Chapter 2.5

Tier 2—Auditor

Abstract

Auditing, though originally in the financial area, has expanded into a wide range of professions as the need to ensure that organizations are matching their processes to documented policy and procedure in other areas as well. Because of this need, auditors within the information security are becoming more in demand, and have careers both as in-house auditors or as consultants who are brought in to certify that an organization’s processes meet a certain standard.

Keywords

auditing
information security
careers
consulting
certification

Introduction

“Sed quis custodiet ipsos custodes?”

— Juvenal

In some ways, the role of an Auditor is simply to ensure that an organization is doing what it is supposed to—either ...

Get Breaking into Information Security now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.