Audit Data Analytics Alert
|
|
|
- Sabrina Underwood
- 9 years ago
- Views:
Transcription
1 Audit Data Analytics Alert AUDIT DATA ANALYTICS JUNE 2016 Keeping Up with the Pace of Change This Audit Data Analytics Alert (Alert) is being issued to raise awareness about data analytics in the context of the audit of financial statements. This Alert serves to explain the term audit data analytics and highlight the drivers/opportunities, and hurdles to overcome in regard to integrating more extensive use of data analytics into the audit of the financial statements. Why Should I Read This Alert? Auditors need to respond to ever-increasing and diverse uses of information technology by audited entities. More use by auditors of technology-enabled data analytics is an important aspect of that response. Auditors and others are encouraged to read this Alert and to consider (further) integrating or exploring the use of technology-enabled audit data analytics into the audit of financial statements. 1. Introduction and Purpose 1.1 The world is experiencing what has been called a third great wave of invention and economic disruption set off by advances in computing and information and communications technology. Large and diverse amounts of data are being used by audited entities of all types and sizes. As a result, aspects of the financial statement audit need to change if this service is to remain relevant and valued. Using 1
2 more technology-enabled analytics is seen as one important initial step. CPA Canada has formed an Audit Data Analytics Committee (the Committee) comprised of audit practitioners, internal auditors, members in business, and academia, to: obtain up-to-date information on the nature and extent of use of technologyenabled data analytics by auditors monitor developments in auditors use of audit data analytics (e.g., innovative approaches being used by some auditors to keep pace with a changing technological environment, including accessing and making effective use of greater volumes and diverse types of data) provide useful input to auditors and other interested parties by developing non-authoritative guidance on these matters. 1.2 The purpose of this Alert is to highlight some initial thoughts of the Committee on: what audit data analytics entails drivers/opportunities and hurdles to consider in making more use of technology-enabled audit data analytics what can be expected from the Committee in the near term. The aim is to engage auditors and others in this important initiative. 2. What Audit Data Analytics Entails Definition 2.1 The American Institute of Certified Public Accountants (AICPA) has stated: Audit data analytics is the science and art of discovering and analyzing patterns, identifying anomalies, and extracting other useful information in data underlying or related to the subject matter of an audit through analysis, modeling, and visualization for the purpose of planning or performing the audit Audit Data Analytics (ADAs) include analytical procedures, as defined in the Canadian Auditing Standards (CASs) 2 and many other types of analytics. Examples of ADAs are: ratio analysis trend analysis regression analysis general ledger account reconciliation and analysis journal entry analysis 1 American Institute of Certified Public Accountants, Inc., Audit Analytics and Continuous Audit, Looking Toward the Future. (New York: AICPA, 2015), pp auditanalytics_lookingtowardfuture.pdf This definition originally appeared in the AICPA White Paper Reimagining Auditing in a Wired World, August 2014, authored by Paul Byrnes, Tom Criste, Trevor Stewart and Miklos Vasarhelyi. Services/DownloadableDocuments/Whitepaper_Blue_Sky_Scenario-Pinkbook.pdf 2 CAS 520, Analytical Procedures, para Audit Data Analytics Alert June 2016
3 segregation of duties analysis three-way match procedure 3 cluster analysis 4 data mining 5 Planning, performing and drawing conclusions from ADAs 2.3 ADAs may be used in any phase of the audit: planning, risk assessment, responding to risk assessments (as tests of controls or substantive procedures) and in drawing an overall conclusion from the audit. 2.4 Diagram 1 sets out key steps in performing most ADAs. As with any audit procedure, an ADA has to be appropriately planned and performed. This involves key decisions regarding the objectives of the ADA, including the assertions to be addressed and how the ADA is expected to contribute to dealing with audit risk. DIAGRAM 1 BASIC STEPS IN MOST ADAs Set objective(s) of the ADA Determine desired attributes of data to be used Determine the type of ADA and related tools/techniques to be used Determine appropriate form and content of visualization to be used Access the data Determine that accessed data is appropriate for use Apply ADA technique/tool Evaluate and act on the results of the ADA Document the planning, performance and results of the ADA 3 In a 3-way match procedure, key data in three different but related documents are compared and mismatches are analyzed. For example, the auditor may be auditing the existence and accuracy of revenue. The relevant documents would be all the invoices, shipping documents and customer order documents for the period under audit. Using automation, the auditor compares, for every document, the invoiced customer, quantity, and unit price to the quantity shipped per the shipping documents and the quantity and unit price reflected in the sales order received from the customer. 4 Cluster analysis is a statistical classification technique in which cases, data, or objects (events, people, things, etc.) are sub-divided into groups (clusters) such that the items in a cluster are very similar (but not identical) to one another and very different from the items in other clusters. It is a discovery tool that reveals associations, patterns, relationships, and structures in masses of data. (Source: Business Dictionary.com. 5 Data mining is the process of collecting, searching through, and analyzing a large amount of data in a database to discover patterns or relationships. (Source: Dictionary.com June 2016 Audit Data Analytics Alert 3
4 2.5 Matters to note regarding diagram 1 include the following: Not all steps necessarily apply to all ADAs. For example, a feature that often distinguishes ADAs from other types of audit procedure is the use of visualizations (e.g., charts, scatter diagrams, trend lines, bubble charts and tables). Their use may help the auditor to quickly identify matters that may be significant to the audit. However, not all ADAs necessarily include the use of visualization. Not all steps will always be performed separately. For example, setting the objectives and determining the desired attributes of data might be a combined step in the process. Decisions made in the initial design and performance of an ADA can provide a sound basis for use in subsequent years. The use of an ADA may become more efficient and effective once the initial learning curve has been addressed. As with any audit procedure, the planning and performance of an ADA is iterative (i.e., appropriate changes are made to the ADA to respond to new information that becomes available to the auditor). Breadth, depth and other characteristics of data used in ADAs 2.6 As noted in Diagram 1, a key step in planning and performing an ADA is to determine the desired attributes of data to be used. Diagram 2 shows an example of how data of potential use in an ADA may be categorized. It must be decided at what level data to be used in the ADA should be aggregated (or disaggregated). For example, use of disaggregated data may sometimes provide a clearer and deeper understanding of matters affecting the risk of material misstatement. 2.7 Data reliability, relevance, and availability are core attributes of data used in most ADAs. Because each of these attributes may range in level from high to low, the auditor s judgments may be affected as to what data can be used and, if any, how. For example, data may have higher reliability if they come from a system for which internal controls are operating effectively. Data obtained by auditors from sources other than the audited entity (such as from sources on the Internet) may, in some respects, be more reliable since they will not have been subject to possible bias by the entity s management. On the other hand, the auditor may not have any means of assessing whether externally sourced data comes from well-controlled systems. 4 Audit Data Analytics Alert June 2016
