
Sustainable Audit Management: How Continuous GRC Ensures Long-Term Verifiability of IT Security
From audit panic to Continuous Compliance: how automation + InfoSec experts prove security daily, not just before audits.
Topic
When & Where
Details
Format:
Technology lecture
Language:
German
Session description
Speaker: Caroline Kues
Many IT security managers are familiar with this situation: For months leading up to an audit, they go to great lengths to collect materials, maintain Excel spreadsheets, and gather supporting documentation. After the audit, a dangerous gray area emerges, because during day-to-day operations it often remains unclear whether security measures are still effective or exist only on paper.
In this presentation, we’ll explore the synergy between intelligent software automation and human infoSec experts.
Using real-world examples, we’ll show you how to transition from ad hoc audits to a model of continuous compliance: Requirement profiles (e.g., ISO 27001, NIS2) are directly linked to dynamic controls, evidence is automatically collected in the background ...

