This article discusses the importance of IT audit and control planning, identification of organizational and managerial risks, audit methodology and design, classification of IT controls, and emerging industry trends in IT auditing and control. It also covers the professional, legal, and ethical responsibilities of an IT auditor, using the Satyam Computer Services Ltd. scandal as a case study.