5 DIAGRAM 2 EXAMPLES OF DATA ATTRIBUTES THAT MAY BE CONSIDERED IN PLANNING AND PERFORMING AN ADA Categories of Data financial, non-financial structured, unstructured accounting process and control-related product/service categories demographic economic geographic business sector regulatory historic forward-looking time-sensitive meta data (e.g., file labels, record formats, access and other authorization codes) Big Data Levels of Data Aggregation Financial data meta data database fields database tables (e.g., GL detail, chart of accounts, trial balance, source listing) classes of transactions financial statement item Other data including Big Data raw situational data (e.g., customer activity from customer relationship management system) descriptive information (e.g., quality metrics) summarized data (e.g., research reports) Relevance Reliability Availability Sources sources controlled by the audited entity (in-house records or stored externally (e.g., in the Cloud)) sources external to, and not controlled by, the audited entity Reliability: Relevance: Availability: Data are accurate, complete and reflect the substance of underlying subject matter to an extent consistent with the objective of the ADA. Data have a significant bearing on achieving an objective of the ADA being performed. Data needed to perform the ADA can be obtained or accessed in a cost-effective timely manner. June 2016 Audit Data Analytics Alert 5
6 2.8 The need to consider, and in some cases evaluate, data reliability will vary with the purpose of the ADA. Data reliability may not be applicable for ADAs that are exploratory in nature. For example, text mining may be used to scan contracts for key clauses. Also, some ADAs may be used as tests of controls, one objective of which may be to assess data reliability. In that case, there would not necessarily be any assessment of data reliability in advance of performing the ADA. 2.9 Diagram 3 provides a more granular way to look at data attributes. For example, whether the data are structured or unstructured will be a matter to consider in designing and performing the ADA. DIAGRAM 3 MORE GRANULAR WAY TO VIEW ATTRIBUTES OF DATA Nature Timing Extent Format numerical (e.g., quantity, currency) text other characters (e.g., symbols) past, current, expected future point in time period of time rate of change (e.g., time lags, continuity) volume variety of underlying subject matters and sources (e.g., demographic, weather, geolocational) unstructured (e.g., text) structured (e.g., data in a fixed field within a record orfile) Different categories and types of ADAs 2.10 Diagram 4 shows often-cited categories of analytics. 6 This categorization may be useful when determining what type of ADA might best suit the objective of the procedure. Traditional analytical procedures such as trend analysis might often fit into the descriptive analytic category. A more complex statistics-based ADA, such as regression analysis, might fit into the diagnostic analytics category. However, an ADA often may fit into more than one category, perhaps even all three categories. 6 See Gartner IT Glossary: The Gartner categories of analytics also include prescriptive analytics, which are not commonly used by auditors. Prescriptive analytics is defined as a form of advanced analytics, which examines data or content to answer the question What should be done? or What can we do to make happen?, and is characterized by techniques such as graph analysis, simulation, complex event processing, neural networks, recommendation engines, heuristics, and machine learning. 6 Audit Data Analytics Alert June 2016
7 DIAGRAM 4 EXAMPLES OF CATEGORIES OF ANALYTICS PRIMARY EMPHASIS Predictive Analytics What might happen? Complexity Diagnostic Analytics Descriptive Analytics Why did it happen? What happened? 3. Drivers/Opportunities and Related Hurdles to Overcome 3.1 Diagram 5 sets out examples of key drivers and opportunities that indicate a need for external auditors of financial statements to embrace the use of robust technology-enabled ADAs. This diagram also sets out some significant hurdles that would need to be overcome. 3.2 The following are examples of matters that are quickly changing: Increased use of Big Data by audited entities: One definition of Big Data is high-volume, high-velocity and/or high-variety information assets that demand cost-effective, innovative forms of information processing that enable enhanced insight, decision making, and process automation. 7 Big Data are being used to improve the efficiency and effectiveness of all sizes of organizations in meeting stakeholder needs. Auditing standards require auditors to obtain an understanding of the entity and its environment, including those related business risks that may result in risks of material misstatement. 8 Use of Big Data by the entity may significantly affect how it addresses business and related risks. For example, using Big Data may enable even small retail entities to use more effective models to make their buying processes more sophisticated. This may reduce the chances of buying goods that subsequently will be difficult to sell and perhaps have to be written off. Changes in business models resulting from the use of Big Data may, for example, change assumptions on which accounting estimates should be based, and therefore have consequences for the audit of those estimates. 7 Gartner IT Glossary: 8 Paragraph 11 (d) of CAS 315, Identifying and Assessing the Risks of Material Misstatement Through Understanding the Entity and Its Environment. June 2016 Audit Data Analytics Alert 7
8 DIAGRAM 5 EXAMPLES OF DRIVERS/OPPORTUNITIES AND HURDLES TO OVERCOME DRIVERS/OPPORTUNITIES HURDLES Rapid Pervasive Evolution of Information Technology availability of more useful technology-enabled tools and techniques increased utility/power of visualizations increased use of Big Data by audited entities Transition Issues overcoming resistance to change need for IT competencies accessing client data and maintaining their security and confidentially Opportunities to Improve Audit Quality quality of the exercise of auditor professional judgment and skepticism quality of analytics currently performed desirability of overcoming limitations of sampling potential to improve communications with those charged with governance Compliance with Auditing Standards establishing required reliability and relevance of data establishing required precision and level of assurance desired from an audit data analytic dealing with outliers (anomalies, exceptions) use of an entity s analytics as audit evidence documenting planning, performance and conclusions from audit data analytics Increasing availability of more useful technology-enabled tools and techniques: Audit software providers and public accounting firms continue to enhance tools and techniques available for performing ADAs. Frequently used business software such as Excel contains effective data analytic tools that continue to evolve. Even traditional hurdles such as data accessibility are being lowered. For example, to assist with data conversions, the AICPA has developed voluntary, uniform audit data standards that identify the key information needed for audits and provide a common framework covering: data file definitions and technical specifications data field definitions and technical specifications supplemental questions and data validation routines to help auditors better understand the data and assess its completeness and integrity. These audit data standards can be used in conjunction with XBRL. 8 Audit Data Analytics Alert June 2016
9 Utility/power of visualizations: ADAs produce results in many visualization formats (e.g., graphic, dashboard, patterns, clusters, tables). Such visualization capability may better enable auditors to identify and respond to matters significant to the audit. Communications with those charged with governance (such as the audit committee or, for a small entity, the owner-manager): Auditors are required to communicate with those charged with governance regarding specific matters as well as other matters, if any arising from the audit that, in the auditor s professional judgment, are significant to the oversight of the financial reporting process. 9 The auditor s use of ADAs may provide useful insights into such matters that might not otherwise come to light using other procedures. Also, matters of concern may be relatively easily explained through graphs, charts or other visual formats used with ADAs. Opportunities 3.3 The need for continued improvement in audit quality is likely to help drive the use of more rigourous technology-enabled analytics. Quality of professional judgment/skepticism: Auditing standards require auditors to exercise professional judgment and professional skepticism. 10 A study by the Global Public Policy Committee Enhancing Auditor Professional Skepticism notes common judgment tendencies in auditors that can lead to bias and weaken skepticism. These are: overconfidence (overestimation of the auditor s own abilities) confirmation (placing more weight on evidence that confirms management s position than on evidence that refutes it) anchoring (always using as a starting point, and being overly influenced by, initial numbers recorded by the entity) availability (the tendency to consider information that is more readily available from memory as being more likely relevant and more important for a judgment). 11 Technology-enabled ADAs often involve the use of broader and deeper ranges of disaggregated information. This may be important in overcoming tendencies toward bias and thereby help improve audit quality. Quality of ADAs currently being performed: Audit regulators have sometimes expressed concerns about failure by auditors performing substantive analytical procedures to properly establish matters such as precision of expectations and 9 CAS 260, Communications with Those Charged with Governance, para. 16(d). 10 CAS 200, Overall Objectives of the Independent Auditor and the Conduct of an Audit in Accordance with Canadian Auditing Standards, paras. 15 and Steven M. Glover and Douglas F. Prawitt, Enhancing Auditor Professional Skepticism, Global Public Policy Committee, Nov. 2013, p June 2016 Audit Data Analytics Alert 9
