This document discusses controls, auditing, testing, and security as they relate to information systems. It provides motivation for why each of these elements are necessary: controls are needed to ensure reliability of data and reports; audits are required to protect against fraud and ensure sound practices; testing is important to identify errors when integrated systems are implemented; and security measures must be in place to protect sensitive data from unauthorized access and network threats. The document outlines various methods used for each of these functions.