THIRD-PARTY RISK: HOW TO BETTER UTILIZE ENERGY VENDOR AUDITS 8/25/2015. August 27, 2015

Size: px
Start display at page:

Download "THIRD-PARTY RISK: HOW TO BETTER UTILIZE ENERGY VENDOR AUDITS 8/25/2015. August 27, 2015"

Transcription

1 8/25/2015 THIRD-PARTY RISK: HOW TO BETTER UTILIZE ENERGY VENDOR AUDITS August 27, 2015 Shane Torkelson, CPE, CISA, CIA Director Enterprise Risk Solutions 1

2 TO RECEIVE CPE CREDIT Participate in entire webinar Answer polls when they are provided If you are viewing this webinar in a group Complete group attendance form with Title & date of live webinar Your company name Your printed name, signature & address All group attendance sheets must be submitted to within 24 hours of live webinar Answer polls when they are provided If all eligibility requirements are met, each participant will be ed their CPE certificates within 15 business days of live webinar WEBINAR OBJECTIVES Upon completion of this program, participants will be able to Describe what s included in an effective vendor management program Discuss the benefits of utilizing vendor audits in their business Identify the main steps in executing an efficient vendor audit Recognize the process for establishing a vendor audit program 2

3 OUTSOURCING OVERVIEW Organizations across many industries, including energy, have outsourced business processes to cut costs, create efficiencies or remove non-core functions Managing these relationships with third-party service providers & vendors can be challenging & present risk to an organization A structured vendor management program can address challenges & risks THIRD-PARTY RISKS Outsourcing business processes comes with certain risks. Thirdparty considerations that warrant monitoring may include potential risk of Overcharges/erroneous invoicing (e.g., duplicate payments, incorrect billing rates, discounts not applied, billing for goods/services not received, etc.) Reputational damage Non-compliance with contractual terms & conditions (e.g., insurance requirements, due diligence, regulatory compliance (FCPA), etc.) Inability to meet critical performance expectations (e.g., JIT delivery, completion milestones, volume/quantity, product quality, etc.) Financial stability of vendor (i.e., going concern issues) 3

4 VENDOR MANAGEMENT LIFECYCLE COMPLETE Project or deliverables is completed per contract & vendor evaluated BID Receive prices estimates on goods/services needed EXECUTE Agreement on terms & conditions with proper approval by necessary parties CHANGE CONTROL Approval procedures for changes to contract (scope & price) PAYMENT Invoice approval & payment process MONITOR Process of evaluating performance & verifying compliance with contract MONITORING ACTIVITIES Monitoring activities include processes for evaluating vendor performance & their compliance with the contract. Example activities include Consistent monitoring of key performance indicators (KPIs) throughout term of contract(s) Periodic validation of operational requirements (e.g., insurance, compliance, background checks, etc.) Annual/bi-annual vendor appraisal program Periodic vendor audits 4

5 BENEFITS OF VENDOR AUDITS Contract Compliance Audit: The review & assessment of a third party s compliance with financial & operational provisions of an executed contract In addition, to be an effective control in commercial relationships, vendor audits may also help companies Avoid financial, legal or reputational risks Identify potential cost recoveries Eliminate waste or excess spending Identify & mitigate process &/or control gaps Detect unapplied credits Identify & eliminate contract ambiguities before they become an issue VENDOR AUDIT OVERVIEW Individual Audits 5

6 CONTRACT UNIVERSE In order to define the scope of a vendor audit program or narrow down those contracts deemed critical to review, an organization needs to understand their contract universe How many contracts does the company have? How many different types of contracts does the company use? What will be the period used for inclusion in the vendor audit program? RISK ASSESSMENT OF CONTRACTS Both quantitative & qualitative considerations should be included in risk assessment What is the dollar amount of spend associated with contract? Has vendor had significant budget overruns in the past? Does contract have multiple amendments or change orders? Is contract with third party experiencing financial difficulties? Is contract considered risky or complex given nature of goods or services to be performed? What is age & expiration of contract? 6

7 PROGRAM PLANNING From contract risk assessment, vendors & contracts are selected for inclusion in current audit plan Validate contract contains appropriate right to audit clause Preliminary planning includes budgeting & scheduling of various audits to be completed Notification of intent to audit given to vendors/suppliers Current audit plan is communicated to internal stakeholders INDIVIDUAL VENDOR AUDIT PLANNING Contact vendor/supplier to discuss audit, timing & logistics Obtain & review contract(s) & applicable amendments, change orders, etc. Provide vendor with prepared by client (PBC) request list Modify standard vendor audit program to address risks & characteristics of contract being audited Finalize testing plan 7

8 VENDOR AUDIT EXECUTION Perform approved audit testing plan Document findings, observations, recoveries, internal control breakdowns, etc. Consider audit results & supporting documentation VENDOR AUDIT REPORTING Discuss audit observations with vendor/supplier to include recoveries & process/control gaps Obtain agreement on validity of findings & secure documentation to that effect Draft report of findings Distribute final report 8

9 RESULTS TRACKING & ANALYSIS Track open findings & action items through to closure Monthly report aging of open items Monitor changes to internal processes for proper implementation & resolution of findings Analyze trends in monetary findings Analyze trends in process/control gaps Establish periodic reporting of results SUMMATION Managing third-party risk can be a critical activity for many organizations An effective vendor management program includes, among other things, a robust monitoring protocol Establishing a vendor audit program begins with contract universe & understanding quantitative & qualitative factors Performing periodic vendor audits is a sound business practice & provides insights into trends & issues 9

