[_private/navbar.html]

MC-21, AUDITING DATA COMMUNICATION NETWORKS

LOCATION/DATE: • Boston: October 12-13, 1998

COURSE OBJECTIVES

WHO SHOULD ATTEND

COURSE OUTLINE

  1. DATA COMMUNICATIONS ENVIRONMENT. • Communication Network (WANs) • Major Hardware and Software components • Communication Links & Carriers • Protocols (OSI) • Front End Processors • Network Control Center

  2. THREATS AND EXPOSURES IN NETWORKS. • Security threats • Business discontinuity • Errors, routing • Transaction authenticity and authorization

  3. CONTROLLING NETWORKS. Key control zones and points for networks. Control Objectives and safeguards for major network control points. Compendium of controls in the form of control matrices • Network connectivity and security issues - Internet, Firewalls, Digital Certificates.

  4. AUDITING THE NETWORK. • Audit approaches & evidence (Operational, static, and active test approaches) • Audit workpapers (Network diagram). Auditing network change control and network administration

  5. Case Study - How to prepare a detailed Network Audit Work Plan.

  6. NETWORK CONTINGENCY PLANNING - Network backup - Hardware & Links