Internal Control Systems
|
|
|
- Alexis Skinner
- 10 years ago
- Views:
Transcription
1 Business and Information Process Rules, Risks, and Controls Internal Control Systems Internal controls encompass a set of rules, policies, and procedures an organization implements to provide reasonable assurance that: t (a) its financial reports are reliable, (b) its operations are effective and efficient, and (c) its activities comply with applicable laws and regulations. These represent the three main objectives of the internal control system. The organization's board of directors, management, and other personnel are responsible for the internal control system. 1
2 Control Environment Control environment sets the tone of the organization, which influences the control consciousness of its people. This foundation provides discipline i and structure t upon which h all other components of internal control are built. The control environment includes the following areas: Integrity and ethical behavior Commitment to competence Board of directors and audit committee participation Management philosophy h and operating style Organization structure Assignment of authority and responsibility Human resource policies and practices Risk Assessment Risk assessment identifies and analyzes the relevant risks associated with the organization achieving its objectives. Risk assessment forms the basis for determining what risks need to be controlled and the controls required to manage them. 2
3 Control Activities Control activities are the policies and procedures the organization uses to ensure that necessary actions are taken to minimize risks associated with achieving its objectives. Controls have various objectives and may be applied at various organizational and functional levels. Control Usage - Prevent, Detect, and Correct Preventive controls focus on preventing an error or irregularity. Detective controls focus on identifying when an error or irregularity has occurred. Corrective controls focus on recovering from, repairing the damage from, or minimizing the cost of an error or irregularity. Control Activities Physical controls include security over the assets themselves, limiting access to the assets to only authorized people, and periodically reconciling the quantities on hand with the quantities recorded in the organization s records. Information processing controls are used to check accuracy, completeness, and authorization of transactions. General controls cover data center operations, systems software acquisition i i and maintenance, access security, and application systems development and maintenance. Application controls apply to the processing of a specific application, like running a computer program to prepare employee's payroll checks each month. 3
4 Performance Reviews Control Activities Performance reviews are any reviews of an entity s performance. Some of the more common reviews: compare actual data to budgeted data or prior period data, operating data to financial data, and data within and across various units, subdivisions, or functional areas of the organization. Information and Communication The information system consists of the methods and records used to record, maintain, and report the events of an entity, as well as to maintain iti accountability tbilit for the related ltdassets, liabilities, and equity. Requirements: Identify and record all business events on a timely basis. Describe each event in sufficient detail. Measure the proper p monetary value of each event. Determine the time period in which events occurred. Present properly the events and related disclosures in the financial statements. 4
5 Information and Communication The communication aspect of this component deals with providing an understanding of individual roles and responsibilities pertaining i to internal controls. People should understand how their activities relate to the work of others and how exceptions should be reported to higher levels of management. Open communication channels help insure that exceptions are reported and acted upon. Communication also includes the policy manuals, accounting manuals, and financial reporting manuals. Monitoring Monitoring is the process of assessing the quality of internal control performance over time. Monitoring involves assessing the design and operation of controls on a timely basis and taking corrective actions as needed. This process is accomplished by ongoing monitoring activities by management as they question reports that differ significantly from their knowledge of operations. 5
6 Traditional Internal Control Environment Control Environment Accounting System Control Procedures Sub-elements of Control Objectives That Categories of Control Environment Must Be Satisfied Procedures Management philosophy and operating style Organizational structure Audit Committee Methods to communicate the assignment of authority and responsibility Management control methods Internal Audit function Personnel policies and procedures Validity Authorization Completeness Valuation Classification Timing Posting and summarization Adequate separation of duties Proper authorization of transactions and activities Adequate documents and records Physical control over assets and records Independent checks on performance Traditional Control Philosophy Much of the traditional accounting and auditing control philosophy h has been based on the following concepts and practices: Extensive use of hard-copy documents to capture information about accounting transactions, and frequent printouts of intermediate processes as accounting transactions flow through h the accounting process. Separation of duties and responsibilities so the work of one person checks the work of another person. Duplicate recording of accounting data and extensive reconciliation of the duplicate data. Accountants who view their role primarily as one of independence, reactive, and detective. Heavy reliance on a year-end review of financial statements and extensive use of long checklists of required controls. Greater emphasis given to internal control than to operational efficiency. Avoidance or tolerance toward advances in information technology. 6
