The Scenario
A SA medical scheme is about to undergo its first external IT audit by a Big Four firm. The CIO wants a preparation pack: the artefacts the audit team will request, the evidence the company already has, the gaps to close in the next 60 days, and the rehearsal walkthrough.
The Brief
Produce an audit preparation pack covering evidence inventory, gap closure plan, walkthrough rehearsal, and the audit-day operating model.
Deliverables
- An evidence inventory mapping at least 25 expected audit requests (sample list: access reviews, change tickets, backup test logs, incident records, policy approvals) to the system or repository where the evidence lives, plus the named owner
- A gap closure plan listing the requests where evidence is missing or weak, with a 60-day remediation schedule
- A walkthrough rehearsal pack: a list of the 8 to 12 walkthrough conversations the audit team will run, the company representative for each, and a one-page briefing covering the questions likely asked
- An audit-day operating model: the war room setup, the request triage process, the response SLA, and the escalation path for difficult requests
Submission Guidance
Audit teams hate two things: waiting for evidence, and inconsistent answers from different people. The preparation pack must produce fast evidence retrieval and ensure walkthrough representatives tell the same story.
Submit Your Work
Your submission is graded against the rubric on the right. If you pass, you get a public Badge URL you can share on LinkedIn. There is no draft save, so work offline first and paste your finished response here.