A security audit is the high-level description of the many ways organisations can test and assess their overall security posture, including cybersecurity. You might employ more than one security audit type to achieve your desired results and meet your business objectives. These audits should be thorough and conducted regularly to secure your data and digital assets. If you're in a highly regulated industry, engaging in this activity will also help your business ensure compliance (like HIPPA, GDPR, PCI-DSS, SOX, etc.)
The audit should evaluate each of the above against past and potential future risks, which means that your security team should be up to date on the latest security trends and the measures taken by other organisations to respond to them. At the end of the security audit, an in-depth report will put together to cover your current security arrangements' strengths and weaknesses. Whenever a vulnerability identified, the cost of securing it should get evaluated against the price of a breach.