It is also good to emphasize at this stage that in the overall
information systems audit framework, the audit of networks is
one piece of the puzzle, with the other notable pieces being
audit of application software, audit of operating systems and
databases, audit of physical and environmental security and
audit of business continuity (these have been dealt with in
earlier issues of the IT Audit Basics column). To obtain a
comprehensive assurance about systems, it is important to
assess and evaluate all the parts. In this issue, we will focus on
auditing network security.