Security News > 2020 > March > ISACA unveils new audit program for effective incident management

ISACA unveils new audit program for effective incident management
2020-03-05 02:00

In light of this, incident management programs are more important than ever, and with ISACA's newly launched Security Incident Management Audit Program, audit professionals now have the tools to more effectively evaluate incident management programs and achieve greater assurance.

The audit program covers process areas of security incident management programs and clearly outlines process sub-areas-like detection and analysis, forensics, and change management during program implementation as well as control objectives, controls and testing steps in a customizable spreadsheet.

Program design and implementation-Exploring processes including risk analysis; awareness and training; detection and analysis; and containment, eradication and recovery.

"Security incidents not only result in added expenses, but can damage a company's reputation-so enterprises need to ensure that security incident management programs are effective," said Beverly Thomas, CISA, expert reviewer for the audit program, and Senior Manager, Internal Audit, UMWA Health & Retirement Funds.

"Having an organized audit program to assess these programs is an important part of driving their success."


News URL

http://feedproxy.google.com/~r/HelpNetSecurity/~3/WbcQOHMP3l0/