10 Hurdles reliability of data. Auditors also may not properly investigate variances arising from the analytical procedures performed. Use of technology-enabled analytics may provide opportunities to apply and demonstrate more rigour in these areas. Possible reduced use of statistical sampling: Auditors often use statistical sampling for tests of controls and substantive procedures. ADAs often enable the efficient and effective examination of 100% of the items in a population of data underlying the entity s financial statements, at various levels of aggregation. This may enable auditors to reduce the use of sampling and thereby sampling risk (i.e., the risk associated with the auditor s conclusion based on a sample) may be different from the conclusion if the entire population is subjected to the same procedure) There are also hurdles to overcome in implementing change. These hurdles are in some respects linked to the drivers and opportunities noted above. Examples of these hurdles are set out below. Transition issues 3.5 Making more use of technology-enabled analytics may entail a significant transition for many auditors. This transition may not always be easy, for reasons that include those set out below. Resistance to change by firms and individual auditors: Auditing firms, or certain individuals in those firms, may resist adopting more robust technology-enabled ADAs. Such change will involve cost/benefit analyses. Often, the costs (e.g., software acquisition costs, training) are relatively easy to estimate. On the other hand, potential benefits (e.g., improved audit quality, work satisfaction among staff, potential increased efficiencies over the near-to-longer term) are less tangible and harder to estimate and may therefore tend to be given less weight. On balance, it is anticipated that many auditors will embrace the use of more technology-enabled analytics in the near term to keep pace with increased use of information technology by audited entities. Those auditors who do not keep pace may lose out to competitors. Difficulty in increasing the breadth and depth of auditor competencies: Using technology-enabled ADAs will often involve obtaining information meaningful to the audit from large data sets (both financial and non-financial) located in various sources (both inside and outside the audited entity). Auditors will often require more and different IT skills to effectively perform the ADAs. In addition, improved analytical skill sets may be needed for auditors to decide appropriately, for example, what data to target, what types of information within the data are important, what analytical tools should be used and when, and how results can best be presented and communicated. Auditing firms may be willing and 12 CAS 530, Audit Sampling, para. 5(c). 10 Audit Data Analytics Alert June 2016
11 able to devote resources to training existing and new staff and partners to help them obtain these skills sets. This will vary among firms (i.e., firm size and client composition being some factors affecting this). However, for auditors to keep pace with changes in the business environment, there will have to be increased emphasis on IT and analysis as part of the core competency training of CPAs, including university programs. Difficulty in obtaining readily usable data: Some data that auditors want to use for an ADA, including Big Data, may be outdated, missing, or inaccurate. Also, some entities may have a patchwork of systems, including a number of legacy systems, or use a myriad of small applications. These matters may make it difficult, for example, for auditors to access data efficiently that are in a usable format. As audited entities work to improve the quality of data for management purposes, they also have a positive effect regarding the use of ADAs. Resistance by audited entities to having their data accessed by auditors systems: Audited entities need to maintain the integrity of their data. Some may have concerns that analyses performed by auditors may corrupt or change the data. In addition, some entities may worry that data security breaches (i.e., unauthorized access by third parties to their data) may result, for example, when auditors have exported company data to the auditor s systems. Means are available to help address these issues. Compliance with auditing standards 3.6 Auditors performing ADAs need to comply with relevant CASs. Analytical procedures, as defined in the CASs, are one type of ADA. 13 Under this definition, an analytical procedure entails the development of an expectation of plausible relationships or values. Developing such expectations is not part of performing other types of ADAs. Also, as demonstrated in Diagram 6, the CASs include specific requirements and other guidance regarding the use of analytical procedures. 14 These specific requirements are over and above requirements that apply to other audit procedures, including other types of ADAs. 13 AS 520, Analytical Procedures. Para Use of analytical procedures in assessing risks is required by CAS 315, Identifying and Assessing Risks of Material Misstatement Through Understanding the Entity and its Environment, para. 6(b). Auditors who decide to use analytical procedures as substantive procedures need to meet various requirements in CAS 520. Also, CAS 520, para. 6 requires the use of analytical procedures as part of forming an overall conclusion from the audit. June 2016 Audit Data Analytics Alert 11
12 DIAGRAM 6 USING ANALYTICAL PROCEDURES UNDER THE CANADIAN AUDITING STANDARDS Planning/Assessing Risk of Material Misstatement mandatory use for risk assessmenet but no specific requirements on how to use. used to help identify the existence of unusual transactions or events, and amounts, ratios, and trends frequent use of data aggregated at a high level imprecise expectations possible Responding to Assessed Risks of Material Misstatement use not mandatory analytical procedures being used as tests of controls not mentioned in standards if used as substantive procedures, five requirements to meet for design and peformance, including reliabilty of data and precision of expectation Forming an Overall Conclusion mandatory use may be similar to risk assessment analytical procedures (e.g., often use data aggregated at a high level and expectations may not be precise) requirement to investigate inconsistencies with other relevant information or significant differences from expected values. 3.7 The CASs require the use of professional judgment in determining the nature, timing and extent of all audit procedures including ADAs, taking into account the particular circumstances of the engagement. Use of ADAs is not meant to be simply an add-on to other types of procedures. An ADA will often be an effective and efficient approach to meeting an audit objective; however, just because a tool or technique is available, this does not mean it has to be used. 3.8 Examples of matters that may need to be considered as auditing standards evolve to recognize increasing use of technology-enabled ADAs include the following: 15 Establishing the reliability and relevance of data: There are many facets to how the concepts of reliability and relevance of data apply to ADAs that may need to be more specifically dealt with in standards. Examples follow: For some ADAs, the concept of reliability may not apply. For example, auditors may perform text mining of unstructured data (e.g., s, postings to chat sites) in assessing the risk of fraud, where there is no expectation of data reliability (e.g., accuracy, completeness). 15 CAS 230, Audit Documentation. 12 Audit Data Analytics Alert June 2016
