Skip to main navigation Skip to search Skip to main content

Auditing IT Applications for Risk Management and Strategic Optimization

  • Varun Razdan
  • , Aman Modi
  • , Dinesh Kanna Aranganathan
  • , Manish Gupta
  • , Raj Sharman
  • SUNY Buffalo

Research output: Chapter in Book/Report/Conference proceedingChapterpeer-review

Abstract

This chapter presents a comprehensive strategy for auditing IT application portfolios to mitigate risks, enhance governance, and drive strategic optimization. Targeted at IT auditors, risk professionals, and enterprise architects, it integrates frameworks such as CISA, COBIT, ITIL, SOC 2, NIST, and ISO 27001 to guide practices in inventory validation, business alignment, cost-effectiveness, technical risk, and cloud readiness. Structured tools like checklists, the TIME model, and dashboards support a systematic audit process. A hypothetical case study illustrates practical application across multi-industry and multi-region settings, demonstrating how auditdriven insights can uncover redundancies, improve lifecycle health, and strengthen operational resilience. This chapter per the authors emphasizes that a well-governed application portfolio audit not only ensures compliance and risk mitigation but also enables substantial cost savings and better alignment with modernization goals.

Original languageEnglish
Title of host publicationAdvancing IT Audits Through Integrative Approaches and Emerging Technologies
PublisherIGI Global
Pages239-268
Number of pages30
ISBN (Electronic)9798337348902
ISBN (Print)9798337330785
DOIs
StatePublished - Aug 7 2025

Fingerprint

Dive into the research topics of 'Auditing IT Applications for Risk Management and Strategic Optimization'. Together they form a unique fingerprint.

Cite this