Principles of IT Audit

25 Lessons
CPEs 4.5
Auditing

Master the essentials of IT auditing with this beginner-friendly course. Learn the different types of IT audits, the audit lifecycle, and how to write clear, actionable audit reports—all with real-world case studies to connect theory to practice.

Course video preview

Current Status

Not Enrolled

Get Started

View Pricing & Plans
Access all courses starting at $25/m

Course Description

Course 2 of 9 in our IT Auditing Learning Path! The Principles of IT Audit course is designed to give you a complete foundation in IT auditing, whether you’re new to the field or looking to sharpen your skills. You’ll explore how IT audits support enterprise risk management, discover the roles and responsibilities of key stakeholders, and see how different types of audits apply in real-world contexts.

Through case studies, audit walkthroughs, and structured reporting examples, you’ll learn how audits are performed from start to finish and how findings are documented and communicated. The course also highlights best practices for writing clear, actionable reports and distinguishes IT audit from cyber risk advisory, giving you insight into two related but distinct career paths.

By the end of the course, you’ll have a strong understanding of IT audits, how they fit within modern organizations, and how to apply these practices in real-world scenarios.

This course covers topics that align with concepts addressed in Domain 1 of the Certified Information Systems Auditor (CISA®) exam framework. It is not affiliated with, endorsed by, or sponsored by ISACA®, nor does it guarantee exam preparation or certification outcomes.

In this course, you'll learn...

Course Objectives

To explain the scope and purpose of IT audits in a business and regulatory context.

To distinguish between various types of audits including operational, compliance, systems, and forensic audits.

To describe the phases of an IT audit lifecycle and the key activities of each.

To draft clear and actionable audit findings in line with professional standards.

To compare and contrast the IT auditing and cyber risk advisory fields.

To apply core IT audit concepts to real-world business scenarios using case studies.

How you'll apply these skills...

Scope an Audit Effectively: Define boundaries, objectives, and risk priorities to focus on the most critical areas.

Evaluate Risk Management: Identify vulnerabilities, assess control effectiveness, and connect risks to business impact.

Test and Validate Controls: Collect evidence, perform walkthroughs, and sample data to confirm processes work as intended.

Write Clear Findings: Translate technical issues into concise, business-focused audit reports with actionable recommendations.

Rank and Prioritize Risks: Use impact and likelihood to categorize risks, helping leadership focus on what matters most.

Support Compliance Efforts: Compare organizational practices against standards like SOX, HIPAA, or PCI-DSS.

Strengthen Business Resilience: Evaluate disaster recovery, continuity plans, and operational readiness for disruptions.

Bridge Technical and Business Teams: Communicate audit insights in language that executives, compliance officers, and IT staff can all act on.

Course Instructor

Michael Carroll, CPA, CISA, CISM

Michael is an accounting and information security professional. He is also an Adjunct Professor at several higher education institutions, where he is responsible for teaching various accounting and information technology courses.

Michael earned his MBA in Accounting and B.S. in Accounting / Accounting Information Systems from Canisius University. Additionally, Michael is a Certified Public Accountant (CPA) and a Certified Information Systems Security Professional (CISSP). Michael is a current member of the NYCPA’s Education Committee and has been an Advisory Board Member for the Academy of Finance (AOF) since 2020.

Michael enjoys traveling, hiking, and watching the Buffalo Bills. He has also participated in several marathon events.

Course Content

Course Summary 1 Topic
Lesson Content
0% Complete 0/1 Steps
Final Exam: Principles of IT Audit

Additional Info

Format

5-20 min. videos, 2 quizzes, and a final assessment

Field of study

Auditing

CPE Credits

CPEs 3.0

Prerequisites

Completion of Wisdify’s IT Risk and Control Fundamentals course (Recommended)

Corey

Corey is the owner of Wisdify.  He is passionate about learning and development, he loves helping people achieve their professional and personal goals. Corey is a big believer in the power of online learning and community with 15 years of finance and accounting experience.

Joe

Joe is the owner of Wisdify.  He is passionate about learning and development, he loves helping people achieve their professional and personal goals. Joe is a big believer in the power of online learning and community with 20 years of finance and accounting experience.

 

Kelsey Murphy

Kelsey is Wisdify’s expert content developer. Taking feedback from our students, Kelsey creates extremely relevant blog posts and leads the development of Wisdify’s other free resources.

Prior to Wisdify, Kelsey worked as a business technology strategy consultant for Forrester, a global research and advisory firm. While there, she acted as project manager for numerous research-based consulting projects.

Kelsey earned a BA in Economics and Mathematics from Wellesley College.

Madison Bess

Madison oversees the social media strategy at Wisdify and makes sure we stay closely connected with our students, receive their feedback, and provide our students with valuable information.

Prior to Wisdify, Madison successfully ran the social media accounts for multiple companies. She also found time to start her own personal training company (which she still runs).

Madison earned a BA in English from Brigham Young University.

Maryn Coughran

Maryn is a co-founder and leads the marketing and outreach efforts at Wisdify. She ensures we are connecting with our customers, hearing their feedback, and then implementing their suggestions.

Prior to Wisdify, Maryn co-founded (along with Nate) BostonExcel, a Microsoft Excel training company that worked with dozens of companies in virtually every industry. Maryn’s clients included numerous Fortune 1000 companies, prestigious universities, startups and everything in between. She also happened to write and illustrate a children’s book. Let’s just say she’s a woman of many talents.

Maryn earned a BA in Economics from Wellesley College.

The Buckaroos

Gwyn, Jack, and Kate are the adorable tow-heads that lead up Wisdify’s campaigns on cuteness, energy, and sleep-deprivation.