Ru

Software development process audit

A software development process audit is an independent review of software products, processes, and systems. Its purpose is to assess compliance of the software development process with industry standards, including requirements for information system security and data protection, global and domestic best practices, and organisational established requirements. During the audit, FBK experts examine the software development life cycle (SDLC) to ensure that it’s adequately complied with and that the software product under development meets business and stakeholder requirements, among other criteria.

This audit may be both conducted internally within a company and commissioned to assess a contracted organisation.

Software development process audit includes the following stages:
  • Defining audit scope and objectives.
  • Collecting required software documentation.
  • Analysing documentation for compliance with best practices.
  • Identifying and analysing the software development methodology used.
  • Analysing the software development life cycle (SDLC) process.
  • Reviewing software testing procedures.
  • Evaluating software configuration and change management procedures.
  • Verifying compliance with data security standards.
  • Analysing incident management processes.
  • Assessing risk management strategy.
  • Evaluating service provider engagement practices.
  • Reviewing going concern implementation.
Upon completion of the audit, the client receives:
  • Report containing:
    • identified challenges and vulnerabilities;
    • potential areas for improvement;
    • recommendations for problem resolution and risk mitigation.
  • Improved efficiency of the software development process and its alignment with global best practices.
  • Accelerated software development with reduced IT and cyber risks.
Our advantages
Expert Team
FBK consultants hold international certifications (CISA, CISM, and CISSP), validating their expertise in information security, risk management, and project governance.
Long-term Collaboration
FBK’s purpose is to establish long-term partnerships, enabling service delivery tailored to your business nuances.
Expertise
FBK’s team has accumulated significant experience in almost all sectors and industries and is well-versed in trends and challenges within specific industries.
Key Persons
Managing Partner, Financial Services Industry
Karpushkin Alexey Mikhailovich
Head of IT Audit and Advisory Practice
Expert RA
Kommersant
TOP 1000 Russian managers
Pravo.RU
Rossiyskaya Gazeta
Forbes