13 More robust technology-enabled ADAs often may involve the use of wide varieties of data (including Big Data obtained from external sources) the reliability of which may in some cases be questionable. For example, it may not always be practicable to determine the reliability/objectivity of the source of the data, and the data may not be subject to controls that could be tested by the auditor. Standards likely would need to deal more specifically with this issue. Establishing the precision of the auditor s expectation and desired level of assurance: There are types of ADAs that may not specifically involve setting a sufficiently precise expectation or level of assurance to be achieved. For example, some ADAs may involve examination of attributes of 100% of a data population. However, that does not mean, for example, that 100% assurance has been achieved. The implications of the auditor having considered 100% of items in a population may need to be addressed more specifically in standards (including dealing with outliers as noted in the bullet below). Dealing with outliers: In using sampling, the auditor is required to investigate the nature and cause of any deviations or misstatements identified and evaluate their effect on the purpose of the audit procedure and on other areas of the audit. 16 CAS 530 also defines an anomaly as a misstatement or deviation that is demonstrably not representative of misstatements or deviations in a population. 17 ADAs often involve examining aspects of 100% of the data in a population. Depending on the objective and nature of the ADA being performed, a very significant number of outliers may be identified. Outliers are sometimes referred to as anomalies, exceptions, or deviations. These may reflect data attributes that do not fit with what has been defined as normal or expected for the given data population. Unlike the approach taken in CAS 530, these outliers are not necessarily treated as misstatements. Also, if the number of outliers is large, it may not be practicable to investigate them all. In particular, it is important that auditors not be required to investigate matters where the risk of material misstatement is likely to be low. It will be important to develop practicable and rigorous means of properly narrowing down the nature and number of outliers to be investigated. It might be beneficial, for example, if standards were to provide guidance around this narrowing process. Using audit data analytics performed by internal auditors: Internal auditors may perform their own ADAs. External auditors may want to use this work. Several issues may have to be resolved regarding the nature and extent of work the external auditor would be expected to perform to comply with the requirements in CAS 610, Using the Work of Internal Auditors. 16 CAS 530, para CAS 530, para. 5(e). June 2016 Audit Data Analytics Alert 13
14 Using management s analytics as audit evidence: In cases where management of the audited entity makes use of analytics for its purposes, issues may arise as to whether and how these analytics may be used as forms of audit evidence. Documenting use of various types of ADAs: Auditors have to make many decisions regarding which ADAs to use and how best to use them. These decisions are content- and context-specific, requiring auditors to use professional judgment. Also, the approach taken and the data used may be refined throughout the process of using an ADA after trial runs. Further, various aspects of techniques and tools used in an ADA (e.g., interactive dashboards) are not easy to document. Therefore, it is not clear what the nature and extent of the documentation of these and other aspects of the performance and review of ADAs should be. 4. What May Be Expected from the Committee in the Near Term 4.1 The mandate of the Committee includes assisting in: conducting research regarding the use of ADAs creating thought leadership (white papers), non-authoritative audit guidance (alerts, tools, FAQs, client briefings, and guides), and support determined on an as needed basis (e.g., webinars) advocating for practitioners use of ADAs determining the optimal skillset for future CPA auditors in order to sustain market demand for CPA auditors. 4.2 For example, representatives of the Committee are now proactively collaborating with the AICPA and their Audit Analytics Guide Task Force on the development of an updated version of the AICPA Audit Guide Analytical Procedures. This comprehensive Guide, with appropriate amendments, will be issued as non-authoritative audit guidance in Canada (Note: The title of this Guide has yet to be determined.) and will provide foundational guidance to auditors of all sizes on the use of data analytics in the audit of financial statements. 18 The Committee will also respond to requests from other bodies, such as the International Auditing Standards Board, which are undertaking initiatives regarding ADAs. 18 In the U.S., audit guides are interpretive publications that auditors are required to consider in planning and performing audits. Canada does not have equivalent authoritative guidance (i.e., the purpose, scope and content of Canadian Assurance and Related Services Guidelines are different from AICPA Audit Guides). 14 Audit Data Analytics Alert June 2016
15 4.3 This Alert is the Committee s first communication to auditors and other interested parties. The plan is to follow up this communication in the near term with: a survey of practitioners from all sizes of firms who perform financial statement audits to obtain a better understanding of the current use of ADAs and matters relevant to moving forward to more use of technology-enabled ADA further communications exploring in more detail some of the key matters noted in this Alert publishing the Canadian non-authoritative audit Guide, referenced in paragraph Materials will be posted from time to time on a landing page on the CPA Canada website devoted to ADAs. 4.5 The Committee looks forward to having extensive and timely interactions with auditors, standard setters, regulators, and other interested parties related to this initiative, recognizing that adoption of technology-enabled ADAs is likely to be gradual: change does not often happen overnight. Additional Resources CPA Audit Data Analytics Committee Landing Page cpacanada.ca/auditdataanalytics CPA Canada Webinar Business Analytics Part 1: An Introduction to Analytical Thinking CPA Canada Webinar Business Analytics Part 2: Implementing Analytics in Your Organization CPA Canada Webinar New Insights, New Models: The Power of Big Data and Analytics AICPA Audit Data Standards Voluntary, recommended data standards for the extraction of information. These data extract standards do not represent authoritative auditing or accounting standards. AICPA Publication Audit Analytics and Continuous Audit: Looking Toward the Future June 2016 Audit Data Analytics Alert 15
16 Comments on this Audit & Assurance Alert, or suggestions for future Audit & Assurance Alerts should be sent to: Juli-ann Gorgi, CPA, CA, MAcc Principal Audit & Assurance Chartered Professional Accountants of Canada 277 Wellington Street West Toronto, Ontario M5V 3H2 CPA Canada Audit Data Analytics Committee Members (as of the date of publication): Nicole Deschamps, CPA, CA Elaine Lee, CMA, CPA Kieng Iv, CPA, CA, CMA, MAcc Sarah deguzman, CPA, CA Theo Stratopulos, PhD Gerald Trites, CPA, FCA Neil Currie, CPA, CA Karel Krulich, CPA (Ohio) Gregory P. Shields, CPA, CA May Leung, CPA, CA, MAcc Eric Au, CPA, CA, CBV, CIA, MAcc, BMath Travis Leppky, FCPA, FCA, CISA Birender Gill, CPA, CA Juli-ann Gorgi, CPA, CA, MAcc CPA Canada expresses its gratitude to Gregory P. Shields, CPA, CA, who authored this publication. DISCLAIMER CPA Canada Audit & Assurance Alerts provide an orientation to matters in a Canadian Auditing Standard or Other Canadian Standard, focused on the needs of audit practitioners. Audit & Assurance Alerts are prepared by the Research, Guidance and Support group at the Chartered Professional Accountants of Canada (CPA Canada). They have not been approved by any Board or Committee of CPA Canada and CPA Canada does not accept any responsibility or liability that might occur directly or indirectly as a consequence of the use, application or reliance on this material. Audit & Assurance Alerts have not been issued under the authority of the Auditing and Assurance Standards Board. 16 Audit Data Analytics Alert June 2016
Implementation Tool for Auditors
Implementation Tool for Auditors CANADIAN AUDITING STANDARDS (CAS) APRIL 2015 STANDARD DISCUSSED CAS 240, The auditor s responsibilities relating to fraud in an audit of financial statements Testing Journal
Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement
Understanding the Entity and Its Environment 1667 AU Section 314 Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement (Supersedes SAS No. 55.) Source: SAS No. 109.
