Updated in May 2025.
This course now features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Master the essentials of IT and cloud auditing with this comprehensive course. You'll gain a deep understanding of cybersecurity audits, IT controls, compliance frameworks, and risk management. Learn to perform audits effectively, identify security gaps, and ensure compliance with industry standards like NIST, ISO 27001, and SOC audits. The course starts with cybersecurity fundamentals, distinguishing information security from cybersecurity, and exploring organizational structures. You'll then dive into IT audit methodologies, covering internal and external audit roles, IT controls, risk assessments, and compliance testing. Frameworks such as HIPAA, PCI DSS, and COBIT will be discussed in detail, ensuring a solid grasp of industry best practices. Next, you'll explore the entire audit lifecycle, from planning to reporting. Hands-on lessons guide you through technical testing, including identity management, privileged access control, vulnerability assessments, and incident response. You'll also cover cloud governance, cloud audit frameworks, and security testing within cloud environments. Ideal for IT professionals, auditors, and security specialists, this course is designed for those with a foundational knowledge of IT and security concepts. Whether you're preparing for a career in IT auditing or aiming to enhance your expertise, this course provides the practical skills needed to succeed.