Journals / Denetim ve Güvence Hizmetleri Dergisi / 2022 / Cilt: 2 - Sayı: 1

Auditing Information Technology Governance

Bilgi Teknolojileri Yönetişiminin Denetimi

Pages
1–13
DOI
—

Abstract

Information technology processes play a critical role in the activities of businesses. Ensuring information technology governance is one of the critical success factors of enterprises. Information technology governance ensures that business requirements and information technology operations are in a harmony with each other. The main purpose of information technology audits is to evaluate the effectiveness and adequacy of controls on information technology processes by internal audit units. The most important work carried out within the scope of IT audits is the review of the IT governance framework and processes. The aim of this study is to propose a scope for assurance services to be provided in the field of information technology governance. For this purpose, by making use of the document analysis method, one of the qualitative research methods, a scope proposal has been made by determining the areas of investigation that should be taken into account in the internal audit engagements to be carried out for the information technology governance structures in the enterprises.

Özet

Bilgi teknolojileri süreçleri işletmelerin faaliyetlerinde kritik rol oynamaktadır. Bilgi teknolojileri yönetişiminin sağlanması, işletmelerin kritik başarı faktörlerinin başında gelmektedir. Bilgi teknolojileri yönetişimi, iş gereksinimleriyle bilgi teknolojileri operasyonlarının birbirleriyle uyum içerisinde olmasını sağlar. Bilgi teknolojileri denetimlerinin temel amacı bilgi teknolojileri süreçlerine yönelik kontrollerin etkinliği ve yeterliliğinin iç denetim birimlerince değerlendirilmesidir. Bilgi teknolojileri denetimleri kapsamında gerçekleştirilen en önemli çalışmaların başında bilgi teknolojileri yönetişim çerçevesinin ve süreçlerinin gözden geçirilmesi gelmektedir. Bu çalışmanın amacı, bilgi teknolojileri yönetişimi alanında verilecek güvence hizmetlerine yönelik olarak bir kapsam önerisinde bulunulması olarak belirlenmiştir. Bu amaçla, nitel araştırma yöntemlerinden doküman analizi yönteminden faydalanılmak suretiyle işletmelerde bilgi teknolojileri yönetişim yapılarına yönelik gerçekleştirilecek iç denetim çalışmalarında dikkate alınması gereken inceleme alanları belirlenerek bir kapsam önerisinde bulunulmuştur.

Keywords: İç Denetim, Güvence Hizmetleri, Bilgi Teknolojileri, Bilgi Teknolojileri Yönetişimi, Bilgi Teknolojileri Yönetişimi Denetimi