10 QUESTIONS? CONTINUING PROFESSIONAL EDUCATION (CPE) CREDITS BKD, LLP is registered with the National Association of State Boards of Accountancy (NASBA) as a sponsor of continuing professional education on the National Registry of CPE Sponsors. State boards of accountancy have final authority on the acceptance of individual courses for CPE credit. Complaints regarding registered sponsors may be submitted to the National Registry of CPE Sponsors through its website: The information in BKD webinars is presented by BKD professionals, but applying specific information to your situation requires careful consideration of facts & circumstances. Consult your BKD advisor before acting on any matters covered in these webinars 10

11 CPE CREDIT CPE credit may be awarded upon verification of participant attendance For questions, concerns or comments regarding CPE credit, please the BKD Learning & Development Department at THANK YOU! FOR MORE INFORMATION Shane Torkelson CPA, CISA, CIA Director Enterprise Risk Solutions BKD, LLP 2800 Post Oak Blvd., Suite 3200 Houston, Texas

12 12

THE EVOLUTION OF CYBERSECURITY

THE EVOLUTION OF CYBERSECURITY THE EVOLUTION OF CYBERSECURITY Identifying Best Practices June 2, 2015 Cerone F. Cy Sturdivant Managing Consultant Nashville, TN 1 TO RECEIVE CPE CREDIT Participate in entire webinar Answer polls when

More information

DATA ANALYTICS. Finding Data from Farm to Fork February 11, 2016 2/10/2016

DATA ANALYTICS. Finding Data from Farm to Fork February 11, 2016 2/10/2016 DATA ANALYTICS Finding Data from Farm to Fork February 11, 2016 Jeremy R. Clopton, CPA, CFE, ACDA, CIDA Director Forensics & Valuation Services jclopton@bkd.com 1 TO RECEIVE CPE CREDIT Participate in entire

More information

Using Navigation List Builder with Dynamics GP. Charles Allen Managing Consultant BKD Technologies callen@bkd.com

Using Navigation List Builder with Dynamics GP. Charles Allen Managing Consultant BKD Technologies callen@bkd.com Using Navigation List Builder with Dynamics GP Charles Allen Managing Consultant BKD Technologies callen@bkd.com To Receive CPE Credit Participate in entire webinar Answer polls when they are provided

More information

To Receive CPE Credit

To Receive CPE Credit Outcome Metrics for National Associations November 17, 2015 To Receive CPE Credit Participate in entire webinar Answer attendance checks & polls when they are provided If you are viewing this webinar in

More information

ACA IRS INFORMATION REPORTING: WHAT DO I NEED TO KNOW?

ACA IRS INFORMATION REPORTING: WHAT DO I NEED TO KNOW? CPAs & ADVISORS ACA IRS INFORMATION REPORTING: WHAT DO I NEED TO KNOW? TO RECEIVE CPE CREDIT Participate in entire webinar Answer polls when they are provided If you are viewing this webinar in a group

More information

NATIONAL ASSOCIATION OF MANUFACTURERS END OF THE YEAR TAX UPDATE

NATIONAL ASSOCIATION OF MANUFACTURERS END OF THE YEAR TAX UPDATE Wednesday December 17, 2014 2 3 PM Central Time NATIONAL ASSOCIATION OF MANUFACTURERS END OF THE YEAR TAX UPDATE Carolyn Lee Senior Director, Tax Policy National Association of Manufacturers CLee@nam.org

More information

Steven L. Toomey, CIMA

Steven L. Toomey, CIMA 401(K) PLAN FIDUCIARY BEST PRACTICES & INDUSTRY TRENDS March 1, 2016 Steven L. Toomey, CIMA Principal BKD Wealth Advisors, LLC stoomey@bkd.com 1 TO RECEIVE CPE CREDIT Participate in entire webinar Answer

More information

WHAT JUST HAPPENED TO THE EMR PROGRAM?

WHAT JUST HAPPENED TO THE EMR PROGRAM? WHAT JUST HAPPENED TO THE EMR PROGRAM? November 5, 2015 Michael Orr Director morr@bkd.com 254.776.8244 ext. 43928 Travis Skinner Senior Managing Consultant tskinner@bkd.com 254.776.8244 ext. 43936 1 TO

More information

LEASE ACCOUNTING FOR STATE & LOCAL GOVERNMENTS

LEASE ACCOUNTING FOR STATE & LOCAL GOVERNMENTS LEASE ACCOUNTING FOR STATE & LOCAL GOVERNMENTS April 7, 2015 Overview of GASB s Reexamination of Lease Accounting Guidance Andy Richards, CPA Partner arichards@bkd.com 1 TO RECEIVE CPE CREDIT Participate

More information

Understanding How to Handle Donor Contributions Anne Adams, CPA, Senior Manager Paige Gerich, CPA, Partner

Understanding How to Handle Donor Contributions Anne Adams, CPA, Senior Manager Paige Gerich, CPA, Partner Understanding How to Handle Donor Contributions Anne Adams, CPA, Senior Manager Paige Gerich, CPA, Partner To Receive CPE Credit Participate in entire webinar Answer polls when they are provided If you

More information

SNF Medicare Billing Frequently Asked Questions

SNF Medicare Billing Frequently Asked Questions CPAs & ADVISORS experience clarity // SNF Medicare Billing Frequently Asked Questions HEALTH CARE GROUP Julie Bilyeu, Director Lisa McIntire, CPA, Senior Managing Consultant TO RECEIVE CPE CREDIT Individual

More information

PREPARING FOR EMR PROGRAM SUCCESS IN 2016 12/10/2015. December 15, 2015. Travis Skinner, CPA Senior Managing Consultant tskinner@bkd.

