Data Warehouse Management Final Audit Report Report Nr. 8/13 November 12, 2013

Size: px
Start display at page:

Download "Data Warehouse Management Final Audit Report Report Nr. 8/13 November 12, 2013"

Transcription

1 Data Warehouse Management Final Audit Report Report Nr. 8/13 November 12, 2013 Distribution: To: Acting President & CEO Senior Vice President & Chief Financial Officer Senior Vice President, Business Solutions & Innovation Vice President & Corporate Controller Director, Market Risk Management Director, Business Intelligence Centre Manager, Operations Control Manager, Application Infrastructure Portfolio Delivery Manager, BSD Solution Services CC: Senior Vice President, Corporate Affairs & Secretary Senior Vice President, Human Resources & Communications Senior Vice President, Business Development Senior Vice President, Financing Senior Vice President, Insurance Vice President, Risk Management Office Vice President, Business Intelligence & Innovation Vice President and Chief Information Officer Chief BSD Advisor Director, Planning & External Relations Principal, Office of the Auditor General Director, Office of the Auditor General Audit Team: Adam Stratas Lawrence Di Stefano Allison Lowe Vice President Internal Audit Monica Ryan

2 Table of Contents Introduction... 3 Audit Objectives & Scope... 3 Internal Audit Opinion... 3 Audit Findings & Recommendations... 4 Conclusion... 5 Data Warehouse Management Audit November 12,

3 Introduction In accordance with our 2013 Audit Plan, EDC Internal Audit (IA) performed an audit of EDC s Data Warehouse management process. EDC's Data Warehouse is the source for EDC s customer, risk, financial, and operational information. For example, it provides information for the reporting of risk exposures by country, industry and obligor and information on loan assets and liabilities. The Data Warehouse is comprised of data marts which receive information from source systems or via manual uploads. Users extract data from the data marts for analytical and reporting purposes. Audit Objectives & Scope The objectives of this audit were to evaluate the design and operating effectiveness of controls within the Data Warehouse management process. This included an examination of controls in place to ensure: Changes to the data marts are authorized, tested and include the identification of roll-back plans; All changes are verified by the Operations Control group to ensure they have been approved in accordance with standards; Reconciliations to independent source data are performed where required; and Manual data uploads to data marts are approved. The scope of the audit included seven data marts that are used for significant reporting and/or decision making including Credit Exposure, Corporate Results, Loans Provisioning, Asset Liability Management, CAS, ACBS and Market Risk Management. Internal Audit Opinion In our opinion, the data warehouse management process is Well Controlled 1. In our detailed testing we were able to obtain assurance that the risks inherent in the change management process were being mitigated. Reconciliations to independent source data are performed for data marts where required or compensating controls exist. We also found that the appropriate approvals are in place from the Project Sponsor for all new manual data feeds. Some moderate 2 findings were identified and are described in the following section. 1 Our standard audit opinions are as follows: - Strong Controls: Key controls are effectively designed and operating as intended. Best in class internal controls exist. Objectives of the audited process are most likely to be achieved. - Well Controlled: Key controls are effectively designed and operating as intended. Objectives of the audited process are likely to be achieved. - Opportunities Exist to Improve Controls: One or more key controls do not exist, are not designed properly or are not operating as intended. Objectives of the process may not be achieved. The financial and/or reputation impact to the audited process is more than inconsequential. Timely action is required. - Not Controlled: Multiple key controls do not exist, are not designed properly or are not operating as intended. Objectives of the process are unlikely to be achieved. The financial and/or reputation impact to the audited process is material. Action must follow immediately. 2 The ratings of our audit findings are as follows: - Major: a key control does not exist, is poorly designed or is not operating as intended and the financial and/or reputation risk is more than inconsequential. The process objective to which the control relates is unlikely to be achieved. Corrective action is needed to ensure controls are cost effective and/or process objectives are achieved. - Moderate: a key control does not exist, is poorly designed or is not operating as intended and the financial and/or reputation risk to the process is more than inconsequential. However, a compensating control exists. Corrective action is needed to avoid sole reliance on compensating controls and/or ensure controls are cost effective. - Minor: a weakness in the design and/or operation of a non-key process control. Ability to achieve process objectives is unlikely to be impacted. Corrective action is suggested to ensure controls are cost effective. Data Warehouse Management Audit November 12,

