After completing check-out, your download will be available under MyISACA > Resources.
Unplanned incident preparation for many enterprises includes business continuity programs, disaster recovery plans and information security strategies. While looking at some of the same elements as these incident preparation tactics – namely the security triad of confidentiality, integrity, and availability – security incident management differs in that it poises enterprises for the identification and analysis of threats or incidents. In the current landscape, the combined focus on security incidents from both regulatory and operational perspectives put enterprises in positions where the effectiveness of their Security Incident Management programs is not optional.
To assist IT auditors as they assess the effectiveness of security incident management programs, ISACA has created a Security Incident Management Audit Program. The audit objective is to provide management with an independent assessment relating to the effectiveness of security incident management governance and operational procedures. Specifically, the audit program takes into consideration assurance around:
- Program design and implementation, from information security management, awareness and training, to insurance and third-party due diligence;
- Tools and technologies, inclusive of software and server and workstation configuration;
- Reporting best practices, giving consideration to the balance of incident details and potentially sensitive information;
- Lessons learned, ensuring protocols that include input from all stakeholders.
In addition to the operational areas above, the audit program also provides testing of applicable legal and regulatory compliance requirements related to security incidents.