<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE ArticleSet PUBLIC "-//NLM//DTD PubMed 2.7//EN" "https://dtd.nlm.nih.gov/ncbi/pubmed/in/PubMed.dtd">
<ArticleSet>
<Article>
<Journal>
				<PublisherName>انجمن حسابرسی فناوری اطلاعات ایران</PublisherName>
				<JournalTitle>حسابرسی سیستم‌ها و فناوری اطلاعات</JournalTitle>
				<Issn>3115-8773</Issn>
				<Volume>1</Volume>
				<Issue>2</Issue>
				<PubDate PubStatus="epublish">
					<Year>2025</Year>
					<Month>09</Month>
					<Day>23</Day>
				</PubDate>
			</Journal>
<ArticleTitle>IT Auditing and Governance: Key Drivers Analysis and Comparative Assessment of COBIT and ITIL Frameworks</ArticleTitle>
<VernacularTitle>حسابرسی و راهبری فناوری اطلاعات: تحلیل محرک‌های کلیدی و ارزیابی تطبیقی چارچوب‌های COBIT و ITIL</VernacularTitle>
			<FirstPage>127</FirstPage>
			<LastPage>159</LastPage>
			<ELocationID EIdType="pii">241790</ELocationID>
			
<ELocationID EIdType="doi">10.22034/jista.2026.576753.1083</ELocationID>
			
			<Language>FA</Language>
<AuthorList>
<Author>
					<FirstName>مرتضی</FirstName>
					<LastName>اسدی</LastName>
<Affiliation>کارشناس ارشد، دانشکده مدیریت، گروه حسابداری، دانشگاه تهران، تهران، ایران.</Affiliation>
<Identifier Source="ORCID">0009-0009-9845-9971</Identifier>

</Author>
<Author>
					<FirstName>مینا</FirstName>
					<LastName>فرنود احمدی</LastName>
<Affiliation>دانشجوی دکتری حسابداری، دانشگاه آزار اسلامی تبریز، تبریز، ایران</Affiliation>
<Identifier Source="ORCID">0009-0008-9501-1648</Identifier>

</Author>
</AuthorList>
				<PublicationType>Journal Article</PublicationType>
			<History>
				<PubDate PubStatus="received">
					<Year>2025</Year>
					<Month>12</Month>
					<Day>09</Day>
				</PubDate>
			</History>
		<Abstract>In today&#039;s technology-dependent economic environment, understanding the evolution of IT auditing is essential not only for operational efficiency, but also for securing IT systems and effectively managing risks. As IT auditing has now expanded beyond traditional assessments, it plays a pivotal role in improving audit practices, ensuring compliance with laws and standards, enhancing cybersecurity, reducing business risks, and facilitating informed decision-making in the digital transformation space. In the digital age, IT risk governance and management is critical for organizations across sectors, as IT risks can significantly impact operational sustainability, data security, and organizational reputation. This study provides a comprehensive analysis of the evolution of IT auditing and the key drivers of this evolution in the dynamic environment of digital transformations, through a literature review. It also explains the different definitions of IT governance and its key dimensions, explains the two common IT governance frameworks, COBIT and ITIL, and analyzes the advantages and disadvantages of each framework. Analyzing the strengths and weaknesses of these frameworks helps organizations adopt an approach aligned with the organization&#039;s strategic goals. With this understanding, organizations can increase their ability to manage IT systems, effectively achieve business goals, and secure their competitive advantage in dynamic markets.</Abstract>
			<OtherAbstract Language="FA">در محیط اقتصادی وابسته به فناوری، درک تکامل حسابرسی فناوری اطلاعات نه تنها برای کارایی عملیاتی، بلکه برای ایمن‌سازی سیستم‌های فناوری اطلاعات و مدیریت مؤثر ریسک‌ها ضروری است. امروزه حسابرسی فناوری اطلاعات نقش محوری در بهبود رویه‌های حسابرسی، تضمین انطباق با قوانین و استانداردها، ارتقای امنیت سایبری، کاهش ریسک‌های کسب‌و‌کار، تسهیل تصمیم‌گیری آگاهانه در فضای تحولات دیجیتال، ایفا می‌کند. در عصر دیجیتال، راهبری و مدیریت ریسک‌های فناوری اطلاعات برای سازمان‌ها، حیاتی است، زیراریسک‌های فناوری اطلاعات به‌طور قابل‌توجهی بر پایداری عملیاتی، امنیت داده‌ها و اعتبار سازمانی تأثیر گذارند. مطالعه حاضر با مروری بر ادبیات، تحلیلی جامع از تکامل حسابرسی فناوری اطلاعات و محرک‌های محوری این تکامل در محیط پویای تحولات دیجیتال ارائه کرده است. همچنین این مطالعه ضمن تبیین تعاریف مختلف راهبری فناوری اطلاعات و ابعاد کلیدی آن، دو چارچوب رایج راهبری سیستم فناوری اطلاعات ، COBIT و ITIL را تبیین، و مزایا و معایب هر یک از چارچوب‌ها را تحلیل کرده است. تحلیل نقاط قوت و ضعف این چارچوب‌ها به سازمان‌ها کمک می‌کند تا رویکردی همسو با اهداف استراتژیک سازمان اتخاذ کنند. با این درک، سازمان‌ها می‌توانند توانایی خود را در مدیریت سیستم‌های فناوری اطلاعات افزایش داده و مزیت رقابتی خود را در بازارهای پویا، تضمین کنند.</OtherAbstract>
		<ObjectList>
			<Object Type="keyword">
			<Param Name="value">حسابرسی فناوری اطلاعات</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">سیرتکامل حسابرسی</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">راهبری فناوری اطلاعات</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">مدیریت ریسک</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">کوبیت</Param>
			</Object>
		</ObjectList>
<ArchiveCopySource DocType="pdf">https://www.iitasa.org.ir/article_241790_89f2f19ace585f48a2176ead83b13a67.pdf</ArchiveCopySource>
</Article>
</ArticleSet>
