5

Information Systems Acquisition and Development

A CISA aspirant should have a sound understanding of information system acquisition, development, and implementation processes. You should be able to understand how an organization evaluates, develops, implements, maintains, and disposes of its information systems and related components.

The following topics will be covered in this chapter:

  • Project management structure
  • Business case and feasibility analysis
  • System development methodologies
  • Control identification and design

You will now explore each of these in detail.

Project Management Structure

Project management structure can be primarily classified into the following three categories:

Functional Structured

Project Structure

Get CISA – Certified Information Systems Auditor Study Guide - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.