Technical tools support automated audit evidence collection
Automating audit evidence collection from system data is a parallel discipline to forensic evidence collection, both about making proof reliable rather than manually gathered, though for different purposes.
Automated audit evidence collection draws on the logs A.8.15 requires exist, supporting audit efficiency rather than the logging practice itself.
This Sekit technical control automates the collection of audit evidence from system data rather than manual screenshots, reducing the risk that the audit activity itself disrupts the systems being checked, as this ISO control requires.