From the course: CISA Cert Prep: 2 Information Technology Governance and Management for IS Auditors

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Auditing business continuity and disaster recovery

Auditing business continuity and disaster recovery

From the course: CISA Cert Prep: 2 Information Technology Governance and Management for IS Auditors

Start my 1-month free trial

Auditing business continuity and disaster recovery

- [Instructor] So we've talked all about business continuity planning and analysis. Now let's talk about how we actually audit your business continuity within an organization. Well, first of all, let's take a look at the process itself. Is there a business continuity planning process in place? If there is, does it follow a particular standard and how well are we conforming to that standard? Are the goals for business continuity defined and approved by management? Has management said yes, we have a policy, a business continuity planning policy, and here are our actual goals that we expect, and here are our directives, and signed off on that policy document? If so, that's something we want to know. Are the roles and responsibilities within business continuity defined? Not only for the higher ups, the business unit leaders, but for people, everyday people working. What are your responsibilities as an employee, et cetera, et cetera? Is testing being performed in this process? Are we…

Contents