Audit scope
The scope specifies the context for the audit. The first definition of the scope for audits and audit steps takes place during modeling in ARIS Architect. The following ARIS Risk and Compliance objects can be defined as the scope. The terms in brackets are the relevant modeling objects.
Application system types (application system types)
Regulations (technical term)
Organization (organizational unit)
Process (function)
Risk category (risk category)
During the preparatory phase the audit manager and the audit owner can detail the scope. A change in the scope does not generate a new version of the object.