PREPARING FOR EMR PROGRAM SUCCESS IN 2016 12/10/2015. December 15, 2015. Travis Skinner, CPA Senior Managing Consultant tskinner@bkd. PREPARING FOR EMR PROGRAM SUCCESS IN 2016 December 15, 2015 Travis Skinner, CPA Senior Managing Consultant tskinner@bkd.com Michael Orr, CPA Director morr@bkd.com David McDonald, CPA Director dmcdonald@bkd.com

More information

BENEFITS OF A CLOUD ERP SYSTEM April 12, 2016

BENEFITS OF A CLOUD ERP SYSTEM April 12, 2016 BENEFITS OF A CLOUD ERP SYSTEM April 12, 2016 Ricardo de Rojas Senior Managing Consultant rderojas@bkd.com Colleen Gutirrez Senior Consultant II cgutirrez@bkd.com 1 TO RECEIVE CPE CREDIT Participate in

More information

To Receive CPE Credit

To Receive CPE Credit Revisions to Loan Originator Compensation & Qualifications Under TILA Nancy Schoolman Senior Managing Consultant nschoolman@bkd.com 314.231.9844 Sheldon Hendrix Managing Consultant shendrix@bkd.com 713.499.4600

More information

MONITORING PERFORMANCE

MONITORING PERFORMANCE MONITORING PERFORMANCE Monitoring the performance of the contractor is a key function of proper contract administration. The purpose is to ensure that the contractor is performing all duties in accordance

More information

IT Vendor Due Diligence. Jennifer McGill CIA, CISA, CGEIT IT Audit Director Carolinas HealthCare System December 9, 2014

IT Vendor Due Diligence. Jennifer McGill CIA, CISA, CGEIT IT Audit Director Carolinas HealthCare System December 9, 2014 IT Vendor Due Diligence Jennifer McGill CIA, CISA, CGEIT IT Audit Director Carolinas HealthCare System December 9, 2014 Carolinas HealthCare System (CHS) Second largest not-for-profit healthcare system

More information

Auditing Capital Projects and Project Controls. March 2013

Auditing Capital Projects and Project Controls. March 2013 Auditing Capital Projects and Project Controls March 2013 Internal Audit Perspective Oversight Insight Foresight Is the process operating as planned? Are controls, resources, and performance measures adequate

More information

CYBERSECURITY FRAUD LOSS ISSUES & HOW TO ADDRESS RISKS IN TODAY'S INSURANCE MARKETPLACE 12/16/2015. December 17, 2015

CYBERSECURITY FRAUD LOSS ISSUES & HOW TO ADDRESS RISKS IN TODAY'S INSURANCE MARKETPLACE 12/16/2015. December 17, 2015 12/16/2015 CYBERSECURITY FRAUD LOSS ISSUES & HOW TO ADDRESS RISKS IN TODAY'S INSURANCE MARKETPLACE December 17, 2015 Angela R. Morelock, CPA, CFE, CFF, ABV Partner, BKD, LLP amorelock@bkd.com Jeff Eiserman

More information

Internal Audit Report. Toll Operations Contract Management TxDOT Office of Internal Audit

Internal Audit Report. Toll Operations Contract Management TxDOT Office of Internal Audit Internal Audit Report Toll Operations Contract Management TxDOT Office of Internal Audit Objective To determine whether the Toll Operations Division (TOD) contract management structure is designed and

More information

Board Responsibility. A bank can outsource a task, but it cannot outsource the responsibility.

Board Responsibility. A bank can outsource a task, but it cannot outsource the responsibility. Third-Party Risk Board Responsibility The Board of Directors and senior management are ultimately responsible for managing activities conducted through third-party relationships as if the activity were

More information

CYBERSECURITY & EXPECTATIONS FOR INDEPENDENT GROCERS

CYBERSECURITY & EXPECTATIONS FOR INDEPENDENT GROCERS October 21, 2015 CYBERSECURITY & EXPECTATIONS FOR INDEPENDENT GROCERS Cerone F. Cy Sturdivant Managing Consultant csturdivant@bkd.com 1 TO RECEIVE CPE CREDIT Participate in entire webinar Answer polls

More information

To Receive CPE Credit

To Receive CPE Credit The Five Ws of ICD-10 Training & How to Develop a Training Plan Presented by Ann Zeisset, RHIT, CCS, CCS-P AHIMA-Approved ICD-10-CM/PCS Trainer February 13, 2013 To Receive CPE Credit Participate in entire

More information

RISK ADVISORY SERVICES CONSTRUCTION AUDIT SERVICES

RISK ADVISORY SERVICES CONSTRUCTION AUDIT SERVICES RISK ADVISORY SERVICES CONSTRUCTION AUDIT SERVICES AS ECONOMIC AND FINANCIAL CHALLENGES WEIGH ON, ORGANIZATIONS FIND IT INCREASINGLY DIFFICULT TO LOCATE ENOUGH MONETARY SUPPORT TO HELP FACILITATE THE CONSTRUCTION

More information

Vendor Management. Minimizing Value Leakage. Deloitte Consulting LLP. November 19, 2013

Vendor Management. Minimizing Value Leakage. Deloitte Consulting LLP. November 19, 2013 Vendor Management Minimizing Value Leakage Deloitte Consulting LLP November 19, 2013 Vendor Management is a rapidly emerging business practice in the outsourcing industry Define sourcing strategy Assess

More information

Mini MBA for Procurement Professionals

Mini MBA for Procurement Professionals ISO 9001:2008 Certified ISO 29990:2010 Certified ISO 29990 Mini MBA for Procurement Professionals 18-22 July 2016, London 05 09 December 2016, London Tel: +971 4 4250700 Fax: +971 4 4250701 Email: info@glomacs.ae

More information

Anatomy of an IT Outsourcing Deal. Bruce Laco Deloitte John Pickett IT World Canada Barry Sookman McCarthy Tetrault

Anatomy of an IT Outsourcing Deal. Bruce Laco Deloitte John Pickett IT World Canada Barry Sookman McCarthy Tetrault Anatomy of an IT Outsourcing Deal Bruce Laco Deloitte John Pickett IT World Canada Barry Sookman McCarthy Tetrault 3656867 Agenda Key Considerations for IT Outsourcing Decision Anatomy of an Outsourcing

