Link to home
Start Free TrialLog in
Avatar of Pau Lo
Pau Lo

asked on

DMS audit scope (SharePoint or similar)

what areas could/should be included in the scope of an audit/healthcheck (call it what you like) of a document management system like SharePoint, above and beyond the obvious, ensuring any confidential/sensitive documents are only accessible to authorised users/groups.
ASKER CERTIFIED SOLUTION
Avatar of btan
btan

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of madunix
madunix

Make sure that security is part of your requirements and that the software will not be considered passed/accepted until those requirements are met. Make sure your security requirements are written clearly. Use a checklist to evaluate your security requirements.

See ISACA's Audit Programs here https://www.isaca.org/Knowledge-Center/Research/Pages/Audit-Assurance-Programs.aspx