123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Technology,-Gadget-and-Science >> View Article

New Resources From Isaca Provide Audit And Assurance Guidance For The Nist Cybersecurity Framework 2.0 And Artificial Intelligence

Profile Picture
By Author: Madhulina
Total Articles: 479
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

To better equip auditors to keep pace with the changing cyber and emerging technology landscape, ISACA has introduced new audit and assurance resources on cybersecurity control and AI s—the ISACA Cybersecurity Audit Program: Based on the NIST Cybersecurity Framework 2.0 and the Artificial Intelligence Audit Toolkit.

The ISACA Cybersecurity Audit Program: Based on NIST Cybersecurity Framework 2.0 updates ISACA’s 2016 IS Audit/Assurance Cybersecurity Program to include new content that reflects the changes in the NIST CSF 2.0. It covers the six functions of NIST CSF 2.0—govern, identify, protect, detect, respond and recover—delving into categories including cybersecurity supply chain risk management, platform security, adverse event analysis, and incident recovery plan execution, among others. The audit program enables auditors to verify compliance with the NIST CSF 2.0, assess the effectiveness of security controls, policies, procedures, and programs, communicate control status and cybersecurity preparedness with management and other key stakeholders, and identify areas of current or emerging risk for the organization.

The ...
... NIST Cybersecurity Framework 2.0 audit program features improved functionality for the standard Excel spreadsheet, with more columns to track the auditor’s opinion and testing observations, as well as a worksheet with summary charts. It also includes a new Word document format. New recommended request list items were also added to each subcategory, with a newly created appendix that summarizes the request list. Additionally, the audit program now includes an evaluation worksheet that auditors can use to document the evaluation of NIST CSF 2.0 subcategory implementation status.

While there is currently not one standardized framework or methodology for auditing AI, auditors seeking to gain a deeper understanding of AI controls can leverage the Artificial Intelligence Audit Toolkit, a library of AI controls derived from select control frameworks and law, meant to help auditors better understand how these controls relate to different aspects of the AI lifecycle.

The assessment guide part of Artificial Intelligence Audit Toolkit provides a methodology to evaluate control design and operating effectiveness of AI-enabled systems, tools and processes. It covers controls in a series of control families and categories across a range of areas, including AI bias mitigation and fairness, AI data privacy and rights, human-AI interaction and experience, and secure systems design and development. Additionally, it walks through the six dimensions of AI explainability—rationale, responsibility, data, fairness, safety, performance and impact—as well as the key elements entailed in the assessment development approach—control synthesis and mapping, and explainability integration. The Excel-based toolkit provides a comprehensive resource to support AI assessment efforts, with spreadsheets that provide guidance related to the AI control assessment pertaining to each explainability dimension.

“The digital trust professionals in ISACA’s global community are working in fields that are constantly evolving, and ISACA is committed to walking alongside them with the tools, resources and best practices they need to do their jobs effectively,” says Lisa Cook, ISACA GRC Professional Practices Principal. “During periods of uncertainty with technology or regulations that are in their nascent stage—such as with AI—it is especially important to ensure the professional community is equipped and supported.”

ISACA Cybersecurity Audit Program: Based on the NIST Cybersecurity Framework 2.0 costs USD$25 for members and USD$49 for nonmembers and can be accessed here. Artificial Intelligence Audit Toolkit costs USD$49 for members and USD$99 for nonmembers and can be accessed here.

For more AI resources from ISACA, visit www.isaca.org/ai. For more ISACA audit and assurance programs and resources, visit www.isaca.org/resources/it-audit.

###

About ISACA
ISACA® (www.isaca.org) is a global community advancing individuals and organizations in their pursuit of digital trust. For more than 50 years, ISACA has equipped individuals and enterprises with the knowledge, credentials, education, training and community to progress their careers, transform their organizations, and build a more trusted and ethical digital world. ISACA is a global professional association and learning organization that leverages the expertise of its 180,000+ members who work in digital trust fields such as information security, governance, assurance, risk, privacy and quality. It has a presence in 188 countries, including 225 chapters worldwide. Through the ISACA Foundation, ISACA supports IT education and career pathways for underresourced and underrepresented populations.

Total Views: 79Word Count: 667See All articles From Author

Add Comment

Technology, Gadget and Science Articles

1. Comprehensive Fire Safety Solutions In Uae: Trusted Expertise By Global Alarms
Author: Global Alarms Safety & Security Equipment LLC

2. The Future Of Customer Browsing: A Guide To Co-browsing Solutions
Author: Jesvira

3. The Role Of Virtual Reality Consulting In Accelerating Digital Transformation
Author: omie84

4. Netflix Clone Script For Custom Video Streaming Platforms By Netflix Clone Script:
Author: Zybertron

5. Create A Capable Food Delivery App With The Top Development Organization
Author: Elite_m_commerce

6. How To Buy Textnow Accounts Safely And Securely: A Comprehensive Guide
Author: Bulk Account Buy

7. Improve Customer Communication Through A Dedicated Virtual Call Answering Service!
Author: Eliza Garran

8. Turning Raw Data Into Actionable Insights With The Art Of Visualization
Author: Digiprima

9. Mastering Sharepoint Migration
Author: Xanthe Clay

10. An Rise Digital Engagement By Developing Progressive Web Apps
Author: Elite_m_commerce

11. How To Build An Astrology App Like Astrotalk
Author: Deorwine Infotech

12. Maximise Your Online Presence With Odoo Website Builder
Author: Alex Forsyth

13. Track Market Trends With Zapkey Real Estate Data Scraping
Author: Devil Brown

14. Native Vs Hybrid Apps: Making The Right Choice For Your Mobile App Development
Author: calistabennet

15. Only 41 Percent Of Businesses Have Programs In Place To Hire More Women In Tech, According To Isaca Research
Author: Madhulina

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: