BIAN PLATFORM
CatalogRunFAQRepo ↗

Risk and Compliance

Internal Audit

sd-internal-audit · bian-risk-compliance

A BIAN service domain in Risk and Compliance. It applies the Assess functional pattern to the Audit Engagement, with the Audit Engagement Assessment as its control record — one independent Spring Boot microservice on the platform's Cilium eBPF mesh.

View repository ↗The 162-domain platform ↗

Business DomainCompliance
Functional PatternAssess
Asset TypeAudit Engagement
Control RecordAudit Engagement Assessment

USEWhat it is used for

Representative use cases for the Internal Audit service domain within a BIAN-aligned core-banking landscape.

APIBIAN semantic API

The control record (Audit Engagement Assessment) is exposed through uniform BIAN action terms. Java 21 · Spring Boot 3, OpenAPI at /swagger-ui.html, health at /actuator/health.

MethodPathBIAN action
GET/v1/service-domainService metadata
POST/v1/audit-engagement-assessment/initiateInitiate
GET/v1/audit-engagement-assessment/{crId}/retrieveRetrieve
PUT/v1/audit-engagement-assessment/{crId}/updateUpdate
PUT/v1/audit-engagement-assessment/{crId}/controlControl (suspend / resume / terminate)

INTBackend integrations

The systems and standards a real deployment of Internal Audit would transact with.

RUNRun it yourself

Each service domain is its own standalone Spring Boot repository — clone and run in seconds, or deploy onto Kubernetes with the bundled Helm chart behind the Cilium mesh.

# run this service domain standalone
git clone https://github.com/Sreenivas-Sadhu-Prabhakara/sd-internal-audit
mvn -f sd-internal-audit spring-boot:run
curl localhost:8080/v1/service-domain

# or deploy onto Kubernetes (Cilium eBPF mesh)
helm upgrade --install sd-internal-audit ./helm -n bian-risk-compliance

FAQQuestions

What is the BIAN “Assess” functional pattern?
An Assess service domain evaluates a case, application or exposure against criteria and returns a decision or rating. Internal Audit applies it to the Audit Engagement.
What is a BIAN service domain?
BIAN (the Banking Industry Architecture Network) decomposes a bank into independent service domains, each owning exactly one business capability. Internal Audit is the service domain for Compliance; it manages the Audit Engagement Assessment and exposes it through standard BIAN action terms.
What business area does Internal Audit belong to?
Internal Audit sits in the Risk and Compliance business area — the risk, financial-crime and regulatory-compliance domains that keep the bank safe and compliant. It runs in the bian-risk-compliance namespace as one independent Spring Boot microservice.
Is Internal Audit production-ready?
It is an educational reference implementation: a real BIAN REST API over an in-memory store, ready to be filled with domain logic. It is not a live bank and is not affiliated with BIAN.

SEEIn the landscape

Internal Audit is one of 162 BIAN service domains on the platform. Explore the rest:

▚ Platform overview The Master Catalog (162 domains) This repository ↗