Definitions Edit

Auditability is "[t]he degree to which transactions can be traced and audited through a system."[1]

Auditability means

that it is possible to establish whether a system is functioning properly and, thereafter, that it has worked properly.[2].
[t]he capability of supporting a systematic, independent and documented process for obtaining audit evidence and evaluating it objectively to determine the extent to which audit criteria are fulfilled.[3]

Overview Edit

"One aspect of auditability is to provide sufficient knowledge about the system and its structure, functions, controls, etc. by means of appropriate documentation. Another important aspect of auditability is to make visible all integrity-related modifications to the system and its data. Logging data should make it possible to answer the questions 'who?', 'what?' and 'when?'"[4]

References Edit

  1. Internet Banking: Comptroller's Handbook, at 64.
  2. Report on Electronic Money, Annex 1, Glossary, at 37.
  3. Cloud Service Level Agreement Standardisation Guidelines, at 10.
  4. Id.