Section 1591, Subsidiaries
Financial Reporting Alert ASPE MAY 2015 Section 1591, Subsidiaries In September 2014, the Accounting Standards Board (AcSB) issued Section 1591, Subsidiaries, set out in Part II (Accounting Standards for
INTERNATIONAL STANDARD ON AUDITING 330 THE AUDITOR S RESPONSES TO ASSESSED RISKS CONTENTS
INTERNATIONAL STANDARD ON AUDITING 330 THE AUDITOR S RESPONSES TO ASSESSED RISKS (Effective for audits of financial statements for periods beginning on or after December 15, 2009) CONTENTS Paragraph Introduction
THE AUDITOR S RESPONSES TO ASSESSED RISKS
SINGAPORE STANDARD ON AUDITING SSA 330 THE AUDITOR S RESPONSES TO ASSESSED RISKS This revised Singapore Standard on Auditing (SSA) 330 supersedes SSA 330 The Auditor s Procedures in Response to Assessed
Audit Evidence. AU Section 326. Introduction. Concept of Audit Evidence AU 326.03
Audit Evidence 1859 AU Section 326 Audit Evidence (Supersedes SAS No. 31.) Source: SAS No. 106. See section 9326 for interpretations of this section. Effective for audits of financial statements for periods
How To Audit A Company
INTERNATIONAL STANDARD ON AUDITING 315 IDENTIFYING AND ASSESSING THE RISKS OF MATERIAL MISSTATEMENT THROUGH UNDERSTANDING THE ENTITY AND ITS ENVIRONMENT (Effective for audits of financial statements for
Audit Data Analytics. Bob Dohrer, IAASB Member and Working Group Chair. Miklos Vasarhelyi Phillip McCollough
Audit Data Analytics Bob Dohrer, IAASB Member and Working Group Chair Miklos Vasarhelyi Phillip McCollough IAASB Meeting September 2015 Agenda Item 6-A Page 1 Audit Data Analytics Agenda Introductory remarks
Performing Audit Procedures in Response to Assessed Risks and Evaluating the Audit Evidence Obtained
Performing Audit Procedures in Response to Assessed Risks 1781 AU Section 318 Performing Audit Procedures in Response to Assessed Risks and Evaluating the Audit Evidence Obtained (Supersedes SAS No. 55.)
Audit Quality Thematic Review
Thematic Review Professional discipline Financial Reporting Council December 2014 Audit Quality Thematic Review The audit of loan loss provisions and related IT controls in banks and building societies
Audits of Financial Statements that Contain Amounts that Have Been Determined Using Actuarial Calculations
Audits of Financial Statements that Contain Amounts that Have Been Determined Using Actuarial Calculations January 2011 Canadian Institute of Chartered Accountants Canadian Institute of Actuaries Audits
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 315
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 315 IDENTIFYING AND ASSESSING THE RISKS OF MATERIAL MISSTATEMENT THROUGH UNDERSTANDING THE ENTITY AND ITS ENVIRONMENT (Effective for audits of financial
Analytical Procedures
Analytical Procedures 1889 AU Section 329 Analytical Procedures (Supersedes section 318.) Source: SAS No. 56; SAS No. 96. Effective for audits of financial statements for periods beginning on or after
CPA Canada Financial Reporting Alert
FEBRUARY 2014 CPA Canada Financial Reporting Alert ASPE AMENDED 2013 Annual Improvements to Accounting Standards for Private Enterprises In October 2013, the Accounting Standards Board ( AcSB ) made several
INTERNATIONAL STANDARD ON AUDITING 520 ANALYTICAL PROCEDURES CONTENTS
INTERNATIONAL STANDARD ON AUDITING 520 ANALYTICAL PROCEDURES (Effective for audits of financial statements for periods beginning on or after December 15, 2009) CONTENTS Paragraph Introduction Scope of
AN AUDIT OF INTERNAL CONTROL OVER FINANCIAL REPORTING THAT IS INTEGRATED WITH AN AUDIT OF FINANCIAL STATEMENTS:
1666 K Street, NW Washington, D.C. 20006 Telephone: (202) 207-9100 Facsimile: (202) 862-8430 www.pcaobus.org STAFF VIEWS AN AUDIT OF INTERNAL CONTROL OVER FINANCIAL REPORTING THAT IS INTEGRATED WITH AN
Data Analytics Working Group Update
Working Group Update Bob Dohrer, IAASB Member and Working Group Chair IAASB Meeting June 2015 Agenda Item 3-A Page 1 Audit Data Analytics Agenda Current Landscape What Is It? Audit Data Analytics and the
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 520 ANALYTICAL PROCEDURES CONTENTS
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 520 ANALYTICAL PROCEDURES CONTENTS Paragraph Introduction... 1-3-4 Nature and Purpose of Analytical Procedures... 4-7 Analytical Procedures as Risk Assessment
Annual Assessment of the External Auditor
Annual Assessment of the External Auditor TOOL FOR AUDIT COMMITTEES January 2014 ENHANCING AUDIT QUALITY AUDIT COMMITTEES iii Table of Contents Introduction 1 1. Determine the scope, timing and process
U S I N G D A T A A N A L Y S I S T O M E E T T H E R E Q U I R E M E N T S O F R I S K B A S E D A U D I T I N G S T A N D A R D S
U S I N G D A T A A N A L Y S I S T O M E E T T H E R E Q U I R E M E N T S O F R I S K B A S E D A U D I T I N G S T A N D A R D S A C a s e W a r e I D E A R e s e a r c h R e p o r t CaseWare IDEA Inc.