More information

WHITE PAPER Third-Party Risk Management Lifecycle Guide

WHITE PAPER Third-Party Risk Management Lifecycle Guide WHITE PAPER Third-Party Risk Management Lifecycle Guide Develop and maintain compliant third-party relationships by following these foundational components of a best-practice assessment program. Third

More information

5.1 4.1 4.2 4.3 PROCESS GROUP: PLANNING PROCESS GROUP: INITIATION. Oracle Projects. PMBOK Oracle Mapping. Scope Planning. Develop Project Charter

5.1 4.1 4.2 4.3 PROCESS GROUP: PLANNING PROCESS GROUP: INITIATION. Oracle Projects. PMBOK Oracle Mapping. Scope Planning. Develop Project Charter Develop Project Charter Develop Preliminary Project Scope Statement Develop Project Management Plan Scope Planning PROCESS GROUP: INITIATION 4.1 The project charter serves as the input document for the

More information

Using SSRS to Create Financial Reports. Charles Allen Managing Consultant BKD Technologies callen@bkd.com

Using SSRS to Create Financial Reports. Charles Allen Managing Consultant BKD Technologies callen@bkd.com Using SSRS to Create Financial Reports Charles Allen Managing Consultant BKD Technologies callen@bkd.com To Receive CPE Credit Participate in entire webinar Answer polls when they are provided If viewing

More information

Transfer Pricing Issues for Tax Exempt Organizations December 5, 2012. Scrutiny on the Rise & Continuing. Scrutiny on the Rise & Continuing 12/5/2012

Transfer Pricing Issues for Tax Exempt Organizations December 5, 2012. Scrutiny on the Rise & Continuing. Scrutiny on the Rise & Continuing 12/5/2012 Transfer Pricing Issues for Tax Exempt Organizations December 5, 2012 Mike Engle Partner Kansas City Office mengle@bkd.com Will James Principal St. Louis Office wdjames@bkd.com Senator Baucus & Senator

More information

Development, Acquisition, Implementation, and Maintenance of Application Systems

Development, Acquisition, Implementation, and Maintenance of Application Systems Development, Acquisition, Implementation, and Maintenance of Application Systems Part of a series of notes to help Centers review their own Center internal management processes from the point of view of

More information

2015 Home Health Medicare Payment & Regulatory Updates Part 2

2015 Home Health Medicare Payment & Regulatory Updates Part 2 Tuesday, February 17, 2015 2 3 p.m. Central time 2015 Home Health Medicare Payment & Regulatory Updates Part 2 Karen Vance, OTR Managing Consultant BKD, LLP kvance@bkd.com To Receive CPE Credit Participate

More information

CYBERSECURITY INVESTIGATIONS

CYBERSECURITY INVESTIGATIONS CYBERSECURITY INVESTIGATIONS Planning & Best Practices May 4, 2016 Lanny Morrow, EnCE Managing Consultant lmorrow@bkd.com Cy Sturdivant, CISA Managing Consultant csturdivant@bkd.com Michal Ploskonka, CPA

More information

The Pros & Cons of Establishing a Palliative Care Program June 11, 2013. To Receive CPE Credit

The Pros & Cons of Establishing a Palliative Care Program June 11, 2013. To Receive CPE Credit The Pros & Cons of Establishing a Palliative Care Program June 11, 2013 Mark Sharp, CPA Partner BKD Springfield Office msharp@bkd.com Daniel Maison, MD, FAAHPM Medical Director of Palliative Care Spectrum

More information

Any business relationship between a bank and another entity, by contract or otherwise

Any business relationship between a bank and another entity, by contract or otherwise An Overview for Bank Directors Managing the Third Party Relationship Patrick Neuman Boardman & Clark LLP Madison, Wisconsin Any business relationship between a bank and another entity, by contract or otherwise

More information

Best Practices in Contract Migration

Best Practices in Contract Migration ebook Best Practices in Contract Migration Why You Should & How to Do It Introducing Contract Migration Organizations have as many as 10,000-200,000 contracts, perhaps more, yet very few organizations

More information

T31: Before, During and After Outsourcing David Fong, BlackRock

T31: Before, During and After Outsourcing David Fong, BlackRock T31: Before, During and After Outsourcing David Fong, BlackRock Before, During and After Outsourcing David Fong, CISA, CPA Objective o Explore reasons why some organizations choose to outsource o Understanding

More information

PROJECT MANAGEMENT PLAN Outline VERSION 0.0 STATUS: OUTLINE DATE:

PROJECT MANAGEMENT PLAN Outline VERSION 0.0 STATUS: OUTLINE DATE: PROJECT MANAGEMENT PLAN Outline VERSION 0.0 STATUS: OUTLINE DATE: Project Name Project Management Plan Document Information Document Title Version Author Owner Project Management Plan Amendment History

More information

Unisys Contract Review. Published by Order of the Audit Committee on June 27, 2012

Unisys Contract Review. Published by Order of the Audit Committee on June 27, 2012 Internal Audit Department 350 South 5th Street, Suite 302 Minneapolis, MN 55415-1316 (612) 673-2056 Audit Team on the Engagement: Jacob L. Claeys, CGAP, CRMA, CICA Magdy S. Mossaad, MBA, CIA, CMA, CFE,

More information

IT Insights. Managing Third Party Technology Risk

IT Insights. Managing Third Party Technology Risk IT Insights Managing Third Party Technology Risk According to a recent study by the Institute of Internal Auditors, more than 65 percent of organizations rely heavily on third parties, yet most allocate

