The document outlines the information systems (IS) auditing process as defined in the CISA Review Manual, 27th edition. It details the necessary standards, principles, methods, and practices that an IS auditor must understand to effectively plan and execute audits. Key learning objectives include risk-based audit planning, execution according to standards, and communication of audit results to stakeholders.