Question 1 of 30
During an audit of an organization\'s IT Asset Management system, an auditor discovers that the software asset register indicates 500 licenses for a particular application, yet a discovery tool reports 585 installations of that same application across the network. The organization claims to have a robust software deployment process and regular license reconciliation. What is the most appropriate initial audit action to address this significant discrepancy?
Examine the documented procedures for software procurement, deployment, and reconciliation, and seek evidence of their implementation and effectiveness in capturing all software installations and entitlements.
Immediately issue a major non-conformity report, citing a complete failure of the software asset management process and demanding an immediate halt to all software deployments until the issue is resolved.
Request the IT department to uninstall the excess 85 installations of the application, assuming they are unauthorized, and verify that the software asset register is updated accordingly.
Focus solely on the discovery tool's accuracy, requesting a re-scan of the network to confirm the reported installation numbers before proceeding with any further investigation into the ITAM system's processes.

Preparing for ISO/IEC 19770-1:2017 - IT Asset Management (ITAM) Systems Lead Auditor? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free