The IS auditor should perform the following functions:
• Obtain the detailed requirements definition document and
verify its accuracy through interviews with the relevant user
departments,
• Identify the key team members on the project team and verify
that all affected user groups have/had appropriate representation.
• Verify that project initiation and cost have received proper
management approval.
• Review the conceptual design specifications (e.g., transforms,
data descriptions) to ensure that they address the needs of
the user.
• Review the conceptual design to ensure that control
specifications have been defined.
• Determine whether a reasonable number of vendors received a
proposal covering the project scope and user requirements.