How to Perform a Cybersecurity Risk Assessment to Produce a More Relevant, Targeted 2026 Audit Plan

Cyber threats have long been a top risk. Every CAE knows what’s at stake: Data privacy/security, business resilience and continuity, brand reputation, customer and investor trust, financial losses, and regulatory compliance, not to mention ever-expanding third- and nth-party risks. So why are most CAEs still sufficing with broad cyber risk assessments that don’t provide any real assurance?

October 16, 2025

How to Perform a Cybersecurity Risk Assessment to Produce a More Relevant, Targeted 2026 Audit Plan

5
minutes

When you are ready, here are three more ways I can help you.

1. The Enabling Positive Change Weekly Newsletter:  I share practical guidance to uplevel the practice of Internal Audit and SOX Compliance.

2. The SOX Accelerator Program:  A 16-week, expert-led CPE learning program on how to build or manage a modern & contemporary SOX program.

3. The Internal Audit Collective Community: An online, managed, community to gain perspectives, share templates, expand your network, and to keep a pulse on what’s happening in Internal Audit and SOX compliance.

Subscribe to the Newsletter

Join 7K+ readers of Enabling Positive Change Newsletter for tips, strategies, and resources to improve your Internal Audit & SOX Compliance skill set.