The IS audit team is independent and objective. The team provides the organisation with support to reach its goals by evaluating through a methodical and targeted approach, the effectiveness of the security process and by providing support to improve it. A basic requirement for any audit, and therefore for the IS audit as well, is the unrestricted right to obtain and view information. This means that no information may be withheld from the IS audit team. This also includes the right to view sensitive or classified information related to the information security management and the IT operations provided that the IS.