4 Audit Findings & Recommendations 1. Data Warehouse Change Management Process Effective change management controls are important to ensure the on-going reliability and accuracy of the information in the data marts. The responsibility for change management for the data marts is shared amongst the data mart owner, the Technology group and the Operations Control (OC) group. Data mart owners are responsible for initiating changes, conducting user acceptance testing and approving changes while the Technology group is responsible for production of the requested changes. The OC is responsible for verifying all changes to ensure they have been approved in accordance with standards prior to deployment. Given the significance of data marts to reporting and decision making at EDC, we looked at controls to ensure proper testing prior to releasing into production and proper approval of changes. Overall, we found that the data warehouse change management process is being executed in a manner consistent with the change management controls and were able to confirm that key controls were operating. In most cases however, evidence supporting the change had not been stored in the Remedy system which is the repository for the official corporate record. Through substantive testing we were eventually able to find the evidence to support the changes. We recommend that the results of testing be documented according to standard form, contain testing evidence and be uploaded in Remedy to ensure the integrity of the official corporate record. We also recommend that deployment plans, including the roll-back plan section be clearly documented to ensure the involved parties understand the steps to follow in the event there is a fatal flaw with deployment. Rating of Audit Finding - Moderate Action Owner Portfolio Delivery Manager, BSD Solution Services, Manager, Application Infrastructure, Manager, Operations Control Due Dates - All actions to be implemented by Q Reconciliation of Data Marts to Source Data Data marts are refreshed daily with information from the relevant source business applications through an automated interface. However, limitations within some of these business applications have created a need to make changes directly to the data marts through manual updates and/or the application of business rules to information in the data mart. Making changes directly to a data mart creates a risk that its contents may no longer be consistent with information contained within source business applications. Accordingly, our audit included an examination of the controls in place to reconcile data marts to source business applications. A number of data rules are applied to the information in the ALMS data mart and while reasonability tests are performed, there is no process in place to periodically reconcile key values to source applications. Business rules are also applied to information within the CEDM. While a partial reconciliation is being performed, exposures sourced from FIRM are not reconciled to the CEDM. Data Warehouse Management Audit November 12,

5 We recommend that procedures be established to periodically reconcile the ALMS data mart to source systems. We also recommend that procedures be established to periodically reconcile FIRM data to the CEDM. Rating of Audit Finding Moderate Action Owner Director, MRM and Director, BIC Due Dates - All actions to be implemented by Q Conclusion The audit findings and recommendations have been communicated to and agreed by management, who has developed action plans that are scheduled for implementation no later than Q We would like to thank management for their support throughout the audit. Data Warehouse Management Audit November 12,

Payroll Process Final Audit Report Report Nr. 13/12 August 30, 2012

Payroll Process Final Audit Report Report Nr. 13/12 August 30, 2012 Payroll Process Final Audit Report Report Nr. 13/12 August 30, 2012 Distribution: To: President & CEO Senior Vice President & Chief Financial Officer Senior Vice President, Human Resources & Communications

More information

Trade Finance Obligations (TFO) Credit Granting, Underwriting and Monitoring Final Audit Report Report Nr. 19/13 May 1, 2014

Trade Finance Obligations (TFO) Credit Granting, Underwriting and Monitoring Final Audit Report Report Nr. 19/13 May 1, 2014 Trade Finance Obligations (TFO) Credit Granting, Underwriting and Monitoring Final Audit Report Report Nr. 19/13 May 1, 2014 Distribution: To: CC: President & CEO Senior Vice President & Chief Financial

More information

Financial Statement Closing Process Audit Report Report Nr. 3/14 August 26, 2014

Financial Statement Closing Process Audit Report Report Nr. 3/14 August 26, 2014 Distribution: Financial Statement Closing Process Audit Report Report Nr. 3/14 August 26, 2014 To: President & CEO Senior Vice President & Chief Financial Officer Vice President & Corporate Controller

More information

Company Information Management (CIM) Audit Report Report # 2/15 March 11, 2015

Company Information Management (CIM) Audit Report Report # 2/15 March 11, 2015 Distribution: Company Information Management (CIM) Audit Report Report # 2/15 March 11, 2015 To: President & CEO Senior Vice President & Chief Financial Officer Senior Vice President, Business Solutions

More information

Comparison of ISA 330 with AS-402 Objectives and Requirements Only

Comparison of ISA 330 with AS-402 Objectives and Requirements Only Comparison of ISA 330 with AS-402 Objectives and Requirements Only International Standard on Auditing 330 (Redrafted): The Auditor s INTRODUCTION Scope of this ISA 1. This International Standard on Auditing

