Main Article Content

Abstract

This paper presents a web-based application for a self assessment audit tool that is guided by ISO17799
guidelines.The ISO17799 is a code of practice for information security management as part of the information
security standard, and provides a set of controls and procedure to achieve security information. This self
assessment audit system shall indicate any security threats based on a pre-defined checklist, which is derived
from the implemented audit program of information technology as guided by the ISO17799. Current state of this
development is limited to Access Control, and System Development & Maintenance categories.
Keywords: Web-based application, ISO 17799, IT Audit Program.

Article Details