Risk/threat based analysis auditing in advanced management information systems.
This dissertation discusses the growth of auditing and internal control and evaluates the present degree of knowledge and the current and future roles of auditors in a computer-based environment. An analysis of the current state of computer-based auditing is presented along with current research in...
Main Author: | |
---|---|
Language: | en |
Published: |
University of Canterbury. Accounting and Information Systems
2010
|
Online Access: | http://hdl.handle.net/10092/3761 |
id |
ndltd-canterbury.ac.nz-oai-ir.canterbury.ac.nz-10092-3761 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-canterbury.ac.nz-oai-ir.canterbury.ac.nz-10092-37612015-03-30T15:28:20ZRisk/threat based analysis auditing in advanced management information systems.Newman, William ArthurThis dissertation discusses the growth of auditing and internal control and evaluates the present degree of knowledge and the current and future roles of auditors in a computer-based environment. An analysis of the current state of computer-based auditing is presented along with current research in audit and security methodologies is presented and critiqued. The concept of System Metrics is formulated and defined and a computer-audit analysis system called the Risk Evaluation Model (REM) is created, described and utilized. The Risk Evaluation Model is an interactive set of programs written in FORTRAN which assesses Information Systems for a variety of attributes to judge the "quality" of a system. Currently the system assesses: 1. Portability of the System; 2. Maintainability of the System; 3. Complexity of the System; 4. Known threats to the System and known Features neutralizing those threats; 5. The General System Security Level; and 6. The Hardware Reliability of the System. The model is currently implemented on the Prime 750 computer.University of Canterbury. Accounting and Information Systems2010-04-19T01:25:28Z2010-04-19T01:25:28Z1986Electronic thesis or dissertationTexthttp://hdl.handle.net/10092/3761enNZCUCopyright William Arthur Newmanhttp://library.canterbury.ac.nz/thesis/etheses_copyright.shtml |
collection |
NDLTD |
language |
en |
sources |
NDLTD |
description |
This dissertation discusses the growth of auditing and internal control and
evaluates the present degree of knowledge and the current and future roles of
auditors in a computer-based environment. An analysis of the current state of
computer-based auditing is presented along with current research in audit and
security methodologies is presented and critiqued. The concept of System
Metrics is formulated and defined and a computer-audit analysis system called
the Risk Evaluation Model (REM) is created, described and utilized. The Risk
Evaluation Model is an interactive set of programs written in FORTRAN which
assesses Information Systems for a variety of attributes to judge the "quality" of a
system. Currently the system assesses:
1. Portability of the System;
2. Maintainability of the System;
3. Complexity of the System;
4. Known threats to the System and known Features neutralizing
those threats;
5. The General System Security Level; and
6. The Hardware Reliability of the System.
The model is currently implemented on the Prime 750 computer. |
author |
Newman, William Arthur |
spellingShingle |
Newman, William Arthur Risk/threat based analysis auditing in advanced management information systems. |
author_facet |
Newman, William Arthur |
author_sort |
Newman, William Arthur |
title |
Risk/threat based analysis auditing in advanced management information systems. |
title_short |
Risk/threat based analysis auditing in advanced management information systems. |
title_full |
Risk/threat based analysis auditing in advanced management information systems. |
title_fullStr |
Risk/threat based analysis auditing in advanced management information systems. |
title_full_unstemmed |
Risk/threat based analysis auditing in advanced management information systems. |
title_sort |
risk/threat based analysis auditing in advanced management information systems. |
publisher |
University of Canterbury. Accounting and Information Systems |
publishDate |
2010 |
url |
http://hdl.handle.net/10092/3761 |
work_keys_str_mv |
AT newmanwilliamarthur riskthreatbasedanalysisauditinginadvancedmanagementinformationsystems |
_version_ |
1716798591863881728 |