More information

Module 2 IS Assurance Services

Module 2 IS Assurance Services Module 2 IS Assurance Services Chapter 2: IS Audit In Phases Phase 2: Part: 2 of 3 CA A.Rafeq 1 Chapter 2: Agenda Chapter 2: IS Audit in Phases Phase1: Plan Phase 2: Execute Phase 3: Report 2 Phase 2:

More information

Chapter 18 Auditing Investments and Cash Balances

Chapter 18 Auditing Investments and Cash Balances Chapter 18 Auditing Investments and Cash Balances General Considerations Cash balances include undeposited receipts on hand, cash in bank in unrestricted accounts, and imprest accounts such as petty cash

More information

OBSERVATIONS FROM 2010 INSPECTIONS OF DOMESTIC ANNUALLY INSPECTED FIRMS REGARDING DEFICIENCIES IN AUDITS OF INTERNAL CONTROL OVER FINANCIAL REPORTING

OBSERVATIONS FROM 2010 INSPECTIONS OF DOMESTIC ANNUALLY INSPECTED FIRMS REGARDING DEFICIENCIES IN AUDITS OF INTERNAL CONTROL OVER FINANCIAL REPORTING 1666 K Street, N.W. Washington, DC 20006 Telephone: (202) 207-9100 Facsimile: (202) 862-8430 www.pcaobus.org OBSERVATIONS FROM 2010 INSPECTIONS OF DOMESTIC ANNUALLY INSPECTED FIRMS REGARDING DEFICIENCIES

More information

FISCAL PLAN RESPONSE TO THE AUDITOR GENERAL

FISCAL PLAN RESPONSE TO THE AUDITOR GENERAL Government FISCAL PLAN RESPONSE TO THE AUDITOR GENERAL OCTOBER 2015 127 TABLE OF CONTENTS RESPONSE TO THE AUDITOR GENERAL October 2015.... 129 128 RESPONSE TO THE AUDITOR GENERAL FISCAL PLAN 2016 19 RESPONSE

More information

KPMG LLP Suite 12000 1801 K Street, NW Washington, DC 20006 Independent Auditors Report on Internal Control Over Financial Reporting and on Compliance and Other Matters Based on an Audit of Financial Statements

More information

Risk Management Policy

Risk Management Policy Risk Management Policy June 2015 1 2 Contents 1. Policy Objectives and Background... 4 1.1. Policy Background... 4 1.2. Policy Objective... 4 1.3. Policy Sponsor and Maintenance... 4 2. Risk Types and

More information

CORPORATE GOVERNANCE GUIDELINES

CORPORATE GOVERNANCE GUIDELINES As approved May 1, 2015. CORPORATE GOVERNANCE GUIDELINES I. Introduction The Board of Directors (the Board ) of Fidelity National Financial, Inc. (the Company ), acting on the recommendation of its Corporate

More information

SESSION 3 AUDIT PLANNING

SESSION 3 AUDIT PLANNING SESSION 3 AUDIT PLANNING Learning Objectives: identify and explain the need for planning an audit identify and describe the contents of the overall audit strategy and the audit plan explain the difference

More information

Internal Audit Guidelines Market Risk Management. March 2012

Internal Audit Guidelines Market Risk Management. March 2012 Internal Audit Guidelines Market Risk Management March 2012 The Audit Guidelines (the "guidelines") are intended to provide members of the Internal Auditors Society ( IAS ), an affiliate of the Securities

More information

Audit, Risk Management and Compliance Committee Charter

Audit, Risk Management and Compliance Committee Charter Audit, Risk Management and Compliance Committee Charter Woolworths Limited Adopted by the Board on 27 August 2013 page 1 1 Introduction This Charter sets out the responsibilities, structure and composition

More information

PRUDENTIAL FINANCIAL, INC. CORPORATE GOVERNANCE PRINCIPLES AND PRACTICES

PRUDENTIAL FINANCIAL, INC. CORPORATE GOVERNANCE PRINCIPLES AND PRACTICES PRUDENTIAL FINANCIAL, INC. CORPORATE GOVERNANCE PRINCIPLES AND PRACTICES A. THE ROLE OF THE BOARD OF DIRECTORS 1. Direct the Affairs of the Corporation for the Benefit of Shareholders The Prudential board

More information

CHAPTER 7 PLANNING THE AUDIT: IDENTIFYING AND RESPONDING TO THE RISKS OF MATERIAL MISSTATEMENT

CHAPTER 7 PLANNING THE AUDIT: IDENTIFYING AND RESPONDING TO THE RISKS OF MATERIAL MISSTATEMENT A U D I T I N G A RISK-BASED APPROACH TO CONDUCTING A QUALITY AUDIT 9 th Edition Karla M. Johnstone Audrey A. Gramling Larry E. Rittenberg CHAPTER 7 PLANNING THE AUDIT: IDENTIFYING AND RESPONDING TO THE

