About UsBusiness DivisionOfferingsCareersContact UsProducts


Information System Audit

IS audit practice is the high-end service offered by us. We assist our clients to effectively manage business risks by providing a full spectrum of IT governance, risk management, and IS audit services. These services are tailored to meet clients’ specific needs, and provide effective support to management in meeting the challenges and opportunities presented by today's complex Banking environment.

IDBI Intech offers a wide range of tailored services and products to enhance IT governance, manage business risk, provide assurance on control effectiveness, and support in achieving the Organization’s business objectives. We are also capable of enhancing the effectiveness of the IS audit by supporting it with data analysis using ACL.

We have a team of talented young professionals possessing expertise in technical, functional & banking domains. The team members come from various educational backgrounds like Chartered Accountants, Engineers, MBA’s. We have certified professionals like CISA, CISSP, CEH, BS 7799 Lead Auditor, CCNA, CCNP etc.

Email: is.audit@idbiintech.com

Our Information Security Services:

  • Application Assurance, IT General Controls audit
  • IT Infrastructure Security review
  • Data Migration Audit
  • IT Governance Consulting
  • Information Security education

Application Assurance and IT General Controls audit

  • Input, processing and output controls
  • Verification of accuracy & completeness in the data processing
  • Logical access controls and Interface controls
  • IT General controls relating to applications such as User accounts management, Software Development Life Cycle (SDLC) controls, Change management, Back-up etc
  • Evaluation of Service level agreements (SLAs), Annual maintenance contacts (AMCs) etc
  • Evaluation & selection of software vendor
  • Existence of Escrow agreement for Software source code
  • Review of Operating systems security, Database security
  • Review of Physical security

IT Infrastructure Security review

  • Review of various IT Infrastructure elements
  • Network: LAN, WAN,
  • Databases: Oracle, Foxpro etc
  • Operating system: Windows, Unix, Linux
  • Firewalls, Routers, Application Server, Web server etc
  • Vulnerability Assessment and Penetration Testing (VAPT)

Data Migration Audit

  • Review of process documents, mapping documents, conversion tools
  • Migration from old systems as well as from manual records covered
  • 100% Verification of data
  • Analysis with the help of internationally accepted auditing tools like ACL

IT Governance Consulting

  • Alignment of IT plans with business plans
  • Review and Design of IT policies and Information Security policies and procedures
  • Evaluation of effective utilization of IT resources
  • Formulation of Business Continuity Plan and Disaster Recovery Plan
  • Designing of operating guidelines for IT users
  • Consultancy on Business Process Re-engineering
  • Compliance with legal & regulatory requirements
  • Evaluation of Risk management strategies adopted by the organization
  • ISO/IEC 27001 Implementation Consultancy

Information Security Education

  • We conduct short duration Security awareness programmes, tailored separately for Top management, Users and IT management
  • The programme includes factual case studies & importance of information security & simple explanation of various terms used in information security
  • Our programme covers all the domains of Information security including, framing of polices & procedures, Disaster management, Incident reporting, Social engineering etc