IT/Cybersecurity Audit and Compliance Workshop

Day 3: Watch Replay Below

Enrollment Link: You can enroll for the program at https://www.youritcareeracademy.com/p/itaf-enroll

Q&A Responses: There were many questions asked during the workshop. While we answered some LIVE, we didn’t get to others. Responses to common questions asked during the workshop are below the video.

Day 1 Replay: Click here to watch the Day 1 Replay

Day 2 Replay: Click here to watch the Day 2 Replay

Q&A Responses

There were A LOT of questions during the workshop.

I reviewed all the questions and responded to the common questions below. Several questions were combined due to similarity.

How do I register for the IT Audit Fundamentals program?

You can enroll for the program at https://www.youritcareeracademy.com/p/itaf-enroll

Is the 3-day training enough to get a job in the IT Audit field?

The free workshop is intended to give you a practical introduction to the field. There is A LOT more that you need to learn to successfully get and keep a job. Please join Day 2 for additional details.

Is it possible to start a career in IT/Cybersecurity Audit and Compliance without a degree in IT and no prior experience?

Yes. You do not need to have a technical degree, coding skills or prior experience. However, you need to gain the required skills on how to perform IT/Cybersecurity Audits. The skills are needed to show potential employers that you can do the job.

Can I transition into IT/Cybersecurity Audit from other backgrounds like Accounting, Finance, Law, Healthcare/Nursing, Claims Analyst, Insurance, Risk management, Tax, IT Support, Helpdesk, Banking, Project Management, etc.

Yes, yes, and yes. I have students from many different fields that have successfully transitioned into IT/Cybersecurity Audit and Compliance.

What is the difference between IT Audit and Cybersecurity Audit?

Cybersecurity is a sub-area of IT. In recent times, those terms are usually used interchangeably for audits as many IT Audits cover cybersecurity controls. This workshop is specific to IT/Cybersecurity Audit and Compliance (not all of cybersecurity).  

Is there a link between IT Audit and Financial Statement Audits?

Yes. I cover this in detail in my comprehensive training program.

Are attestation audits typically performed by external auditors?

Yes. Attestations like SSAE 18 are performed by external auditors (independent CPA firms).

Is Pen Testing required for IT Audit?

Not all audits require Pen Testing. For example, SOX does not have a requirement for Pen Testing, but PCI DSS has a Pen Testing requirement. That’s why it’s important to understand the scope of your audit based on the standard being tested against for compliance.

Is your training program specific only to the United States?

No. I have students from various countries around the world (e.g., Canada, UK, Australia, Nigeria, Cameroun, Qatar, Japan, Germany). Several standards are international and apply to countries worldwide.

Is IT/Cybersecurity Audit and Compliance suitable for women/moms?

Absolutely. The flexibility of the field has worked great for me as a wife and mom. Many of my students are women and moms too.

Are there remote jobs available in this field?

Yes. Many students in my program got remote jobs.

What is the difference between audit, attestations, and assessments.

In simple terms, you can think of attestations and assessments as types of audits based on the standard being audited against. However, in many cases, you hear people refer to everything as an audit if they don’t have sufficient knowledge of the field.

Am I best suited for internal or external audit based on my prior experience (e.g., law)?

You can focus on either area based on your interests, transferable skills, and the knowledge that you gain as part of your career transition. There’s no hard and fast rule on suitability.

For standards and regulations, is it important to know/memorize all standards and regulations pertaining to IT Audit?

No. You need the skills to perform the audits, not memorization of standard requirements.

Do I need to know coding or SQL to start working in IT/Cybersecurity Audit and Compliance?

No, you do not.

You noted that IT audit gives reasonable assurance over completeness and accuracy of data in the system. Aren’t the controls around the system and not necessarily the data itself?

Great question. When the system controls are effective, then you can have reasonable assurance that the data in the systems are complete and accurate.

What’s your Instagram handle?

@your_it_career

Can one get a job as an IT Auditor without a bachelor’s degree? I only have an Associate’s degree.

While most companies ask for a Bachelor’s degree, there are some companies that will accept Associate’s degrees or military experience in lieu of a Bachelor’s degree.

All questions related to immigration/visas

I’m unable to provide immigration guidance as I’m not a legal professional. However, I will note that I was hired right out of college while on student visa and was able to work on H1-B. This should not be taken as legal advice. Please seek legal advice for all immigration-related questions.

Note: If your question does not appear above, it either wasn’t clear enough or was asking for very specific personal coaching guidance.