More information

EXHIBIT A THE TIMKEN COMPANY BOARD OF DIRECTORS GENERAL POLICIES AND PROCEDURES

EXHIBIT A THE TIMKEN COMPANY BOARD OF DIRECTORS GENERAL POLICIES AND PROCEDURES 2014 EXHIBIT A THE TIMKEN COMPANY BOARD OF DIRECTORS GENERAL POLICIES AND PROCEDURES The primary duty of the Board of Directors (the Board ) is to promote the best interests of the Company through overseeing

More information

Board Risk & Compliance Committee Charter

Board Risk & Compliance Committee Charter Board Risk & Compliance Charter 10 December 2015 PURPOSE 1) The purpose of the Westpac Banking Corporation (Westpac) Board Risk & Compliance () is to assist the Board of Westpac (Board) as the Board oversees

More information

INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 315

INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 315 INTERNATIONAL STANDARD ON AUDITING (UK AND IRELAND) 315 IDENTIFYING AND ASSESSING THE RISKS OF MATERIAL MISSTATEMENT THROUGH UNDERSTANDING THE ENTITY AND ITS ENVIRONMENT (Effective for audits of financial

More information

Select the right configuration management database to establish a platform for effective service management.

Select the right configuration management database to establish a platform for effective service management. Service management solutions Buyer s guide: purchasing criteria Select the right configuration management database to establish a platform for effective service management. All business activities rely

More information

Office of the Police and Crime Commissioner for Avon and Somerset and Avon and Somerset Constabulary

Office of the Police and Crime Commissioner for Avon and Somerset and Avon and Somerset Constabulary Office of the Police and Crime Commissioner for Avon and Somerset and Avon and Somerset Constabulary Internal Audit Report () FINAL Risk Management: Follow Up of Previous Internal Audit Recommendations

More information

COSO 2013 Internal Control Integrated Framework FRED J. PETERSON, PARTNER MOSS ADAMS LLP

COSO 2013 Internal Control Integrated Framework FRED J. PETERSON, PARTNER MOSS ADAMS LLP COSO 2013 Internal Control Integrated Framework FRED J. PETERSON, PARTNER MOSS ADAMS LLP Disclaimer The material appearing in this presentation is for informational purposes only and should not be construed

More information

Internal Audit Practice Guide

Internal Audit Practice Guide Internal Audit Practice Guide Continuous Auditing Office of the Comptroller General, Internal Audit Sector May 2010 Table of Contents Purpose...1 Background...1 Definitions...2 Continuous Auditing Professional

More information

LSE Internal Audit procedures (to be read in conjunction with the attached flowchart)

LSE Internal Audit procedures (to be read in conjunction with the attached flowchart) LSE Internal Audit procedures (to be read in conjunction with the attached flowchart) Audit activity is governed by the HEFCE Code of Audit Practice. 1. Determining audit activity a) Audits will be conducted

More information

Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement

Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement Understanding the Entity and Its Environment 267 AU-C Section 315 Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement Source: SAS No. 122; SAS No. 128. Effective

More information

The PNC Financial Services Group, Inc. Business Continuity Program

The PNC Financial Services Group, Inc. Business Continuity Program The PNC Financial Services Group, Inc. Business Continuity Program 1 Content Overview A. Introduction Page 3 B. Governance Model Page 4 C. Program Components Page 4 Business Impact Analysis (BIA) Page

More information

PMS 288 Blue or CMYK = C100-M85-Y0-C43 PMS 1255 Ochre / Yellow or CMYK = C0-M35-Y85-C30. Tax Technology

PMS 288 Blue or CMYK = C100-M85-Y0-C43 PMS 1255 Ochre / Yellow or CMYK = C0-M35-Y85-C30. Tax Technology PMS 288 Blue or CMYK = C100-M85-Y0-C43 PMS 1255 Ochre / Yellow or CMYK = C0-M35-Y85-C30 Tax Technology PO Ryan has provided BASF outstanding value by recovering overpaid taxes while identifying and implementing

More information

Communicating Internal Control Related Matters Identified in an Audit

Communicating Internal Control Related Matters Identified in an Audit Communicating Internal Control 1843 AU Section 325 Communicating Internal Control Related Matters Identified in an Audit (Supersedes SAS No. 112.) Source: SAS No. 115. Effective for audits of financial