More information

Health Care Reform Where Are We Now? Preparing for 2015

Health Care Reform Where Are We Now? Preparing for 2015 Tuesday, July 1, 2014 2 3 p.m. Central time Health Care Reform Where Are We Now? Preparing for 2015 David Hunt, CHBC Senior Managing Consultant BKD, LLP dhunt@bkd.com Philip Floyd, CFP, CFS Senior Managing

More information

GUIDANCE FOR MANAGING THIRD-PARTY RISK

GUIDANCE FOR MANAGING THIRD-PARTY RISK GUIDANCE FOR MANAGING THIRD-PARTY RISK Introduction An institution s board of directors and senior management are ultimately responsible for managing activities conducted through third-party relationships,

More information

Integration Insights from Lower Middle Market. Chris Schumann Senior Managing Consultant cschumann@bkd.com

Integration Insights from Lower Middle Market. Chris Schumann Senior Managing Consultant cschumann@bkd.com Integration Insights from Lower Middle Market August 7, 2012 Chris Schumann Senior Managing Consultant cschumann@bkd.com Housekeeping Items To receive CPE o Participate in entire webinar o Answer all four

More information

Managing data security and privacy risk of third-party vendors

Managing data security and privacy risk of third-party vendors Managing data security and privacy risk of third-party vendors The use of third-party vendors for key business functions is here to stay. Routine sharing of critical information assets, including protected

More information

MAPPING THE ACO TERRAIN BEFORE MAKING THE JUMP 2/24/2015. February 25, 2015

MAPPING THE ACO TERRAIN BEFORE MAKING THE JUMP 2/24/2015. February 25, 2015 MAPPING THE ACO TERRAIN BEFORE MAKING THE JUMP February 25, 2015 Eddie Marmouget, BKD National Industry Partner- Health Care Emarmouget@bkd.com Lynn Barr, NRACO Founder & Chief Transformation Officer Lbarr@nationalruralaco.com

More information

SCHEDULES OF CHAPTER 40B MAXIMUM ALLOWABLE PROFIT FROM SALES AND TOTAL CHAPTER 40B COSTS EXAMINATION PROGRAM

SCHEDULES OF CHAPTER 40B MAXIMUM ALLOWABLE PROFIT FROM SALES AND TOTAL CHAPTER 40B COSTS EXAMINATION PROGRAM 7/30/07 SCHEDULES OF CHAPTER 40B MAXIMUM ALLOWABLE PROFIT FROM SALES AND TOTAL CHAPTER 40B COSTS Instructions: EXAMINATION PROGRAM This Model Program lists the major procedures and steps that should be

More information

OBLIGATION MANAGEMENT

OBLIGATION MANAGEMENT OBLIGATION MANAGEMENT TRACK & TRACE: CONTRACTUAL OBLIGATIONS Better Visibility. Better Outcomes RAMESH SOMASUNDARAM DIRECTOR, IT VENDOR MANAGEMENT SERVICES MARCH 2012 E N E R G I C A Governance Matter

More information

Auditing Outsourcing Arrangements

Auditing Outsourcing Arrangements Auditing Outsourcing Arrangements Eileen Healy Enterprise Risk Services Director 16 April 2015 Contact Details: - Email: - ehealy@deloitte.ie Mobile: - 086 164 3082 Session Objectives To provide an understanding

More information

Conducting a System Implementation Risk Review at Higher Education Institutions

Conducting a System Implementation Risk Review at Higher Education Institutions Conducting a System Implementation Risk Review at Higher Education Institutions October 23, 2013 1 Webinar moderator Justin T. Noble ACUA Distance Learning Chairman 2 Your presenters Mike Cullen, Senior

More information

The Center for Strategic Business Integrity (CSBI) and Hall Consulting, Inc. (HCI) NASBA Continuing Professional Education (CPE) Program Policies

The Center for Strategic Business Integrity (CSBI) and Hall Consulting, Inc. (HCI) NASBA Continuing Professional Education (CPE) Program Policies The Center for Strategic Business Integrity (CSBI) and Hall Consulting, Inc. (HCI) NASBA Continuing Professional Education (CPE) Program Policies Overview CSBI Director John J. Hall is the President of

More information

Guidelines for Financial Institutions Outsourcing of Business Activities, Functions, and Processes Date: July 2004

Guidelines for Financial Institutions Outsourcing of Business Activities, Functions, and Processes Date: July 2004 Guidelines for Financial Institutions Outsourcing of Business Activities, Functions, and Processes Date: July 2004 1. INTRODUCTION Financial institutions outsource business activities, functions and processes

More information

PHASE 3: PLANNING PHASE

PHASE 3: PLANNING PHASE PHASE 3: PLANNING PHASE The ning Phase focuses principally on required project planning work. Proper comprehensive project planning is essential to a successful IT project, and incomplete project planning

More information

Click to edit Master title style

Click to edit Master title style EVOLUTION OF CYBERSECURITY Click to edit Master title style IDENTIFYING BEST PRACTICES PHILIP DIEKHOFF, IT RISK SERVICES TECHNOLOGY THE DARK SIDE AGENDA Defining cybersecurity Assessing your cybersecurity

More information

VENDOR MANAGEMENT. General Overview

VENDOR MANAGEMENT. General Overview VENDOR MANAGEMENT General Overview With many organizations outsourcing services to other third-party entities, the issue of vendor management has become a noted topic in today s business world. Vendor

More information

PMP SAMPLE QUESTIONS BASED ON PMBOK 5TH EDITION

PMP SAMPLE QUESTIONS BASED ON PMBOK 5TH EDITION PMP SAMPLE QUESTIONS http://www.tutorialspoint.com/pmp-exams/pmp_sample_questions.htm Copyright tutorialspoint.com BASED ON PMBOK 5TH EDITION Here are 200 more objective type sample questions and their

More information

PHASE 3: PLANNING PHASE

PHASE 3: PLANNING PHASE PHASE 3: PLANNING PHASE The Planning Phase focuses principally on required project planning work. Proper comprehensive project planning is essential to a successful IT project, and incomplete project planning

