IT Security Audit Platform

Question Bank

Manage assessment questions by domain and category

ID Question Text Domain Category Type Risk Weight Status Actions
13 Do you have a formal IT strategy document?
Written plan aligning IT with business objectives
IT Organization & Support Structure IT Strategy & Planning YesNo 1.5 Active
14 Do you have an IT roadmap for the next 12-24 months?
Planned IT initiatives and projects
IT Organization & Support Structure IT Strategy & Planning YesNo 1.5 Active
15 Do you have a formal IT budget?
Approved budget for IT operations and capital expenses
IT Organization & Support Structure IT Strategy & Planning YesNo 1.5 Active
16 Do you track IT Key Performance Indicators (KPIs)?
Metrics to measure IT performance and effectiveness
IT Organization & Support Structure IT Strategy & Planning YesNo 1.0 Active
44 Do you have an automated patch management system?
Automated deployment of OS and application updates
IT Organization & Support Structure Patching & Updates YesNo 2.0 Active
130 Do you have an automated patch management system?
Automated deployment of OS and application updates
IT Organization & Support Structure Patching & Updates YesNo 2.0 Active
45 How frequently are Windows updates deployed? IT Organization & Support Structure Patching & Updates MultipleChoice 2.0 Active
131 How frequently are Windows updates deployed? IT Organization & Support Structure Patching & Updates MultipleChoice 2.0 Active
46 How frequently are third-party application updates deployed? IT Organization & Support Structure Patching & Updates MultipleChoice 2.0 Active
132 How frequently are third-party application updates deployed? IT Organization & Support Structure Patching & Updates MultipleChoice 2.0 Active
47 Do you test patches before deployment?
Validation in test environment before production
IT Organization & Support Structure Patching & Updates YesNo 1.0 Active
133 Do you test patches before deployment?
Validation in test environment before production
IT Organization & Support Structure Patching & Updates YesNo 1.0 Active
7 Do you have a ticketing system to track IT support requests?
System for logging, tracking, and resolving IT issues
IT Organization & Support Structure Support Model & Processes YesNo 2.0 Active
8 If yes, which ticketing system do you use?
e.g., ServiceNow, Zendesk, Jira Service Desk
IT Organization & Support Structure Support Model & Processes Text 1.0 Active
9 Do you have documented Service Level Agreements (SLAs) with IT providers?
Written agreements defining response/resolution times
IT Organization & Support Structure Support Model & Processes YesNo 1.5 Active
10 What are your standard IT support hours? IT Organization & Support Structure Support Model & Processes MultipleChoice 1.0 Active
11 Is 24/7 on-call support available?
After-hours emergency support availability
IT Organization & Support Structure Support Model & Processes YesNo 1.5 Active
12 Do you have documented IT policies and procedures?
Written guidelines for IT operations and standards
IT Organization & Support Structure Support Model & Processes YesNo 2.0 Active
1 Does your organization have internal IT staff?
Dedicated employees on payroll responsible for IT functions
IT Organization & Support Structure Team Structure YesNo 1.5 Active
2 If yes, how many internal IT staff members do you have?
Total count of IT personnel
IT Organization & Support Structure Team Structure Numeric 1.0 Active
3 Do you use a Managed Service Provider (MSP) for IT support?
Third-party vendor providing ongoing IT services
IT Organization & Support Structure Team Structure YesNo 2.0 Active
4 If yes, what is the name of your MSP? IT Organization & Support Structure Team Structure Text 1.0 Active
5 How many employees does your primary MSP have?
Helps assess vendor capacity and risk
IT Organization & Support Structure Team Structure Numeric 1.5 Active
6 Is there a single point of contact who oversees all IT service providers?
Central coordination for IT vendors and services
IT Organization & Support Structure Team Structure YesNo 1.5 Active
35 How many workstations (desktops/laptops) does your organization have?
Total count of employee computers
IT Organization & Support Structure Workstations & Endpoints Numeric 1.0 Active
36 What percentage of workstations are running Windows 10 or newer?
Supported operating system versions
IT Organization & Support Structure Workstations & Endpoints Numeric 2.0 Active
37 Do you have a complete inventory of all IT assets?
Documented list of all hardware and software
IT Organization & Support Structure Workstations & Endpoints YesNo 1.5 Active
38 Do you use Remote Monitoring and Management (RMM) software?
Centralized monitoring and management of endpoints
IT Organization & Support Structure Workstations & Endpoints YesNo 1.5 Active
39 If yes, which RMM solution do you use?
e.g., NinjaRMM, Datto, ConnectWise
IT Organization & Support Structure Workstations & Endpoints Text 1.0 Active
40 Are workstations encrypted?
BitLocker, FileVault, or other encryption
IT Organization & Support Structure Workstations & Endpoints YesNo 2.5 Active
41 Do end users have local administrator rights on their workstations?
Elevated privileges that can increase security risk
IT Organization & Support Structure Workstations & Endpoints YesNo 2.5 Active
42 Do you have a Mobile Device Management (MDM) solution?
Management of mobile phones and tablets
IT Organization & Support Structure Workstations & Endpoints YesNo 2.0 Active
43 If yes, which MDM solution do you use?
e.g., Intune, Jamf, MobileIron
IT Organization & Support Structure Workstations & Endpoints Text 1.0 Active
Showing 33 of 242 questions
242 Active 0 Inactive
An error has occurred. This application may no longer respond until reloaded. Reload 🗙