More information

Audit Quality Thematic Review

Audit Quality Thematic Review Thematic Review Professional discipline Financial Reporting Council December 2014 Audit Quality Thematic Review The audit of loan loss provisions and related IT controls in banks and building societies

More information

Version: 5 Date: October 6, 2011

Version: 5 Date: October 6, 2011 Consent Order Response - Management Information Systems (MIS) (Section 11) Consent Order Response Management Information Systems (Consent Order Section 11) Version: 5 Date: October 6, 2011 Table of Contents

More information

Internal Controls over Financial Reporting. Integrating in Business Processes & Key Lessons learned

Internal Controls over Financial Reporting. Integrating in Business Processes & Key Lessons learned Internal Controls over Financial Reporting Integrating in Business Processes & Key Lessons learned Introduction Stephen McIntyre, CA, CPA (Illinois) Senior Manager at Ernst & Young in the Risk Advisory

More information

MINNESOTA MUTUAL COMPANIES, INC. Guidelines of the Audit Committee of the Board of Directors

MINNESOTA MUTUAL COMPANIES, INC. Guidelines of the Audit Committee of the Board of Directors MINNESOTA MUTUAL COMPANIES, INC. Guidelines of the Audit Committee of the Board of Directors I. Audit Committee Purpose The Audit Committee is appointed by the Board of Directors to assist the Board in

More information

Assessing Credit Risk

Assessing Credit Risk Assessing Credit Risk Objectives Discuss the following: Inherent Risk Quality of Risk Management Residual or Composite Risk Risk Trend 2 Inherent Risk Define the risk Identify sources of risk Quantify

More information

How To Save Money At The University Of California

How To Save Money At The University Of California THE UNIVERSITY OF CALIFORNIA ERM PROGRAM REDUCES THE COSTS OF RISK AND BORROWING BY JOHN BUGALLA AND KRISTINA NARVAEZ In December 2005, the University of California s Department of Risk Management was

More information

Auditor's Objective in an Audit of Internal Control Over Financial Reporting

Auditor's Objective in an Audit of Internal Control Over Financial Reporting November 21, 2003 Office of the Secretary Public Company Accounting Oversight Board 1666 K Street, N.W. Washington, D.C. 20006-2803 Re: PCAOB Rulemaking Docket No. 008 Proposed Auditing Standard An Audit

More information

FFIEC Cybersecurity Assessment Tool

FFIEC Cybersecurity Assessment Tool Overview In light of the increasing volume and sophistication of cyber threats, the Federal Financial Institutions Examination Council 1 (FFIEC) developed the Cybersecurity Tool (), on behalf of its members,

More information

Transforming Internal Audit: A Maturity Model from Data Analytics to Continuous Assurance

Transforming Internal Audit: A Maturity Model from Data Analytics to Continuous Assurance ADVISORY SERVICES Transforming Internal Audit: A Model from Data Analytics to Assurance kpmg.com Contents Executive summary 1 Making the journey 2 The value of identifying maturity levels 4 Internal audit

More information

What are substantive tests?

What are substantive tests? Session Overview Test 3 topics Tut letter 104: Substantive procedures: My approach to this session General principles, when it comes to substantive procedures Developing frameworks for answering substantive

More information

Auditing Derivative Instruments, Hedging Activities, and Investments in Securities 1

Auditing Derivative Instruments, Hedging Activities, and Investments in Securities 1 Auditing Derivative Instruments 1915 AU Section 332 Auditing Derivative Instruments, Hedging Activities, and Investments in Securities 1 (Supersedes SAS No. 81.) Source: SAS No. 92. See section 9332 for

More information

Report on. Office of the Superintendent of Financial Institutions. Corporate Services Sector Human Resources Payroll. April 2010

Report on. Office of the Superintendent of Financial Institutions. Corporate Services Sector Human Resources Payroll. April 2010 Report on Office of the Superintendent of Financial Institutions Corporate Services Sector Human Resources Payroll April 2010 Table of Contents 1. Background... 3 2. Audit Objectives, Scope and Approach...

