Outsourcing Security Audit Checklist Form
Use this form to define the scope, review areas, access needs, and key findings for an outsourced security audit checklist.
Audit Scope and Environment
Application/System Name
*
Environment
*
Production
Staging
Development
Other
Scope Description
*
Audit Objectives and Security Domains
Primary Audit Objective
*
Vulnerability Review
Configuration Review
Access Control Review
Compliance Readiness Review
Incident Response Readiness
Vendor Risk Review
Security Domains to Assess
*
Rows
In Scope
Not In Scope
Needs Review
Authentication
1
2
3
Authorization
4
5
6
Network Security
7
8
9
Data Protection
10
11
12
Logging and Monitoring
13
14
15
Patch Management
16
17
18
Backup and Recovery
19
20
21
Secure Configuration
22
23
24
Access, Evidence, and Review Details
Auditor access method
*
Read-only access
Exported reports only
Both
Evidence and documentation to provide
Upload a File
Drag and drop files here
Choose a file
Cancel
of
Preferred audit start date or review deadline
 -
Month
 -
Day
Year
Date
Findings Summary and Reviewer Contact
Overall risk level
*
Low
Medium
High
Critical
Top priority findings or key concerns
Reviewer contact name
*
First Name
Last Name
Submit
Should be Empty: