top technology challenges and the relationship … · top technology challenges and the...
TRANSCRIPT
TOP TECHNOLOGY CHALLENGES AND THE RELATIONSHIP TO THE AUDIT PLAN
ISACA/Protiviti 6th Annual IT Audit Benchmarking Survey
OUR JOINT STUDY
2
6th Annual IT Audit Benchmarking Survey
• The IT audit function has never held a more crucial
role. From substantial cybersecurity, privacy and
infrastructure challenges and management issues
to the implementation of new technologies in the
organization, IT auditors work closely with
management and the board of directors to fulfill a
vital role in helping maintain an effective control
environment amid a changing business climate and
dynamic global marketplace.
• The results of the latest IT Audit Benchmarking
Study from ISACA and Protiviti illustrate the
increasingly integrated role IT audit leaders and
professionals are assuming in regard to technology
initiatives in their organizations.
TODAY’S TOP TECHNOLOGY CHALLENGES: YEAR-OVER-YEAR TRENDS
4
Current YOY Trend 2015
IT security and privacy/cybersecurityEmerging technology and infrastructure
changes – transformation, innovation, disruption
Infrastructure management IT security and privacy/cybersecurity
Emerging technology and infrastructure
changes – transformation, innovation, disruptionResource/staffing/skills challenges
Resource/staffing/skills challenges Infrastructure management
Regulatory compliance Cloud computing/virtualization
Budgets and controlling costs Bridging IT and the business
Cloud computing/virtualization Big data and analytics
Bridging IT and the business Project management and change management
Project management and change management Regulatory compliance
Third-party/vendor management Budgets and controlling costs
TODAY’S TOP TECHNOLOGY CHALLENGES
5
IT SECURITY AND PRIVACY/CYBERSECURITY
PRIOR YEAR RANK: #2
HOW DOES THIS IMPACT THE AUDIT PLAN?
The global risks in this area have never been higher, and the
magnitude is almost certain to intensify in the months and years
to come.
Cybercriminal activity against global companies surged in the past
year, and there are growing signs suggesting that a form of global
cyberwar has commenced.
01
TODAY’S TOP TECHNOLOGY CHALLENGES
6
INFRASTRUCTURE MANAGEMENT
PRIOR YEAR RANK: #4
HOW DOES THIS IMPACT THE AUDIT PLAN?
IT infrastructure management has become a major challenge for
organizations, particularly those that have aging cores of outdated
information systems.
A growing number of these organizations are electing to
modernize their aging cores to achieve both increased agility and
significant long-term savings in costs and resources.
02
TODAY’S TOP TECHNOLOGY CHALLENGES
7
EMERGING TECHNOLOGY AND
INFRASTRUCTURE CHANGES –
TRANSFORMATION, INNOVATION, DISRUPTION
PRIOR YEAR RANK: #1
HOW DOES THIS IMPACT THE AUDIT PLAN?
The most common drivers of transformational initiatives often
include new functionality, cost optimization, operational
improvement, adoption of emerging technology, and alignment
between the IT organization and the business.
It is important to understand IT transformation obstacles in the
context of the unique challenges for your organization and
industry.
03
TODAY’S TOP TECHNOLOGY CHALLENGES
8
RESOURCE/STAFFING/SKILLS CHALLENGES
PRIOR YEAR RANK: #3
HOW DOES THIS IMPACT THE AUDIT PLAN?
In today’s market, it’s a challenge to find qualified and
experienced IT auditors, and talent levels are below where many
organizations want them to be.
Not only was this noted by respondents as one of today’s top IT
challenges, this is supported in numerous results within the
survey.
04
TODAY’S TOP TECHNOLOGY CHALLENGES
9
REGULATORY COMPLIANCE
PRIOR YEAR RANK: #9
HOW DOES THIS IMPACT THE AUDIT PLAN?
Increasing, and increasingly sophisticated, cyberattacks will likely
result in more regulations and oversight, as governments and
regulatory authorities seek to bolster protections of consumer and
organizational data.
This is especially an issue for organizations in highly regulated
industries.
05
TODAY’S TOP TECHNOLOGY CHALLENGES
10
BUDGETS AND CONTROLLING COSTS
PRIOR YEAR RANK: #10
HOW DOES THIS IMPACT THE AUDIT PLAN?
IT budgets are rising.
Investments in running IT operations and maintaining technology
through the business consume large portions of IT budgets, often
followed by investments in improvements and innovation, security
and compliance.
06
TODAY’S TOP TECHNOLOGY CHALLENGES
11
CLOUD COMPUTING/VIRTUALIZATION
PRIOR YEAR RANK: #5
HOW DOES THIS IMPACT THE AUDIT PLAN?
Cloud adoption and virtualization will continue to take place in the
coming years.
The widespread adoption of infrastructure as a service, software
as a service and platform as a service will require significant
planning and changes.
07
TODAY’S TOP TECHNOLOGY CHALLENGES
12
BRIDGING IT AND THE BUSINESS
PRIOR YEAR RANK: #6
HOW DOES THIS IMPACT THE AUDIT PLAN?
Technology risk is a significant component of critical enterprise
risks. It is important that internal audit understand the technology-
related risks that present threats to the business model.
Audit should follow these developments closely because of the
potential audit and disclosure implications they may have.
08
TODAY’S TOP TECHNOLOGY CHALLENGES
13
PROJECT MANAGEMENT AND CHANGE
MANAGEMENT
PRIOR YEAR RANK: #7
HOW DOES THIS IMPACT THE AUDIT PLAN?
In organizations today, there is a growing number of critical
initiatives underway as they undergo the types of IT
transformation, cloud, digitization and big data projects.
However, there are significant roadblocks, both technological
(legacy systems and processes) and cultural (change
management problems and skills gaps) in nature.
09
TODAY’S TOP TECHNOLOGY CHALLENGES
14
THIRD-PARTY/VENDOR MANAGEMENT
PRIOR YEAR RANK: NA
HOW DOES THIS IMPACT THE AUDIT PLAN?
Organizations that rely on IT service providers have found that
they must increase the maturity of their vendor management
processes.
Managing infrastructure is changing as operations and services
shift to the cloud.
10
TOP TECHNOLOGY CHALLENGES QUESTIONNAIRE
15
Top Technology ChallengesIs this a challenge for your
organization? (Yes/No)
Is this addressed in the 2017
audit plan? (Yes/No)
1. IT security and privacy/cybersecurity
2. Infrastructure management
3. Emerging technology and infrastructure
changes – transformation, innovation, disruption
4. Resource/staffing/skills challenges
5. Regulatory compliance
6. Budgets and controlling costs
7. Cloud computing/virtualization
8. Bridging IT and the business
9. Project management and change
management
10. Third-party/vendor management
THANK YOU FOR ATTENDING
17
Visit www.protiviti.com/itauditsurvey to
download the publication.
Visit www.isaca.org/2017itauditstudy to
download the publication.