More information

Audit Toolbox part 1: Property, Plant and Equipment & Cash

Audit Toolbox part 1: Property, Plant and Equipment & Cash Audit Toolbox part 1: Property, Plant and Equipment & Cash Vienna, February 12, 2014 Atanasko Atanasovski, Consultant, CFRR Substantive testing - Property, plant and equipment Key areas when testing tangible

More information

How To Set Up A Committee To Check On Cit

How To Set Up A Committee To Check On Cit CIT Group Inc. Charter of the Audit Committee of the Board of Directors Adopted: October 22, 2003 Last Amended: April 20, 2015 I. PURPOSE The purpose of the Committee is to assist the Board in fulfilling

More information

2. Auditing. 2.1. Objective and Structure. 2.2. What Is Auditing?

2. Auditing. 2.1. Objective and Structure. 2.2. What Is Auditing? - 4-2. Auditing 2.1. Objective and Structure The objective of this chapter is to introduce the background information on auditing. In section 2.2, definitions of essential terms as well as main objectives

More information

HUMAN RESOURCES PAYROLL

HUMAN RESOURCES PAYROLL HUMAN RESOURCES New Hires, Promotions, PAYROLL and Terminations City of Tulsa Internal Auditing November 2013 HUMA AN RESOURCES PAYROLL New Hires, Promot tions And Terminations City of Tulsa Internal Auditing

More information

Internal Control Systems and Maintenance of Accounting and Other Records for Interactive Gaming & Interactive Wagering Corporations (IGIWC)

Internal Control Systems and Maintenance of Accounting and Other Records for Interactive Gaming & Interactive Wagering Corporations (IGIWC) Internal Control Systems and Maintenance of Accounting and Other Records for Interactive Gaming & Interactive Wagering Corporations (IGIWC) 1 Introduction 1.1 Section 316 (4) of the International Business

More information

MICHIGAN AUDIT REPORT OFFICE OF THE AUDITOR GENERAL. Doug A. Ringler, C.P.A., C.I.A. AUDITOR GENERAL ENTERPRISE DATA WAREHOUSE

MICHIGAN AUDIT REPORT OFFICE OF THE AUDITOR GENERAL. Doug A. Ringler, C.P.A., C.I.A. AUDITOR GENERAL ENTERPRISE DATA WAREHOUSE MICHIGAN OFFICE OF THE AUDITOR GENERAL AUDIT REPORT PERFORMANCE AUDIT OF THE ENTERPRISE DATA WAREHOUSE DEPARTMENT OF TECHNOLOGY, MANAGEMENT, AND BUDGET August 2014 Doug A. Ringler, C.P.A., C.I.A. AUDITOR

More information

Public Sector Pension Investment Board

Public Sector Pension Investment Board Public Sector Pension Investment Board Office of the Auditor General of Canada Bureau du vérificateur général du Canada Ce document est également publié en français. Her Majesty the Queen in Right of Canada,

More information

Vice President Sales Operations Job Description

Vice President Sales Operations Job Description SALES FORCE JOB DESCRIPTIONS Vice President Sales Operations Job Description The Sales Management Association +1 312 278-3356 www.salesmanagement.org 2008 The Sales Management Association. All Rights Reserved.

More information

October 20, 2015. Sincerely. Anthony Chavez, CIA, CGAP, CRMA Director, Internal Audit Division

October 20, 2015. Sincerely. Anthony Chavez, CIA, CGAP, CRMA Director, Internal Audit Division Internal Audit Annual Report Fiscal Year 2015 October 20, 2015 Honorable Greg Abbott, Governor Members of the Legislative Budget Board Members of the Sunset Advisory Commission Mr. John Keel, CPA, State

More information

Ethics and Compliance Training

Ethics and Compliance Training www.pwc.com Ethics and Compliance Training Keep Up Your Dukes - Benchmarking and Maintaining Your System April 1, 2014 Ethics and Compliance Keep Up Your Dukes - Benchmarking and Maintaining Your System

More information

Enterprise Data Quality Dashboards and Alerts: Holistic Data Quality

Enterprise Data Quality Dashboards and Alerts: Holistic Data Quality Enterprise Data Quality Dashboards and Alerts: Holistic Data Quality Jay Zaidi Bonnie O Neil (Fannie Mae) Data Governance Winter Conference Ft. Lauderdale, Florida November 16-18, 2011 Agenda 1 Introduction

More information

Auditing Applications. ISACA Seminar: February 10, 2012

Auditing Applications. ISACA Seminar: February 10, 2012 Auditing Applications ISACA Seminar: February 10, 2012 Planning Objectives Mapping Controls Functionality Tests Complications Financial Assertions Tools Reporting AGENDA 2 PLANNING Consideration / understanding

More information

Part A OVERVIEW...1. 1. Introduction...1. 2. Applicability...2. 3. Legal Provision...2. Part B SOUND DATA MANAGEMENT AND MIS PRACTICES...

