Privacy Controls Audit Work Program
Subscriber Content

This sample audit work program provides steps for a privacy controls review.
Specific audit objectives included in this sample include: verifying management direction and support for privacy controls to safeguard against unauthorized use; checking that system implementations and changes are appropriately tested before being moved to the production environment; reviewing privacy control objectives of policies and procedures; and testing that privacy controls are in place to account for all IT components, prevent unauthorized alterations, verify physical existence and provide a basis for effective privacy controls.