OF CPAB INSPECTION FINDINGS
PROTOCOL FOR AUDIT FIRM COMMUNICATION OF CPAB INSPECTION FINDINGS WITH AUDIT COMMITTEES CONSULTATION PAPER NOVEMBER 2013 The Canadian Public Accountability Board ( CPAB ) is requesting comments on the
INTERNATIONAL STANDARD ON AUDITING 200 OBJECTIVE AND GENERAL PRINCIPLES GOVERNING AN AUDIT OF FINANCIAL STATEMENTS CONTENTS
INTERNATIONAL STANDARD ON AUDITING 200 OBJECTIVE AND GENERAL PRINCIPLES GOVERNING (Effective for audits of financial statements for periods beginning on or after December 15, 2005. The Appendix contains
BASIS FOR CONCLUSIONS Canadian Standard on Assurance Engagements (CSAE) 3416, Reporting on Controls at a Service Organization
August 2010 BASIS FOR CONCLUSIONS Canadian Standard on Assurance Engagements (CSAE) 3416, Reporting on Controls at a Service Organization This Basis for Conclusions has been prepared by staff of the Auditing
ISSAI 1300. Planning an Audit of Financial Statements. Financial Audit Guideline
The International Standards of Supreme Audit Institutions, ISSAI, are issued by the International Organization of Supreme Audit Institutions, INTOSAI. For more information visit www.issai.org. Financial
Planning an Audit 255
Planning an Audit 255 AU-C Section 300 Planning an Audit Source: SAS No. 122; SAS No. 128. Effective for audits of financial statements for periods ending on or after December 15, 2012. Introduction Scope
(Effective for audits of financial statements for periods beginning on or after December 15, 2009) CONTENTS
INTERNATIONAL STANDARD ON 200 OVERALL OBJECTIVES OF THE INDEPENDENT AUDITOR AND THE CONDUCT OF AN AUDIT IN ACCORDANCE WITH INTERNATIONAL STANDARDS ON (Effective for audits of financial statements for periods
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 540
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 540 AUDITING ACCOUNTING ESTIMATES, INCLUDING FAIR VALUE ACCOUNTING ESTIMATES, AND RELATED DISCLOSURES (Effective for audits of financial statements for
Re. Request for feedback on Assurance on <IR> Introduction & Exploration of Issues
Chartered Professional Accountants of Canada 277 Wellington Street West Toronto ON CANADA M5V 3H2 T. 416 977.3222 F. 416 977.8585 www.cpacanada.ca Comptables professionnels agréés du Canada 277, rue Wellington
Analytical Procedures
ISA 520 March 2009 International Standard on Auditing Analytical Procedures INTERNATIONAL STANDARD ON AUDITING 520 Analytical Procedures Explanatory Foreword The Council of the Malaysian Institute of Accountants
Audit Quality Thematic Review
Thematic Review Professional discipline Financial Reporting Council January 2014 Audit Quality Thematic Review Fraud risks and laws and regulations The FRC is responsible for promoting high quality corporate
Reporting Implications of New Auditing and Accounting Standards
Reporting Implications of New Auditing and Accounting Standards Issue No. 12 April 2014 Reporting Implications of New Auditing and Accounting Standards ISSUE No. 12 April 2014 This CPA Canada publication
Identifying and Assessing. Understanding the Entity
Issued June 2009; revised July 2010, July 2012 Effective for audits of financial statements for periods beginning on or after 15 December 2009* Hong Kong Standard on Auditing 315 Identifying and Assessing
Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement
Understanding the Entity and Its Environment 267 AU-C Section 315 Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement Source: SAS No. 122; SAS No. 128. Effective
STANDING ADVISORY GROUP MEETING
1666 K Street, N.W. Washington, DC 20006 Telephone: (202) 207-9100 Facsimile: (202) 862-8430 www.pcaobus.org RISK ASSESSMENT IN FINANCIAL STATEMENT AUDITS Introduction The Standing Advisory Group ("SAG")
ISRE 2400 (Revised), Engagements to Review Historical Financial Statements
International Auditing and Assurance Standards Board Exposure Draft January 2011 Comments requested by May 20, 2011 Proposed International Standard on Review Engagements ISRE 2400 (Revised), Engagements
APB ETHICAL STANDARD 5 (REVISED) NON-AUDIT SERVICES PROVIDED TO AUDITED ENTITIES
APB ETHICAL STANDARD 5 (REVISED) NON-AUDIT SERVICES PROVIDED TO AUDITED ENTITIES (Revised December 2010, updated December 2011) Contents paragraph Introduction 1 4 General approach to non-audit services
How To Audit A Financial Statement
INTERNATIONAL STANDARD ON 400 RISK ASSESSMENTS AND INTERNAL CONTROL (This Standard is effective, but will be withdrawn when ISA 315 and 330 become effective) * CONTENTS Paragraph Introduction... 1-10 Inherent
Analytical Procedures
Analytical Procedures 483 AU-C Section 520 Analytical Procedures Source: SAS No. 122. Effective for audits of financial statements for periods ending on or after December 15, 2012. Introduction Scope of
Auditing Accounting Estimates, Including Fair Value Accounting Estimates, and Related Disclosures
Auditing Accounting Estimates 501 AU-C Section 540 Auditing Accounting Estimates, Including Fair Value Accounting Estimates, and Related Disclosures Source: SAS No. 122. Effective for audits of financial
AGA Kansas City Chapter Data Analytics & Continuous Monitoring
AGA Kansas City Chapter Data Analytics & Continuous Monitoring Agenda Market Overview & Drivers for Change Key challenges that organizations face Data Analytics What is data analytics and how can it help
INTERNATIONAL STANDARD ON AUDITING 540 AUDITING ACCOUNTING ESTIMATES, INCLUDING FAIR VALUE ACCOUNTING ESTIMATES, AND RELATED DISCLOSURES CONTENTS
INTERNATIONAL STANDARD ON AUDITING 540 AUDITING ACCOUNTING ESTIMATES, INCLUDING FAIR VALUE ACCOUNTING ESTIMATES, AND RELATED DISCLOSURES (Effective for audits of financial statements for periods beginning
[300] Accounting and internal control systems and audit risk assessments
[300] Accounting and internal control systems and audit risk assessments (Issued March 1995) Contents Paragraphs Introduction 1 12 Inherent risk 13 15 Accounting system and control environment 16 23 Internal
DEMYSTIFYING BIG DATA. What it is, what it isn t, and what it can do for you.