Part A OVERVIEW...1. 1. Introduction...1. 2. Applicability...2. 3. Legal Provision...2. Part B SOUND DATA MANAGEMENT AND MIS PRACTICES... Part A OVERVIEW...1 1. Introduction...1 2. Applicability...2 3. Legal Provision...2 Part B SOUND DATA MANAGEMENT AND MIS PRACTICES...3 4. Guiding Principles...3 Part C IMPLEMENTATION...13 5. Implementation

More information

Regulatory Compliance Management (RCM) (formerly Legislative Compliance Management (LCM))

Regulatory Compliance Management (RCM) (formerly Legislative Compliance Management (LCM)) Guideline Subject: Category: (RCM) (formerly Legislative Compliance Management (LCM)) Sound Business & Financial Practices No: E-13 Date: November 2014 I. Purpose and Scope of the Guideline The purpose

More information

The Role of the BI Competency Center in Maximizing Organizational Performance

The Role of the BI Competency Center in Maximizing Organizational Performance The Role of the BI Competency Center in Maximizing Organizational Performance Gloria J. Miller Dr. Andreas Eckert MaxMetrics GmbH October 16, 2008 Topics The Role of the BI Competency Center Responsibilites

More information

Note the Chief Internal Auditor s findings to date and gain assurance from Officers that key issues raised are being addressed.

Note the Chief Internal Auditor s findings to date and gain assurance from Officers that key issues raised are being addressed. Agenda Item No: 9 To: Joint Audit Committee Date: 24 September 2014 By: Chief Internal Auditor Title: Internal Audit Update Report 2014-15 Purpose of Report: The purpose of this report is to give an opinion

More information

Aberdeen City Council IT Asset Management

Aberdeen City Council IT Asset Management Aberdeen City Council IT Asset Management Internal Audit Report 2014/2015 for Aberdeen City Council January 2015 Terms or reference agreed 4 weeks prior to fieldwork Target Dates per agreed Actual Dates

More information

CI FINANCIAL CORP. BOARD OF DIRECTORS MANDATE. As of August 4, 2016

CI FINANCIAL CORP. BOARD OF DIRECTORS MANDATE. As of August 4, 2016 CI FINANCIAL CORP. BOARD OF DIRECTORS MANDATE As of August 4, 2016 The Board of Directors of CI Financial Corp. (the Company ) is responsible for the stewardship of the Company and in that regard has the

More information

Board of Directors Charter and Corporate Governance Guidelines

Board of Directors Charter and Corporate Governance Guidelines INTRODUCTION The Board of Directors (the Board ) of Molson Coors Brewing Company (the Company ) has developed and adopted this set of corporate governance principles and guidelines (the Guidelines ) to

More information

Eclipx Group Limited Risk Management Policy

Eclipx Group Limited Risk Management Policy Eclipx Group Limited Risk Management Policy Date approved: 26 March 2015 Table of Contents 1. Background... 3 1.1 Overview... 3 1.2 Purpose... 3 1.3 Board responsibility... 3 2. Key principles and concepts...

More information

Corporate Governance Principles

Corporate Governance Principles Corporate Governance Principles I. Purpose These Corporate Governance Principles, adopted by the Board of Directors of the Company, together with the charters of the Audit Committee, the Compensation Committee,

More information

TREASURY INSPECTOR GENERAL FOR TAX ADMINISTRATION

TREASURY INSPECTOR GENERAL FOR TAX ADMINISTRATION TREASURY INSPECTOR GENERAL FOR TAX ADMINISTRATION Improvements Are Needed to Better Ensure That Refunds Claimed on Potentially Fraudulent Tax Returns Are Not Erroneously Released November 12, 2015 Reference

More information

GOVERNANCE AND MANAGEMENT OF CITY COMPUTER SOFTWARE NEEDS IMPROVEMENT. January 7, 2011

GOVERNANCE AND MANAGEMENT OF CITY COMPUTER SOFTWARE NEEDS IMPROVEMENT. January 7, 2011 APPENDIX 1 GOVERNANCE AND MANAGEMENT OF CITY COMPUTER SOFTWARE NEEDS IMPROVEMENT January 7, 2011 Auditor General s Office Jeffrey Griffiths, C.A., C.F.E. Auditor General City of Toronto TABLE OF CONTENTS

More information

Blue Cross and Blue Shield of North Carolina Corporate Governance Guidelines

Blue Cross and Blue Shield of North Carolina Corporate Governance Guidelines Blue Cross and Blue Shield of North Carolina Corporate Governance Guidelines Over the course of Blue Cross and Blue Shield of North Carolina s ( BCBSNC or the Company ) history, the Board of Trustees (the

