KONSEP DASAR MELAKUKAN AUDIT SISTEM INFORMASI

Slides:



Advertisements
Presentasi serupa
Contoh Kasus Kode Etik IEEE
Advertisements

Audit Wikipedia (id)‏ Audit atau pemeriksaan dalam arti luas bermakna evaluasi terhadap suatu organisasi, sistem, proses, atau produk. Audit dilaksanakan.
Standar Auditing Universitas Indonusa Esa Unggul Yulazri SE. M.Ak. Akt
Audit Sistem Informasi
Dasar-dasar Audit Sistem Informasi
RERANGKA PRAKTIK PROFESIONAL: ETIKA DAN STANDAR PRAKTIK
BAGIAN II STANDAR AUDIT
Panduan Audit Sistem Informasi
Internal, Operational, and Governmental Auditing
SEJARAH DAN PEMAHAMAN AUDIT SISTEM/TEKNOLOGI INFORMASI
Control Objectives for Information and related Technology
Beberapa Pengertian Atkinson, dkk. (1997), Atkinson, dkk. (1997), mendefinisikan anggaran (budget) sebagai “quantitative expression of the money inflows.
Nilai PanduanAturan Kode Etik  Kode etik adalah aturan yang diturunkan dari NILAI... Nilai apa itu?
Dasar-dasar Audit Sistem Informasi
WaterfallPrototyping RAD Incremental Prototyping Pendekatan SDLC.
Accounting Information Systems
STANDAR PEKERJAAN LAPANGAN: Perencanaan dan Supervisi
Standar Pelaporan Lap. Keu. Sesuai PABU
Auditor’s Code of Ethics (SPAP) Pertemuan 02 Matakuliah: PSYCHOLOGY PEMERIKSAAN Tahun: 2009.
Pertemuan 25 EVALUASI DAN MANAJEMEN PROYEK Matakuliah: S0174/Evaluasi dan Manajemen Proyek Tahun: 2006 Versi: 1.
AUDIT SISTEM INFORMASI
Standar Audit Sistem Informasi
RISK BASED AUDIT (Audit Berbasis Risiko)
Audit Working Papers Pertemuan Matakuliah: A0294/Audit SI Lanjutan Tahun: 2009.
1 Pertemuan 11 Function dari System Matakuliah: M0446/Analisa dan Perancangan Sistem Informasi Tahun: 2005 Versi: 0/0.
Sistem Pengendalian Internal
1 INTRODUCTION Pertemuan 1 s.d 2 Matakuliah: A0554/Analisa dan Perancangan Sistem Informasi Akuntansi Tahun: 2006.
Introduction.  Proses manajemen untuk mengidentifikasi, mengantisipasi dan memuaskan kebutuhan pelanggan secara menguntungkan  Pemasaran adalah proses.
Audit & Kontrol TI Catatan: diolah dari berbagai sumber
Chap 3 – External IT Auditor and Regulation PP 82/2012 in Indonesia
BAGIAN V ETIKA PROFESI.
AUDIT SISTEM INFORMASI DAN PROSEDUR
Control Objectives for Information and related Technology
Framework dan Proses Audit SI
OVERVIEW AUDIT SISTEM/TEKNOLOGI INFORMASI
PENGENDALIAN INTERN MODEL REFERENSI
RERANGKA PRAKTIK PROFESIONAL: ETIKA DAN STANDAR PRAKTIK
AUDITING 1 Minggu ke-1 Widaryanti, SE, Akt Program Studi Akuntansi
Pert. 16. Menyimak lingkungan IS/IT saat ini
Accounting Information Systems: An Overview
AUDIT SISTEM INFORMASI DAN PROSEDUR
UNIVERSITAS MERCU BUANA YOGYAKARTA 2016
Oleh :Tim Dosen MK Pengantar Audit SI
IT AUDITS IT audits: pemeriksaan terhadap proses atau data yang melekat dengan teknologi informasi. Berkaitan dengan internal, external, dan fraud audits.
Instrumen dan Bukti Audit Pertemuan 11-12
OHS MANAGEMENT SYSTEM HENDRA.
Audit Sistem Informasi
Penyusunan Blueprint TI untuk Perguruan Tinggi, by
Audit Sistem Informasi
Audit Teknologi sistem Informasi
Control Objectives for Information and related Technology (COBIT)
OVERVIEW AUDIT SISTEM INFORMASI
Kantor sebagai Pusat Informasi dan Komunikasi
Pertemuan <<18>> << Penemuan Fakta(01) >>
Audit Teknologi Informasi Pertemuan 11
CobiT Control Objectives for Information and Related Technology
Penyusunan Blueprint TI untuk Perguruan Tinggi, by
ETIKA PROFESI Sesi 7.
KONSEP AUDIT SISTEM INFORMASI
AUDIT SISTEM INFORMASI
ROOT CAUSE ANALYSIS.
E-AUDIT KONSEP DASAR AUDIT.
Pengantar, Tinjauan Menyeluruh Sistem Informasi Dan Akuntansi
Sistem informasi manajemen
Referensi Audit Sistem&Teknologi Informasi (Riyanarto Sarno) Strategi Sukses Bisnis dengan Teknologi Informasi (Riyanarto Sarno) Sistem Manajemen Keamanan.
Penyusunan Blueprint TI untuk Perguruan Tinggi, by
 Audit Sistem&Teknologi Informasi › (Riyanarto Sarno)  Strategi Sukses Bisnis dengan Teknologi Informasi › (Riyanarto Sarno)  Sistem Manajemen Keamanan.
W.theiia.org INTERNAL AUDIT CAPABILITY MODEL (IA-CM) Ciawi, 10 Oktober 2018 Nur Abdillah – Direktur Eksekutif IIA Indonesia
ISA Implementation Support Module Prepared by IAASB Staff October 2010 Materiality, Misstatements and Reporting − Part II.
Pertemuan 6 Audit Teknologi Informasi Kel 4 : - Aditya pratama.
Transcript presentasi:

KONSEP DASAR MELAKUKAN AUDIT SISTEM INFORMASI PERTEMUAN 2 Darmansyah HS AKUNTANSI FEB UEU

KEMAMPUAN AKHIR YANG DIHARAPKAN Mampu memahami peran yang dimainkan oleh system operasi dalam sebuah struktur pengendalian internal perusahaan dan audit dalam perusahaan

Pengendalian dan audit TI Kegiatan yang memastikan apa yang dilakukan telah sesuai dengan apa yang ditentukan/direncanakan. Audit TI: Merupakan aktivitas pengumpulan dan pengevaluasian bukti untuk penentuan apakah Proses TI yang berlangsung dalam perusahaan telah dikelola sesuai dengan stanclar dan dilengkapi dengan objektif kontrol untuk mengawasi penggunaannya serta apakah telah memenuhi Tujuan Bisnis secara efektif.

Bagaimana tahapan audit? Pemeriksaan (audit) Bagaimana tahapan audit? Pekerjaan pendahuluan Perencanaan audit Pengujian pengendalian (control testing) Pengujian substantif (substantive testing) Bagaimana tahapan audit TI….????

Pemeriksaan (audit)

Pemeriksaan (audit)

Pemeriksaan (audit)

TI dan Pengendalian Internal Pengendalian TI Untuk menghindari terjadinya sesuatu yang tidak diinginkan atas teknologi informasi sehubungan dengan tujuan & kegiatan organisasi Basic Management/General Application COBIT (Control Objectives for Information and Related Technology) Planning & Organization Acquisition & Implementation Delivery & Support Monitoring

Audit TI dan SI Audit TI dan SI: Merupakan aktivitas pengumpulan dan pengevaluasian bukti untuk penentuan apakah Proses TI yang berlangsung dalam perusahaan telah dikelola sesuai dengan stanclar dan dilengkapi dengan objektif kontrol untuk mengawasi penggunaannya serta apakah telah memenuhi Tujuan Bisnis secara efektif.

Pendekatan Audit TI Audit TI dan SI Audit around the Computer Audit through the Computer Audit with the Computer

Audit TI dan SI

Audit TI dan SI

Standar Audit TI Audit TI dan SI Standards Guidelines Procedures Information Systems Audit & Control Association(ISACA) Standards Guidelines Procedures

Audit TI dan SI Code of Professional Ethics: Support the implementation of, and encourage compliance with, appropriate standards, procedures and controls for information systems. Perform their duties with due diligence and professional care, in accordance with professional standards and best practices Serve in the interest of stakeholders in a lawful and honest manner, while maintaining high standards of conduct and character, and not engage in acts discreditable to the profession. Maintain the privacy and confidentiality of information obtained in the course of their duties unless disclosure is required by legal authority. Such information shall not be used for personal benefit or released to inappropriate parties. Maintain competency in their respective fields and agree to undertake only those activities, which they can reasonably expect to complete with professional competence. Inform appropriate parties of the results of work performed; revealing all significant facts known to them. Support the professional education of stakeholders in enhancing their understanding of information systems security and control.

Audit TI dan SI 010 Audit Charter 010.010 Responsibility, Authority and Accountability The responsibility, authority and accountability of the information systems audit function are to be appropriately documented in an audit charter or engagement letter. o 020 Independence 020.010 Professional Independence In all matters related to auditing, the information systems auditor is to be independent of the auditee in attitude and appearance. 020.020 Organizational Relationship The information systems audit function is to be sufficiently independent of the area

Audit TI dan SI 030 Professional Ethics and Standards 030.010 Code of Professional Ethics The information systems auditor is to adhere to the Code of Professional Ethics of the Information Systems Audit and Control Association. 030.020 Due Professional Care Due professional care and observance of applicable professional auditing standards are to be exercised in all aspects of the information systemsauditor's work. o 040 Competence 040.010 Skills and Knowledge The information systems auditor is to be technically competent, having the skills and knowledge necessary to perform the auditor's work. 040.020 Continuing Professional Education The information systems auditor is to maintain technical competence through appropriate continuing professional education

Audit TI dan SI 050 Planning 050.010 Audit Planning The information systems auditor is to plan the information systems audit work to address the audit objectives and to comply with applicable professional auditing standards. o 060 Performance of Audit Work 060.010 Supervision Information systems audit staff are to be appropriately supervised to provide assurance that audit objectives are accomplished and applicable professional auditing standards are met. 060.020 Evidence During the course of the audit, the information systems auditor is to obtain sufficient, reliable, relevant and useful evidence to achieve the audit objectives effectively. The audit findings and conclusions are to be supported by appropriate analysis and interpretation of this evidence.

Audit TI dan SI 070 Reporting 070.010 Report Content and Form The information systems auditor is to provide a report, in an appropriate form, to intended recipients upon the completion of audit work. The audit report is to state the scope, objectives, period of coverage and the nature and extent of the audit work performed. The report is to identify the organization, the intended recipients and any restrictions on circulation. The report is to state the findings, conclusions and recommendations and any reservations or qualifications that the auditor has with respect to the audit. o 080 Follow-Up Activities 080.010 Follow-Up The information systems auditor is to request and evaluate appropriate information on previous relevant findings, conclusions and recommendations to determine whether appropriate actions have been implemented in a timely manner.