DEMYSTIFYING BIG DATA What it is, what it isn t, and what it can do for you. JAMES LUCK BIO James Luck is a Data Scientist with AT&T Consulting. He has 25+ years of experience in data analytics, in addition
Auditing Standard ASA 330 The Auditor's Responses to Assessed Risks
ASA 330 (October 2009) Auditing Standard ASA 330 The Auditor's Responses to Assessed Risks Issued by the Auditing and Assurance Standards Board Obtaining a Copy of this Auditing Standard This Auditing
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 200
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 200 OVERALL OBJECTIVES OF THE INDEPENDENT AUDITOR AND THE CONDUCT OF AN AUDIT IN ACCORDANCE WITH INTERNATIONAL STANDARDS ON AUDITING (UK AND IRELAND)
Data Analytics Working Group Update
Working Group Update Bob Dohrer, IAASB Member and Working Group Chair IAASB CAG Meeting September 2015 Agenda Item L.1 Page 1 Audit Data Analytics Agenda Current Landscape Audit Data Analytics and the
Addressing Disclosures in the Audit of Financial Statements
Exposure Draft May 2014 Comments due: September 11, 2014 Proposed Changes to the International Standards on Auditing (ISAs) Addressing Disclosures in the Audit of Financial Statements This Exposure Draft
STANDING ADVISORY GROUP MEETING
1666 K Street, NW Washington, D.C. 20006 Telephone: (202) 207-9100 Facsimile: (202)862-8430 www.pcaobus.org STANDING ADVISORY GROUP MEETING AUDIT CONFIRMATIONS APRIL 2, 2009 Introduction Confirmations
Auditing Standard ASA 520 Analytical Procedures
ASA 520 (October 2009) Auditing Standard ASA 520 Issued by the Auditing and Assurance Standards Board Obtaining a Copy of this Auditing Standard This Auditing Standard is available on the Auditing and
INTERNATIONAL STANDARD ON REVIEW ENGAGEMENTS 2410 REVIEW OF INTERIM FINANCIAL INFORMATION PERFORMED BY THE INDEPENDENT AUDITOR OF THE ENTITY CONTENTS
INTERNATIONAL STANDARD ON ENGAGEMENTS 2410 OF INTERIM FINANCIAL INFORMATION PERFORMED BY THE INDEPENDENT AUDITOR OF THE ENTITY (Effective for reviews of interim financial information for periods beginning
AICPA Discussion Paper - Enhancing Audit Quality, Plans and Perspectives for the U.S. CPA Profession
November 7, 2014 VIA E-MAIL [email protected] Re: AICPA Discussion Paper - Enhancing Audit Quality, Plans and Perspectives for the U.S. CPA Profession To the Members of the AICPA Discussion Paper Initiative:
INTERNATIONAL STANDARD ON AUDITING 260 COMMUNICATION WITH THOSE CHARGED WITH GOVERNANCE CONTENTS
INTERNATIONAL STANDARD ON AUDITING 260 COMMUNICATION WITH THOSE CHARGED WITH GOVERNANCE (Effective for audits of financial statements for periods beginning on or after December 15, 2009) CONTENTS Paragraph
Data analytics Delivering intelligence in the moment
www.pwc.co.uk Data analytics Delivering intelligence in the moment January 2014 Our point of view Extracting insight from an organisation s data and applying it to business decisions has long been a necessary
Adding insight to audit Transforming internal audit through data analytics
Adding insight to audit Transforming internal audit through data analytics Contents Why analytics? Why now?........................... 1 The business case for audit analytics................... 3 Benefits
Special Considerations Audits of Group Financial Statements (Including the Work of Component Auditors)
HKSA 600 Issued September 2009; revised July 2010, May 2013, June 2014*, February 2015 Effective for audits of financial statements for periods beginning on or after 15 December 2009 Hong Kong Standard
How To Audit A Company
1666 K Street, NW Washington, D.C. 20006 Telephone: (202) 207-9100 Facsimile: (202)862-8430 www.pcaobus.org STAFF AUDIT PRACTICE ALERT NO. 11 CONSIDERATIONS FOR AUDITS OF INTERNAL CONTROL OVER FINANCIAL
FAQs New Service Organization Standards and Implementation Guidance
FAQs New Service Organization Standards and Implementation Guidance During the past two years several significant changes have occurred in audit and attest standards for reporting on controls at service
INTERNATIONAL STANDARD ON ASSURANCE ENGAGEMENTS 3000 ASSURANCE ENGAGEMENTS OTHER THAN AUDITS OR REVIEWS OF HISTORICAL FINANCIAL INFORMATION CONTENTS
INTERNATIONAL STANDARD ON ASSURANCE ENGAGEMENTS 3000 ASSURANCE ENGAGEMENTS OTHER THAN AUDITS OR REVIEWS OF HISTORICAL FINANCIAL INFORMATION (Effective for assurance reports dated on or after January 1,
Plan for the audit of the 2011 financial statements
INTERNATIONAL TRAINING CENTRE OF THE ILO Board of the Centre 73rd Session, Turin, 3-4 November 2011 CC 73/5/2 FOR INFORMATION FIFTH ITEM ON THE AGENDA Plan for the audit of the 2011 financial statements
STAFF AUDIT PRACTICE ALERT NO. 5 AUDITOR CONSIDERATIONS REGARDING SIGNIFICANT UNUSUAL TRANSACTIONS. April 7, 2010
1666 K Street, NW Washington, D.C. 20006 Telephone: (202) 207-9100 Facsimile: (202)862-8430 www.pcaobus.org STAFF AUDIT PRACTICE ALERT NO. 5 AUDITOR CONSIDERATIONS REGARDING SIGNIFICANT UNUSUAL TRANSACTIONS
General Guidance for Developing, Documenting, Implementing, Maintaining, and Auditing an SQF System. Module 2: System Elements. SQF Code, Edition 7.
General Guidance for Developing, Documenting, Implementing, Maintaining, and Auditing an SQF System Module 2: System Elements SQF Code, Edition 7.1 M A Y 2 0 1 3 2013 Safe Quality Food Institute 2345 Crystal
The CAM-I Performance Management Framework
The CAM-I Performance Framework HOW TO EVALUATE AND IMPROVE ORGANIZATIONAL PERFORMANCE EXECUTIVE OVERVIEW The CAM-I Performance Framework HOW TO EVALUATE AND IMPROVE ORGANIZATIONAL PERFORMANCE EXECUTIVE
Stages of the Audit Process
Chapter 5 Stages of the Audit Process Learning Objectives Upon completion of this chapter you should be able to explain: LO 1 Explain the audit process. LO 2 Accept a new client or confirming the continuance
Audit Risk and Materiality in Conducting an Audit
Audit Risk and Materiality in Conducting an Audit 1647 AU Section 312 Audit Risk and Materiality in Conducting an Audit (Supersedes SAS No. 47.) Source: SAS No. 107. See section 9312 for interpretations
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 240 THE AUDITOR S RESPONSIBILITIES RELATING TO FRAUD IN AN AUDIT OF FINANCIAL STATEMENTS
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 240 Introduction THE AUDITOR S RESPONSIBILITIES RELATING TO FRAUD IN AN AUDIT OF FINANCIAL STATEMENTS (Effective for audits of financial statements for
Report of independent certified public accountants in accordance with Government Auditing Standards and Circular A-133 State of Hawaii, Department of
Report of independent certified public accountants in accordance with Government Auditing Standards and Circular A-133 State of Hawaii,, June 30, 2004 2 C O N T E N T S REPORT OF INDEPENDENT CERTIFIED
Part A OVERVIEW...1. 1. Introduction...1. 2. Applicability...2. 3. Legal Provision...2. Part B SOUND DATA MANAGEMENT AND MIS PRACTICES...
