Security Audit and Enterprise Risk Assessment Frameworks for Resilient Information Systems
  • Author(s): Adetomiwa A. Dosunmu; Peter Olusoji Ogundele
  • Paper ID: 1713225
  • Page: 434-447
  • Published Date: 22-12-2025
  • Published In: Iconic Research And Engineering Journals
  • Publisher: IRE Journals
  • e-ISSN: 2456-8880
  • Volume/Issue: Volume 3 Issue 5 November-2019
Abstract

The increasing dependence of organisations on complex, interconnected information systems has heightened exposure to cyber threats, operational disruptions, and systemic vulnerabilities. Security breaches, data loss incidents, service outages, and compliance failures have demonstrated that traditional, compliance-oriented security controls are insufficient for ensuring long-term information system resilience. Consequently, security auditing and enterprise risk assessment have evolved from isolated assurance activities into strategic governance mechanisms aimed at strengthening organisational resilience. This paper presents a comprehensive synthesis of security audit and enterprise risk assessment frameworks relevant to resilient information systems, drawing exclusively on literature published. The study reviews foundational audit models, risk assessment methodologies, governance standards, and resilience-oriented security paradigms, highlighting their strengths, limitations, and areas of convergence. By integrating insights from information systems security, risk management, internal control, and organisational resilience research, the paper develops a structured perspective on how security audits and enterprise risk assessments can be aligned to support robust, adaptive, and trustworthy information systems. The findings contribute to both academic and practitioner discourse by clarifying the role of assurance and risk assessment in achieving sustained information system resilience.

Keywords

Information Systems Security; Security Audit; Enterprise Risk Assessment; Cyber Resilience; Risk Governance; Information Assurance

Citations

IRE Journals:
Adetomiwa A. Dosunmu, Peter Olusoji Ogundele "Security Audit and Enterprise Risk Assessment Frameworks for Resilient Information Systems" Iconic Research And Engineering Journals Volume 3 Issue 5 2019 Page 434-447

IEEE:
Adetomiwa A. Dosunmu, Peter Olusoji Ogundele "Security Audit and Enterprise Risk Assessment Frameworks for Resilient Information Systems" Iconic Research And Engineering Journals, 3(5)