Skip navigation Spacer Spacer Spacer
Data Protection Logo Spacer Guide to Data Protection Auditing

Data Protection Homepage  Bullet  
Audit Guide Homepage  Bullet  
Download print version  Bullet  

What is a Data Protection Audit? Why Audit? Beginner's guide Step-by-step Process Forms and Checklists Site Map

SpacerPlanning | Preparation: Conducting the Adequacy Audit | Preparation: Compliance Audit | Conducting the Compliance Audit | Audit Execution | Reporting | Audit follow-up

Spacer Spacer

Next >

Spacer
Spacer

Step-by-step guide to the Audit Process

A Data Protection Audit is a process involving a number of separate activities or phases that may occur over an extended period of time. To manage this process effectively it is necessary to understand the five phases that comprise a typical audit:

1. Planning
2. Preparation: 3. Conducting the Compliance Audit
4. Reporting
5. Audit follow-up

This part of the Audit guide describes these five phases of the "Audit Lifecycle" in a chronological step-by-step fashion. Wherever reference is made to a pro-forma, examples have been provided in the appropriate annex.

The Audit Lifecycle illustrated in Figure 3.1 below:

Fig. 3.1: The Data Protection Audit Lifecycle

Fig. 3.1: The Data Protection Audit Lifecycle

Audit Planning Audit Preparation Conduct of the Compliance Audit Compliance Audit Reporting Audit Follow-up

Return to top
 

Spacer

Next >

Spacer
Spacer