-
Assessing Cybersecurity With NIST CSF 2.0: An Internal Audit Method
An internal audit method for using NIST CSF 2.0 as assessment criteria: how to scope a first-time assessment by depth, turn the 106 subcategories into agreed criteria, apply…
Updated
·
19–29 minutes -
The Cybersecurity Topical Requirement: A Conformance Workbook
The IIA Cybersecurity Topical Requirement turned into a working checklist: the three domains and seventeen requirements with what to assess, example evidence and the common gap for each,…
Updated
·
22–33 minutes -
COSO’s 17 Principles: The Complete List, What Each Requires, and How to Evaluate Them
All seventeen COSO 2013 principles across the five components: the question each asks, the evidence that answers it, what each looks like when it fails, the present-functioning-operating-together evaluation,…
Updated
·
18–27 minutes -
Old IPPF to New GIAS: The Complete Mapping Table
Every 2017 Attribute and Performance Standard mapped to the 2024 Global Internal Audit Standards, following the IIA two-way mapping: Code of Ethics and Core Principles crosswalks, the requirements…
Updated
·
28–43 minutes -
GIAS Domain V: Performing Engagements From Planning to Closure
Domain V of the Global Internal Audit Standards, standard by standard: the fourteen workpapers the domain produces, engagement communication as a thread from notification to closing meeting, the…
Updated
·
19–29 minutes -
GIAS Domain IV: Managing the Function — Strategy, Plan, Resources, Communication
Domain IV of the Global Internal Audit Standards, standard by standard: the sixteen artifacts the domain produces, understanding the organization, the new internal audit strategy requirement with an…
Updated
·
19–29 minutes -
GIAS Domain III: Governing the Internal Audit Function — the Board’s Job Description
Domain III of the Global Internal Audit Standards, standard by standard: the essential-conditions idea and who it binds, the internal audit mandate and charter, board and senior management…
Updated
·
19–29 minutes -
GIAS Domain II: Ethics and Professionalism, Including Professional Courage
Domain II of the Global Internal Audit Standards, standard by standard: the five principles and thirteen standards at a glance, why the Code of Ethics became testable standards,…
Updated
·
19–29 minutes -
The Global Internal Audit Standards: A Complete Reference Map
The Global Internal Audit Standards mapped: 5 domains, 15 principles, all 52 standards and what each governs — the free reference the profession lacked.
Updated
·
8–12 minutes -
Third-Party Topical Requirement: The 17 Requirements, Mapped for 15 September 2026
The IIA’s Third-Party Topical Requirement, effective 15 September 2026, as a working guide: what counts as a third party, when the requirement binds, all seventeen requirements in three…
Updated
·
19–28 minutes -
IIA Topical Requirements Explained: What Is Mandatory, When, and How to Conform
The IIA’s Topical Requirements explained: where they sit in the 2024 IPPF, every requirement issued or announced with dates and structure (cybersecurity in force since February 2026, third-party…
Updated
·
19–28 minutes -
QAIP: Preparing for an External Quality Assessment (EQA)
Every professional internal audit function must adhere to standards that maintain objectivity, credibility, and continuous enhancement. Among these requirements is the Quality Assurance and Improvement Program (QAIP), a…
Updated
·
10–16 minutes -
How to Audit Corporate Culture: A Topical Requirement Method
Culture becomes a mandatory audit subject on 15 December 2026. The fifteen requirements of the IIA’s Organizational Behavior Topical Requirement with the evidence for each, culture defined as…
Updated
·
24–36 minutes -
From Simplicity to Complexity: The Evolution of Internal Audit as a Modern Profession
In a world where technology, globalization, and regulatory scrutiny have transformed the way businesses operate, internal audit (IA) has emerged as a cornerstone of corporate governance and risk…
Updated
·
12–18 minutes -
Global Internal Audit Standards 2024: What Changed
The internal audit profession is no stranger to change. As organizations become more complex and the global business environment more volatile, the Institute of Internal Auditors (IIA) has…
Updated
·
19–29 minutes -
History of IIA Internal Audit Standards: 1947 to GIAS 2024 and the Topical Requirements
The full history of the IIA Standards with every date re-checked: the 1947 Statement of Responsibilities, the 1968 Code of Ethics, the 1978 Standards, the 1999 definition, the…
Updated
·
29–44 minutes -
ISO: A Comprehensive Introduction to the World’s Leading Standards Organization
In a world that increasingly demands quality, safety, interoperability, and efficiency, standards have emerged as essential tools guiding products, services, and processes. Among the numerous entities involved in…
Updated
·
7–11 minutes -
ISO 9001 Internal Audits: How the QMS Cycle Works
Quality management and continuous improvement have become integral elements in today’s competitive business environment. Many organizations seek to meet international quality standards to gain customer trust, streamline operations,…
Updated
·
7–11 minutes -
COSO Framework Guide: An Introduction for Internal Auditors
In the world of corporate governance and internal control, few names carry as much weight as COSO (the Committee of Sponsoring Organizations of the Treadway Commission). For internal auditors, risk…
Updated
·
10–14 minutes -
What Is COSO in Internal Audit? A Comprehensive Guide for Beginners
Introduction If you’ve spent any time exploring the world of internal audit, governance, or risk management, you’ve likely come across the acronym “COSO.” For newcomers, the term can…
Updated
·
11–17 minutes -
How to Conduct an ISO 14001 Audit: A Comprehensive Guide for Internal Auditors
In an increasingly sustainability-focused world, environmental performance has become a core pillar of responsible business operations. Organizations face mounting pressure from regulators, stakeholders, and the public to minimize…
Updated
·
8–12 minutes -
Risk Management Frameworks Compared: COSO, ISO 31000, NIST
Nine frameworks and models in one comparison with what each is for and is not, a decision table for which fits which situation, the eight elements every framework…
Updated
·
19–29 minutes