More information

Consulting Services for CORPORATE SPONSORSHIP ASSET INVENTORY & VALUATION

Consulting Services for CORPORATE SPONSORSHIP ASSET INVENTORY & VALUATION REQUEST FOR PROPOSALS RFP No. 14-01-11 Consulting Services for CORPORATE SPONSORSHIP ASSET INVENTORY & VALUATION Proposals will be received on or before 2:00 pm local time Wednesday, February 19, 2014

More information

Subject Area 1 Project Initiation and Management

Subject Area 1 Project Initiation and Management DRII/BCI Professional Practice Narrative: Establish the need for a Business Continuity Plan (BCP), including obtaining management support and organizing and managing the BCP project to completion. (This

More information

DNDi PROCUREMENT POLICY 2.4

DNDi PROCUREMENT POLICY 2.4 DNDi PROCUREMENT POLICY 2.4 February 2014 Table of Contents 1) Why a procurement policy and how does it fit into DNDi s mission and model?... 1 2) Procurement principles... 2 3) DNDi Procurement main procedures...

More information

FAQs about ALTA Best Practices for Real Estate Settlement Attorneys and Title Companies

FAQs about ALTA Best Practices for Real Estate Settlement Attorneys and Title Companies Why do I need to have ALTA Best Practices policies and procedures in place and have a CPA give assurance on my compliance to mortgage lenders? In accordance with Consumer Financial Protection Bureau (CFPB)

More information

Second Amendment To the HIPAA 5010 and ICD-10 Technical Assistance and Support Services Contract

Second Amendment To the HIPAA 5010 and ICD-10 Technical Assistance and Support Services Contract Second Amendment To the HIPAA 5010 and ICD-10 Technical Assistance and Support Services Contract This second Amendment to Contract Number is effective as of December 12, 2011, between the Iowa Department

More information

Performance Audit of Contract Administration

Performance Audit of Contract Administration Performance Audit of Contract Administration City of Gresham City Auditor's Office Audit Report #10-1 November 18, 2009 Gresham City Auditor Julie Nieminski, CPA, CIA, CFE, CISA, MPA Performance Audit

More information

Mecklenburg County Department of Internal Audit. Park and Recreation Department Contract Management Investigation Report 1401

Mecklenburg County Department of Internal Audit. Park and Recreation Department Contract Management Investigation Report 1401 Mecklenburg County Department of Internal Audit Park and Recreation Department Contract Management Investigation Report 1401 September 22, 2014 Internal Audit s Mission Through open communication, professionalism,

More information

Construction Contract Fundamentals. Baker Tilly refers to Baker Tilly Virchow Krause, LLP,

Construction Contract Fundamentals. Baker Tilly refers to Baker Tilly Virchow Krause, LLP, Construction Contract Fundamentals Baker Tilly refers to Baker Tilly Virchow Krause, LLP, an independently owned and managed member of Baker Tilly International. 2010 Baker Tilly Virchow Krause, LLP About

More information

Driving performance and value through strategic vendor management

Driving performance and value through strategic vendor management Banking and Capital Markets Driving performance and value through strategic vendor management As companies face increasing pressure to reduce costs and improve productivity and efficiency, many are looking

More information

OE PROJECT CHARTER TEMPLATE

OE PROJECT CHARTER TEMPLATE PROJECT : PREPARED BY: DATE (MM/DD/YYYY): Project Name Typically the Project Manager Project Charter Last Modified Date PROJECT CHARTER VERSION HISTORY VERSION DATE (MM/DD/YYYY) COMMENTS (DRAFT, SIGNED,

More information

REQUEST FOR PROPOSAL INFORMATION SECURITY PROGRAM PROVIDER

REQUEST FOR PROPOSAL INFORMATION SECURITY PROGRAM PROVIDER REQUEST FOR PROPOSAL INFORMATION SECURITY PROGRAM PROVIDER OCTOBER 18, 2013 1 Table of Contents I. EXECUTIVE OVERVIEW... 3 II. BACKGROUND... 3 A. Goals & Objective of Request... 3 B. Project Scope... 4

More information

Risk Management of Outsourced Technology Services. November 28, 2000

Risk Management of Outsourced Technology Services. November 28, 2000 Risk Management of Outsourced Technology Services November 28, 2000 Purpose and Background This statement focuses on the risk management process of identifying, measuring, monitoring, and controlling the

More information

December 2014 Report No. 15-017. An Audit Report on The Telecommunications Managed Services Contract at the Health and Human Services Commission

December 2014 Report No. 15-017. An Audit Report on The Telecommunications Managed Services Contract at the Health and Human Services Commission John Keel, CPA State Auditor An Audit Report on The Telecommunications Managed Services Contract at the Health and Human Services Commission Report No. 15-017 An Audit Report on The Telecommunications

More information

Contract Management The Mavericks Won t Like This!

Contract Management The Mavericks Won t Like This! Contract Management The Mavericks Won t Like This! Keith Wallis How Much Did That Project Cost? Real Life Example Original contract amount $500K Variations scope changes not visible Total variations =

More information

Texas Real Estate Commission Contract Management Procedures

Texas Real Estate Commission Contract Management Procedures Texas Real Estate Commission Contract Management Procedures The Texas Real Estate Commission s (TREC) has established contract management procedures that are in compliance with the State of Texas Contract

More information

UNITED STATES DEPARTMENT OF EDUCATION OFFICE OF INSPECTOR GENERAL

UNITED STATES DEPARTMENT OF EDUCATION OFFICE OF INSPECTOR GENERAL UNITED STATES DEPARTMENT OF EDUCATION OFFICE OF INSPECTOR GENERAL AUDIT SERVICES August 24, 2015 Control Number ED-OIG/A04N0004 James W. Runcie Chief Operating Officer U.S. Department of Education Federal

More information

Vendor Management Best Practices

Vendor Management Best Practices 23 rd Annual and One Day Seminar Vendor Management Best Practices Catherine Bruder CPA, CITP, CISA, CISM, CTGA Michigan Texas Florida Insight. Oversight. Foresight. SM Doeren Mayhew Bruder 1 $100 billion

More information

CITY OF SAN ANTONIO OFFICE OF THE CITY AUDITOR. Audit of Transportation and Capital Improvements. On-Call Contracts. Project No.

