ISACA IT Audit Fundamentals Exam Prep
The audit process, controls, and evidence, taught for the ISACA fundamentals certificate.
Tuition
$199
Beginner
Level
5
Modules
20
Lessons
5
Graded quizzes
7 hours
Estimated time
What you will be able to do
- Explain the purpose, types and standards of IT audit and assurance
- Describe IT governance, control frameworks and the three lines model
- Plan an audit: scoping, risk assessment and the audit programme
- Gather and evaluate evidence using appropriate testing techniques
- Assess IT general controls: access, change, operations and backup
- Report findings and follow up on remediation
- Pass a timed practice exam covering the certificate's domains
What is inside
5 modules, 20 lessons. Each module ends in a graded quiz.
- 01
Audit Foundations: The Audit Function, Controls and Risk
Covers two ISACA IT Audit Fundamentals domains, Audit Function and Controls, Risk and Audit, which carry about 5 percent and about 8 percent of the exam respectively. You will learn what an IT audit is, how audit types and objectives differ, why independence and professional ethics govern every engagement, and how preventive, detective, corrective and compensating controls actually work. The module closes by connecting core risk concepts to the risk-based mindset that drives modern audit planning and testing.
4 lessons · 15 quiz questions
- 02
The IT Environment and Its Components
Covers the ISACA IT Audit Fundamentals domain IT Environment and Components, which carries roughly 25 percent of the exam. You will learn how IT governance, organizational structure and frameworks set direction, then work down through hardware, operating systems, data center operations, networks and boundary controls to databases, applications and the systems development life cycle. Every topic is taught from the auditor's seat, with emphasis on where the control sits and what evidence proves it worked.
4 lessons · 15 quiz questions
- 03
Performing an Audit End to End
Covers the Performing an Audit domain, which carries about 35 percent of the ISACA IT Audit Fundamentals Certificate exam and is the largest single weighting on the blueprint. You plan and scope an engagement, gather sufficient and appropriate evidence, test control design and operating effectiveness, and record the work in review ready working papers. You then turn exceptions into defensible findings, report them clearly, and follow up until remediation is verified with evidence.
4 lessons · 15 quiz questions
- 04
Auditing Specific Subject Areas
Covers the ISACA IT Audit Fundamentals Specific Audit Subjects domain (about 15 percent of the exam), where general audit method is applied to the control areas you will actually be assigned. Four lessons work through logical access and identity, change and configuration control, backup and recovery, and physical, environmental, and third party services. Each lesson teaches the control objective, the evidence that proves it, and the findings that recur in practice.
4 lessons · 15 quiz questions
- 05
Auditing Newer and Emerging Technologies
Covers the ISACA IT Audit Fundamentals domain Overview of Newer Technologies, which carries about 12 percent of the exam. You will learn how cloud service and deployment models redistribute control ownership, how virtualization, containers and software defined infrastructure change where audit evidence lives, and how big data, artificial intelligence, mobile, internet of things and distributed ledger technologies reshape risk. The domain closes with a repeatable method for auditing any technology you meet for the first time.
4 lessons · 15 quiz questions