Abstract
The measures against an information security is not the transient work completed by decision of Information Security Policy, and is organized by employing smoothly of the management cycle (PDCA) aiming at carrying out everyday management effectively after decision. In this paper, I consider the role of which Information Security Audit plays and its effect based on the advanced example in a local government in order to evaluate and check the management cycle is established.