CITY OF SAN ANTONIO OFFICE OF THE CITY AUDITOR. Audit of Transportation and Capital Improvements. On-Call Contracts. Project No. CITY OF SAN ANTONIO OFFICE OF THE CITY AUDITOR Audit of Transportation and Capital Improvements On-Call Contracts Project No. AU14-005 August 18, 2015 Kevin W. Barthold, CPA, CIA, CISA City Auditor Executive

More information

Office of Compliance and Ethics Introductory Report. Lynette Fons, Chief Compliance Officer

Office of Compliance and Ethics Introductory Report. Lynette Fons, Chief Compliance Officer Office of Compliance and Ethics Introductory Report Lynette Fons, Chief Compliance Officer Why the Office of Compliance and Ethics was Created The City operates in a highly complex regulatory environment

More information

VENDOR RISK MANAGEMENT UPDATE- ARE YOU AT RISK? Larry L. Llirán, CISA, CISM December 10, 2015 ISACA Puerto Rico Symposium

VENDOR RISK MANAGEMENT UPDATE- ARE YOU AT RISK? Larry L. Llirán, CISA, CISM December 10, 2015 ISACA Puerto Rico Symposium 1 VENDOR RISK MANAGEMENT UPDATE- ARE YOU AT RISK? Larry L. Llirán, CISA, CISM December 10, 2015 ISACA Puerto Rico Symposium 2 Agenda Introduction Vendor Management what is? Available Guidance Vendor Management

More information

PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT MATURITY MODEL (P3M3)

PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT MATURITY MODEL (P3M3) PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT MATURITY MODEL (P3M3) 1st February 2006 Version 1.0 1 P3M3 Version 1.0 The OGC logo is a Registered Trade Mark of the Office of Government Commerce This is a Value

More information

BANK OF RUSSIA RECOMMENDATIONS ON STANDARDISATION MAINTENANCE OF INFORMATION SECURITY OF THE RUSSIAN BANKING SYSTEM ORGANISATIONS

BANK OF RUSSIA RECOMMENDATIONS ON STANDARDISATION MAINTENANCE OF INFORMATION SECURITY OF THE RUSSIAN BANKING SYSTEM ORGANISATIONS BANK OF RUSSIA RECOMMENDATIONS ON STANDARDISATION RS BR IBBS-2.1-2007 MAINTENANCE OF INFORMATION SECURITY OF THE RUSSIAN BANKING SYSTEM ORGANISATIONS GUIDELINES FOR SELF-ASSESSMENT OF CONFORMITY OF INFORMATION

More information

Chief Executive Officers of All National Banks, Department and Division Heads, and All Examining Personnel.

Chief Executive Officers of All National Banks, Department and Division Heads, and All Examining Personnel. AL 2000 9 O OCC ADVISORY LETTER Comptroller of the Currency Administrator of National Banks Subject: Third-Party Risk TO: Chief Executive Officers of All National Banks, Department and Division Heads,

More information

Advisory Guidelines of the Financial Supervisory Authority. Requirements regarding the arrangement of operational risk management

Advisory Guidelines of the Financial Supervisory Authority. Requirements regarding the arrangement of operational risk management Advisory Guidelines of the Financial Supervisory Authority Requirements regarding the arrangement of operational risk management These Advisory Guidelines have established by resolution no. 63 of the Management

More information

Thought Leadership White Paper

Thought Leadership White Paper Thought Leadership White Paper Introduction Contracts form the foundation of all businesses and every business relationship. They define every aspect of a business s activities procurement, sales, marketing,

More information

APPLICABLE TO: Flow Systems Group and all employees. Risk Management

APPLICABLE TO: Flow Systems Group and all employees. Risk Management PURPOSE: Flow Systems is committed to managing its risks and ensuring compliance with all relevant laws and regulations in a proactive, on-going and positive manner. This document outlines Flow s Risk

More information

CITY OF VAUGHAN EXTRACT FROM COUNCIL MEETING MINUTES OF MARCH 24, 2015

CITY OF VAUGHAN EXTRACT FROM COUNCIL MEETING MINUTES OF MARCH 24, 2015 CITY OF VAUGHAN EXTRACT FROM COUNCIL MEETING MINUTES OF MARCH 24, 2015 Item 2, Report No. 7, of the Finance, Administration and Audit Committee, which was adopted, as amended, by the Council of the City

More information

Vendor Management: An Enterprise-wide Focus. Susan Orr, CISA CISM CRISC CRP Susan Orr Consulting, Ltd.

