From the course: Program Management for Cybersecurity Managers: From Planning to Cross-Functional Coordination

Unlock this course with a free trial

Join today to access over 24,900 courses taught by industry experts.

Communicate with auditors

Communicate with auditors

- [Narrator] Rules from the Securities & Exchange Commission, Payment Card Industry Security Standard, and clauses in the Data Security Agenda that you are signing with major customers; all these things put your program under scrutiny, but they also give you a chance to shine. Let's reframe how we see auditors. They're here to verify due care, not to catch you doing things wrong so you can be punished. Auditors are part of the ecosystem that we live in. Information security, compliance, and audit form a three-pillar governance triangle. They make sure an organization's information assets are protected, handled according to laws and regulations, and independently-verified. Most internal auditors now report directly to the audit committee, not your chief financial officers, and you need to understand the structure to collaborate with them effectively. During an audit, I want you to be ready for web portals and screen shares and real-time verification. Being organized during any audit is…

Contents