IT Audit Factory · Evidence-first audit operationsFree · Professional · MSP
Documentation

Auditor export and evidence

Package evidence for independent review and follow the provenance and export workflow.

MSP4.1.0
All documentation / MSP / 4.1.0
This reference is bundled with the 4.1.0 engine and may retain earlier UI terminology. Use the current 4.1.0 installation/security guides for the new wizard and activation steps. Its procedures apply to MSP; use the separate Free or Professional guide for those editions.

Use the approved 4.1.0 installer for your edition and confirm the version shown in the installed application. Published package availability is shown in Downloads & beta access.

IT Audit Factory MSP — Auditor Export and Evidence Guide

Preparing an audit package

  1. Select the client.
  2. Select the exact certification/program and scope.
  3. Review the program requirement workspace and resolve applicability/evidence states.
  4. Review Reports & Runs and remove/mark invalid output with reasons.
  5. Confirm command evidence and screenshot proof are present.
  6. Click Export Current Certification for Auditor.
  7. Store the generated ZIP using the client/framework/program/date-time file name.

Package contents

The certification export includes the program metadata, requirement state, program-linked assessment run manifest, reports, evidence versions linked to those runs, original run packages (which contain command evidence and screenshots), and the audit trail.

What the auditor should verify

  • Client/program/scope match the audit engagement.
  • Command evidence is sanitized but specific enough to show the lookup.
  • Screenshot proof shows the application and Windows taskbar clock.
  • SHA-256 values match exported evidence.
  • Manual controls are not falsely presented as automated passes.