Vendor Management: An Enterprise-wide Focus. Susan Orr, CISA CISM CRISC CRP Susan Orr Consulting, Ltd. Vendor Management: An Enterprise-wide Focus Susan Orr, CISA CISM CRISC CRP Susan Orr Consulting, Ltd. Why Focus on Vendor Management Increased financial regulatory scrutiny GLBA and Identity Theft Red

More information

Company Name Vendor Management Policy and Procedure. Table of Contents

Company Name Vendor Management Policy and Procedure. Table of Contents Policy and Procedure Table of Contents Table of Contents... i Introduction... 1 Risks of Using Vendors... 1 Vendor Due Diligence... 2 Monitoring... 2 Section 1 Personnel... 1 Section 2 - Outside Vendors

More information

Contract management's effect on in house counsel

Contract management's effect on in house counsel IBM Software Industry Solutions Industry/Product Identifier Contract management's effect on in house counsel Impacting contract visibility, analysis and compliance Emptoris Contract Management Solutions

More information

Qualitative analysis: Analyzing the construction schedule. 2014 Baker Tilly Virchow Krause, LLP

Qualitative analysis: Analyzing the construction schedule. 2014 Baker Tilly Virchow Krause, LLP Qualitative analysis: Analyzing the construction schedule 2014 Baker Tilly Virchow Krause, LLP About Baker Tilly > Established in 1931 > One of the top 20 largest accounting and advisory firms in the United

More information

IIA South West Event. A look at key supply chain risks and why contracting is a key step 14 January 2015

IIA South West Event. A look at key supply chain risks and why contracting is a key step 14 January 2015 IIA South West Event A look at key supply chain risks and why contracting is a key step 14 January 2015 Objectives and agenda Page The contact at KPMG with respect to this presentation is: Iain Prince

More information

SOLUTION BRIEF: CA IT ASSET MANAGER. How can I reduce IT asset costs to address my organization s budget pressures?

SOLUTION BRIEF: CA IT ASSET MANAGER. How can I reduce IT asset costs to address my organization s budget pressures? SOLUTION BRIEF: CA IT ASSET MANAGER How can I reduce IT asset costs to address my organization s budget pressures? CA IT Asset Manager helps you optimize your IT investments and avoid overspending by enabling

More information

IT Project Management Methodology. Project Scope Management Support Guide

IT Project Management Methodology. Project Scope Management Support Guide NATIONAL INFORMATION TECHNOLOGY AUTHORITY - UGANDA IT Project Management Methodology Project Scope Management Support Guide Version 0.3 Version Date Author Change Description 0.1 23 rd Mar, 2013 Gerald

More information

Construction auditing: Continuous monitoring of active construction projects

Construction auditing: Continuous monitoring of active construction projects Construction auditing: Continuous monitoring of active construction projects Baker Tilly refers to Baker Tilly Virchow Krause, LLP, an independently owned and managed member of Baker Tilly International.

More information

Application for CISM Certification

Application for CISM Certification Application for CISM Certification 4/2015 Requirements to Become a Certified Information Security Manager become a Certified Information Security Manager (CISM), an applicant must: 1. Score a passing grade

More information

& Project Management

& Project Management Event Planning March 2-6, 2009 Washington, DC & Project Management For Administrative Professionals Take Your Career to the Next Level. Learn How to Effectively Execute Projects and Plan First Class Events

More information

G13 USE OF RISK ASSESSMENT IN AUDIT PLANNING

G13 USE OF RISK ASSESSMENT IN AUDIT PLANNING IS AUDITING GUIDELINE G13 USE OF RISK ASSESSMENT IN AUDIT PLANNING The specialised nature of information systems (IS) auditing and the skills necessary to perform such audits require standards that apply

More information

New CFPB mortgage servicing rules present significant challenges for mortgage servicers

New CFPB mortgage servicing rules present significant challenges for mortgage servicers New CFPB mortgage servicing rules present significant challenges for mortgage servicers Prepared by: Jose Vivar, Director, McGladrey LLP 312-634-4394, jose.vivar@mcgladrey.com Michael Sher, Partner, McGladrey

More information

ATTACHMENT 3 SPS PROJECT SENIOR PROGRAM MANAGER (SPM) DUTIES & RESPONSIBILITIES

ATTACHMENT 3 SPS PROJECT SENIOR PROGRAM MANAGER (SPM) DUTIES & RESPONSIBILITIES 1. ROLE DEFINITIONS ATTACHMENT 3 SPS PROJECT SENIOR PROGRAM MANAGER (SPM) DUTIES & RESPONSIBILITIES The purpose of this section is to distinguish among the roles interacting with the SPM obtained through

More information

Addressing Risk in Partner / Contractor Selection and Onboarding. Michael Davidson VP Quality Systems and Compliance March 2014

Addressing Risk in Partner / Contractor Selection and Onboarding. Michael Davidson VP Quality Systems and Compliance March 2014 Addressing Risk in Partner / Contractor Selection and Onboarding Michael Davidson VP Quality Systems and Compliance March 2014 Industry Trends Pfizer Overview Pfizer s Approach Risk Based Robust Due Diligence

More information

Written Information Security Programs: Compliance with the Massachusetts Data Security Regulation

Written Information Security Programs: Compliance with the Massachusetts Data Security Regulation Written Information Security Programs: Compliance with the Massachusetts Data Security Regulation Melissa J. Krasnow, Dorsey & Whitney LLP A Note discussing written information security programs (WISPs)

More information

CORL Dodging Breaches from Dodgy Vendors

CORL Dodging Breaches from Dodgy Vendors CORL Dodging Breaches from Dodgy Vendors Tackling Vendor Security Risk Management in Healthcare Introductions Cliff Baker 20 Years of Healthcare Security experience PricewaterhouseCoopers, HITRUST, Meditology

More information

02 DEPARTMENT OF PROFESSIONAL AND FINANCIAL REGULATION CERTIFIED PUBLIC ACCOUNTANT LICENSE REQUIREMENTS

02 DEPARTMENT OF PROFESSIONAL AND FINANCIAL REGULATION CERTIFIED PUBLIC ACCOUNTANT LICENSE REQUIREMENTS 02-280 Chapter 5 page 1 02 DEPARTMENT OF PROFESSIONAL AND FINANCIAL REGULATION 280 BOARD OF ACCOUNTANCY Chapter 5: CERTIFIED PUBLIC ACCOUNTANT LICENSE REQUIREMENTS SUMMARY: This chapter sets forth: (a)

More information