspects of the systems of an organization or one or more of its departments.
 
'''6.''' Internal Audit is a systematic investigation of the intent, implementation and effectiveness of selected aspects of the systems of an organization or one or more of its departments.
  
 
('''Source''': hhtp://elsmar.com)
 
('''Source''': hhtp://elsmar.com)
 +
 +
[[Category:BCM Institute Audit Glossary]] [[Category:BcmBoK 7 CL 2A]]

Revision as of 06:37, 8 August 2017

1. Internal Audit is an ongoing internal independent and objective appraisal of the organization’s operational activity in accordance to the BCMS requirement.


Notes: During an internal audit, internal auditors will evaluate and monitor a organization’s risk management, reporting, and control practices and make suggestions for improvement.

BCMBoK Competency Level
BCMBoK 7: Program Management CL 2A: Intermediate (Audit)


A Manager's Guide to Auditing and Reviewing Your Business Continuity Management Program (2009)

Courses: ISO 22301 BCMS Audit

Courses: BCM Certification

(Source: Business Continuity Management Institute - BCM Institute)

2. Information required to be controlled and maintained by an organization and the medium on which it is contained.

Note: In many cases, particularly in smaller organizations, independence can be demonstrate by the freedom from responsibility for the activity being audited.

(Source: ISO 22301:2012 – Societal Security – Business Continuity Management Systems - Requirements) - clause 3.22

3. Audit conducted by, or on behalf of, the organization itself for management review and other internal purpose, and which might form the basis for an organization’s self declaration on conformity.

(Source: AE/HSC/NCEMA 7000:2012)

4. Internal Audit is an independent, objective assurance and consulting activity designed to add value and improve an organization’s operations. It helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes.

(Source: AS/NZS 5050.3 Australian and New Zealand Standards for business continuity management.

Part 3: Business continuity management audit and assurance standard)

5. Internal auditing is an independent, objective assurance and consulting activity designed to add value and improve an organization's operations. It helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes.

(Source: http://www.theiia.org Institute of Internal Auditors)

6. Internal Audit is a systematic investigation of the intent, implementation and effectiveness of selected aspects of the systems of an organization or one or more of its departments.

(Source: hhtp://elsmar.com)