03 · Selected Work

Internal ISMS Audit

ISMS Internal Audit ISO 19011

Conducted a complete internal ISMS audit following ISO 19011 auditing guidelines to evaluate compliance with ISO/IEC 27001 controls and verify operational effectiveness before certification.

Role
Lead Internal Auditor
Environment
Simulated Organization
Framework Mapping
ISO 27001 & ISO 19011
Overview

To better understand the audit lifecycle, I performed an end-to-end internal audit from planning through reporting. The engagement included audit planning, evidence collection, interviews, sampling, control testing, reporting, and corrective action tracking.

Objectives
Tools & Stack
Process

Prepared audit plans, interviewed process owners, reviewed security documentation, sampled evidence, evaluated controls, classified findings, and drafted a formal audit report.

Findings & Deliverables
Outcome & Reflection

The project improved my ability to gather objective evidence, evaluate controls consistently, and present findings using internationally recognized auditing practices.

Selected Work