Part A OVERVIEW...1 1. Introduction...1 2. Applicability...2 3. Legal Provision...2 Part B SOUND DATA MANAGEMENT AND MIS PRACTICES...3 4. Guiding Principles...3 Part C IMPLEMENTATION...13 5. Implementation
Industry Sound Practices for Financial and Accounting Controls at Financial Institutions
Industry Sound Practices for Financial and Accounting Controls at Financial Institutions Federal Reserve Bank of New York January 2006 FINANCIAL AND ACCOUNTING CONTROLS: INDUSTRY SOUND PRACTICES FOR FINANCIAL
Consideration of Fraud in a Financial Statement Audit
Consideration of Fraud in a Financial Statement Audit 151 AU-C Section 240 Consideration of Fraud in a Financial Statement Audit Source: SAS No. 122; SAS No. 128. Effective for audits of financial statements
HKSA 500 Issued July 2009; revised July 2010, May 2013, February 2015
HKSA 500 Issued July 2009; revised July 2010, May 2013, February 2015 Effective for audits of financial statements for periods beginning on or after 15 December 2009 Hong Kong Standard on Auditing 500
Current Uses and Trends in ACL and Data Mining
Current Uses and Trends in ACL and Data Mining Weaver and Tidwell, L.L.P. January 10, 2013 Marlon B Williams, CPA, ACDA Partner, Assurance Reema Parappilly, CISA Senior Manager, IT Advisory Objective Discuss
INTERNATIONAL STANDARD ON AUDITING 220 QUALITY CONTROL FOR AN AUDIT OF FINANCIAL STATEMENTS CONTENTS
INTERNATIONAL STANDARD ON 220 QUALITY CONTROL FOR AN AUDIT OF FINANCIAL STATEMENTS (Effective for audits of financial statements for periods beginning on or after December 15, 2009) CONTENTS Introduction
Data & Analytics in Internal Audit. January 13, 2015
Data & Analytics in Internal Audit January 13, 2015 With You Today KPMG Brian Greenberg, Director, Data & Analytics-enabled Internal Audit (National) Sean Mulyanto, Manager IT Advisory (Los Angeles) 1
GAO. Government Auditing Standards: Implementation Tool
United States Government Accountability Office GAO By the Comptroller General of the United States December 2007 Government Auditing Standards: Implementation Tool Professional Requirements Tool for Use
Banking On A Customer-Centric Approach To Data
Banking On A Customer-Centric Approach To Data Putting Content into Context to Enhance Customer Lifetime Value No matter which company they interact with, consumers today have far greater expectations
Sarbanes-Oxley Section 404: Management s Assessment Process
Sarbanes-Oxley Section 404: Management s Assessment Process Frequently Asked Questions ADVISORY Contents 1 Introduction 2 Providing a Road Map for Management 3 Questions and Answers 3 Section I. Planning
Transforming Internal Audit: A Maturity Model from Data Analytics to Continuous Assurance
ADVISORY SERVICES Transforming Internal Audit: A Model from Data Analytics to Assurance kpmg.com Contents Executive summary 1 Making the journey 2 The value of identifying maturity levels 4 Internal audit
INTERNATIONAL FRAMEWORK FOR ASSURANCE ENGAGEMENTS CONTENTS
INTERNATIONAL FOR ASSURANCE ENGAGEMENTS (Effective for assurance reports issued on or after January 1, 2005) CONTENTS Paragraph Introduction... 1 6 Definition and Objective of an Assurance Engagement...
Assessing the Adequacy and Effectiveness of a Fund s Compliance Policies and Procedures. December 2005
Assessing the Adequacy and Effectiveness of a Fund s Compliance Policies and Procedures December 2005 Copyright 2005 Investment Company Institute. All rights reserved. Information may be abridged and therefore
Understanding a financial statement audit
www.pwc.com Understanding a financial statement audit December January 2013 2012 Understanding a financial statement audit 1 Preface Role of audit Since its introduction, the need for certain companies
ISA 200, Overall Objective of the Independent Auditor, and the Conduct of an Audit in Accordance with International Standards on Auditing
International Auditing and Assurance Standards Board Exposure Draft April 2007 Comments are requested by September 15, 2007 Proposed Revised and Redrafted International Standard on Auditing ISA 200, Overall
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 240 THE AUDITOR S RESPONSIBILITY TO CONSIDER FRAUD IN AN AUDIT OF FINANCIAL STATEMENTS CONTENTS
INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 240 THE AUDITOR S RESPONSIBILITY TO CONSIDER FRAUD IN AN AUDIT OF FINANCIAL STATEMENTS CONTENTS Paragraphs Introduction... 1-3 Characteristics of Fraud...
APPENDIX N. Data Validation Using Data Descriptors
APPENDIX N Data Validation Using Data Descriptors Data validation is often defined by six data descriptors: 1) reports to decision maker 2) documentation 3) data sources 4) analytical method and detection
A Publication of the Center for Audit Quality
Practice Aid for Testing Journal Entries and Other Adjustments Pursuant to AU Section 316 A Publication of the Center for Audit Quality December 8, 2008 1 Practice Aid for Testing Journal Entries and Other
Extracting Your Company s Data with the New Audit Data Standard
Extracting Your Company s Data with the New Audit Data Standard Written by Kristine Hasenstab and Eric E. Cohen Have you ever been responsible for meeting an internal or external auditor's request for
Filings With the U.S. Securities and Exchange Commission Under the Securities Act of 1933
Filings With the U.S. Securities and Exchange Commission 1073 AU-C Section 925 Filings With the U.S. Securities and Exchange Commission Under the Securities Act of 1933 Source: SAS No. 122. Effective for
previous version of the Handbook). The Handbook applies to pension plan financial statements for fiscal years beginning on or after January 1, 2011.
Financial Services Commission of Ontario Commission des services financiers de l Ontario SECTION: INDEX NO.: TITLE: APPROVED BY: Financial Statements Guidance Note FSGN-100 Disclosure Expectations for
Module 2 IS Assurance Services
Module 2 IS Assurance Services Chapter 2: IS Audit In Phases Phase 2: Part: 2 of 3 CA A.Rafeq 1 Chapter 2: Agenda Chapter 2: IS Audit in Phases Phase1: Plan Phase 2: Execute Phase 3: Report 2 Phase 2:
STATEMENT OF AUDITING STANDARDS 300 AUDIT RISK ASSESSMENTS AND ACCOUNTING AND INTERNAL CONTROL SYSTEMS
STATEMENT OF AUDITING STANDARDS 300 AUDIT RISK ASSESSMENTS AND ACCOUNTING AND INTERNAL CONTROL SYSTEMS (Issued January 1997; revised January 2004) SAS 300 (revised January 04) Contents Paragraphs Introduction