More information

Guide to the Sarbanes-Oxley Act: IT Risks and Controls. Frequently Asked Questions

Guide to the Sarbanes-Oxley Act: IT Risks and Controls. Frequently Asked Questions Guide to the Sarbanes-Oxley Act: IT Risks and Controls Frequently Asked Questions Table of Contents Page No. Introduction.......................................................................1 Overall

More information

COMMODITIES MANAGEMENT SOFTWARE

COMMODITIES MANAGEMENT SOFTWARE COMMODITIES MANAGEMENT SOFTWARE Measuring and managing risk from mine to market TIME FOR A CHANGE The global commodities markets are becoming increasingly volatile and complex. Rapid price and exchange

More information

FINANCIAL MANAGEMENT POLICIES AND PROCEDURES

FINANCIAL MANAGEMENT POLICIES AND PROCEDURES FINANCIAL MANAGEMENT POLICIES AND PROCEDURES SAMPLE 1. GENERAL PURPOSE The purpose of these policies is to establish guidelines for developing financial goals and objectives, making financial decisions,

More information

Basic Securities Reconciliation for the Buy Side

Basic Securities Reconciliation for the Buy Side Basic Securities Reconciliation for the Buy Side INTRODUCTION This paper focuses on the operational control requirements of a buy-side securities trading firm with particular reference to post trade reconciliation.

More information

Environmental Protection Agency Clean Water and Drinking Water State Revolving Funds ARRA Program Audit

Environmental Protection Agency Clean Water and Drinking Water State Revolving Funds ARRA Program Audit Environmental Protection Agency Clean Water and Drinking Water State Revolving Funds ARRA Program Audit Audit Period: December 1, 2009 to February 12, 2010 Report number Issuance date: March 9, 2010 Contents

More information

Internal Audit Testing and Sampling Techniques. Chartered Institute of Internal Auditors May 2014

Internal Audit Testing and Sampling Techniques. Chartered Institute of Internal Auditors May 2014 Internal Audit Testing and Sampling Techniques Chartered Institute of Internal Auditors May 2014 Controls Testing Slide 1 Testing Priorities Risk B1 Risk A1 Risk B2 Risk A2 Risk C2 Risk C1 Controls testing

More information

Managing GST with data analytics

Managing GST with data analytics www.pwc.com Managing GST with data analytics Adrian Abbott Partner, Australia Philippe Norre Global ITX Compliance Technology Leader, UK Agenda Indirect tax function of the future (and predictions) Data

More information

Saxo Capital Markets CY Limited

Saxo Capital Markets CY Limited Saxo Capital Markets CY Limited DISCLOSURES IN ACCORDANCE WITH THE REGULATION FOR THE CAPITAL REQUIREMENTS OF INVESTMENT FIRMS FOR THE YEAR ENDED 31 DECEMBER 2014 MAY 2015 CONTENTS 1. GENERAL INFORMATION

More information

How To Audit A Company

How To Audit A Company INTERNATIONAL STANDARD ON AUDITING 315 IDENTIFYING AND ASSESSING THE RISKS OF MATERIAL MISSTATEMENT THROUGH UNDERSTANDING THE ENTITY AND ITS ENVIRONMENT (Effective for audits of financial statements for

More information

WOODWARD INC. DIRECTOR GUIDELINES

WOODWARD INC. DIRECTOR GUIDELINES WOODWARD INC. DIRECTOR GUIDELINES The Board of Directors (the Board ) of Woodward Governor Company (the Company ) has adopted the following Director Guidelines. These Guidelines should be interpreted in

More information

TransAlta Corporation Energy Trading Compliance Program Assessment

TransAlta Corporation Energy Trading Compliance Program Assessment www.pwc.com/ca Energy Trading Compliance Program Assessment Disclaimer We prepared this report based on information available at the time of its preparation. Our observations and conclusions are based

More information

Data Quality for BASEL II

Data Quality for BASEL II Data Quality for BASEL II Meeting the demand for transparent, correct and repeatable data process controls Harte-Hanks Trillium Software www.trilliumsoftware.com Corporate Headquarters + 1 (978) 436-8900

More information

SUBCONTRACTOR PRE-QUALIFICATION APPLICATION

SUBCONTRACTOR PRE-QUALIFICATION APPLICATION APPLICATION SUBCONTRACTOR IDENTITY Date Submitted Company Name Complete Address Phone Number Contact Name Federal Tax ID # DUNS # Fax Number Email Address NAICS Code States Registered to do Business Include

More information