Methodology for Quantifying the Materiality of Audit Evidence Using Expert Assessments and Their Ranking | IEEE Conference Publication | IEEE Xplore

Methodology for Quantifying the Materiality of Audit Evidence Using Expert Assessments and Their Ranking


Abstract:

An Information security audit is a process of obtaining objective audit evidence and evaluating it objectively for compliance with audit criteria. Given resource constrai...Show More

Abstract:

An Information security audit is a process of obtaining objective audit evidence and evaluating it objectively for compliance with audit criteria. Given resource constraints, it's advisable to focus on obtaining evidence that has a significant impact on its effectiveness when developing an audit program to organize the audit. The person managing the audit program faces an urgent task developing an audit program, taking into account the information content of extracted evidence and resource constraints. In practice, evidence cannot be evaluated correctly directly in numerical scales, so they are forced to use less informative scales. The purpose of scientific research is to develop a methodology for assessing the materiality of audit evidence using expert assessments, their statistical processing, and transition to quantitative scales. As a result, the person managing the audit program gets a tool for developing an effective audit program.
Date of Conference: 26-29 January 2021
Date Added to IEEE Xplore: 09 April 2021
ISBN Information:

ISSN Information:

Conference Location: St. Petersburg, Moscow, Russia
References is not available for this document.

I. Introduction

A decision-maker in a particular field of activity needs management information that reliably reflects the state of the management object and the environment. However, at the time of making a decision, the decision-maker [1] is in a state of information uncertainty, since he does not have such information and can build his strategy only on guesses and intuition, which leads to an unreasonable decision and, more often, ineffective. To justify their decision, this person is forced to take measures to extract the missing information, which consumes management resources.

Select All
1.
IATA Reference Manual for Audit Programs 9 th Edition., 2018, ISBN 978 92 9229 670 4.
2.
International standard on auditing (UK) 500, 2020.
3.
ISO 19011 Guidelines for auditing management systems, 2018.
4.
Shamala P., Ahmad R., Yusoff M., A conceptual framework of info structure for information security risk assessment (ISRA), journal of information security and applications, 2013, no. 18, pp. 45–52.
5.
Voevodin V.A. Uchebno-metodicheskij kompleks dlya podgotovki k prakticheskomu auditu informacionnoj bezopasnosti. [Educational and methodological complex for preparing for the practical audit of information security] ZHurnal «Sovremennaya nauka: aktual'nye problemy teorii i praktik: Seriya «Estestvennye nauki» [Journal «Modern science: actual problems of theory and practice: Series «Natural Sciences»], 2019, no. 10, pp. 82–88 (in Russian).
6.
Burkov E.A., Lyubkin P.L., Paderno P.I., “Intellectual systems - the future of expert assessment,” 2017 XX IEEE International Conference on Soft Computing and Measurements (SCM), St. Petersburg, 2017, pp. 34 - 36, DOI: 10.1109/SCM.2017.7970487.
7.
Voevodin V.A., Markina M.S., Markin P.V. Opredelenie vesomosti auditorskih svidetel'stv metodom bal'nyh ocenok pri audite informacionnoj bezopasnosti. [Determination of the weight of audit certificates by the method of point estimates in the audit of information security] Nauchnyj recenziruemyj zhurnal [Scientific peer-reviewed journal] «Computational nanotechnology», 2020, vol. VII, no. 1, pp. 57 - 63, (in Russian) ISSN: 2313-223X
8.
Voevodin V.A., Burenok D.S. Programma metoda ekspertnyh ocenok: [Program of the expert assessment method]. Patent RF, no. 2020616093, 2020.
9.
Voevodin V.A., Etalonnaya model' ob"ekta audita informacionnoj bezopasnosti. [Reference model of the information security audit object.] ZHurnal «Sovremennaya nauka: aktual'nye problemy teorii i praktik: Seriya «Estestvennye nauki» [Journal «Modern science: actual problems of theory and practice: Series «Natural Sciences»], 2019, no. 9, pp. 56–61 (in Russian).

Contact IEEE to Subscribe

References

References is not available for this document.