7 Control Concept #1 The perspective of people who develop and evaluate the controls Accountants must become control consultants with a real-time, proactive, control philosophy that focuses first on preventing business risks, then on detecting and correcting errors and irregularities. Control Concept #2: The relationship between risks and specific control procedures Use modern IT to achieve the objectives of recording, maintaining, i i and producing outputs of accurate, complete, and timely information by: Evaluating the risks associated with the updated mode of collecting, storing, and reporting data, and Designing specific control procedures that help control the risks applicable to the new design. 7
8 Control Concept #3 The ability to achieve control and reengineering objectives Tailor control procedures to the business process so as to improve the quality of the internal control system while enhancing organizational effectiveness. Control Concept #4 The relationship between information technology and risk Accountants must become familiar with IT capabilities and risks and recognize the opportunities IT provides to prevent, detect, and correct errors and irregularities as the business events are executed. 8
9 Control Concept #5 The complexity of information processing Processes that make extensive use of paper pp inputs and outputs and visible records of intermediate processes are not less risky than more "complex," highly-integrated systems. "Complex integrated systems can be less risky provided they are properly constructed with the right controls built into them. Control Concept #6 The need for visible information An electronic audit trail is as effective as, or more effective than, a paper based audit trail. The audit trail in an integrated, event-based system is often shorter and less complex than a traditional paper based audit trail. 9
10 Control Concept #7 The time to design and implement controls Be actively involved during the design and development stages of a new or modified d information system to help identify and implement controls into the system. Control Concept #8 The size of the organization Small organizations can have strong internal control systems by integrating ti controls into the information system and using IT to monitor and control the business and information processes. 10
11 Developing an Updated Control Philosophy with an IT Perspective Hardcopy documents should largely be eliminated. They are costly to both develop and maintain and they provide little benefit over an electronic version of the same information. In fact, because of size, storage cost, and inaccessibility, paper documents are becoming a liability. Separation of duties continues to be a relevant concept, but IT can be used as a substitute for some of the functions normally assigned to a separate individual. Much of the control that has been spread across several individuals can now be built into the information system and monitored by information technology. Developing an Updated Control Philosophy with an IT Perspective Duplicate recordings of business event data and reconciliation should be eliminated. Recording and maintaining the duplicate data, and performing the reconciliation is costly and unnecessary in an IT environment. Accountants should become consultants with a realtime, proactive, control philosophy. Much greater emphasis should ldbe placed on preventing business risks, than on detecting and correcting errors and irregularities. 11
12 Developing an Updated Control Philosophy with an IT Perspective Greater emphasis must be placed on implementing controls during the design and development of information systems and on more auditor involvement in verifying the accuracy of the systems themselves. Although the annual audit of the financial statements will continue to be a valuable service performed by external auditors, its relative importance will diminish as greater importance is placed on verifying the accuracy of the system itself and providing real-time reporting assurance services. Developing an Updated Control Philosophy with an IT Perspective Greater emphasis must be placed on enhancing organizational effectiveness and controls must be adapted to maintain strong internal controls. This does away with the checklist mentality and requires an evaluation of specific risks and the creation of controls to address those specific risks. Information technology should be exploited to its fullest extent. This requires a concerted effort to understand both the capabilities and risks of IT. Modern IT should be used much more extensively to support decision processes, conduct business events, perform information processes, and prevent and detect errors and irregularities. 12
13 The Process of Developing a System of Internal Controls If you develop a control philosophy based on the key control concepts identified in this chapter, the process of developing an internal control system is rather straightforward: Identify the organization's objectives, processes, and risks and determine risk materiality. Identify the internal control system including rules, processes, and procedures to control material risks. Develop, test, and implement the internal control system. Monitor and refine the system. Risks and Controls in an Event- Driven System An event-driven system provides a framework for classifying risks that builds upon what you have already learned about decision, business, and information processes. Acquiring the ability to identify risk requires knowledge of the business organization. Business events trigger three types of information processes: Recording event data (e.g., recording the sale of merchandise). Maintaining resource, agent, and location data (e.g., updating a customer s address). Reporting useful information (preparing a report on sales by product). 13
14 Operating Event Risks Business event risk results in errors and irregularities having one or more of the following characteristics: A business event: occurring at the wrong time or sequence. occurring without proper authorization. involving the wrong internal agent. involving the wrong external agent. involving the wrong resource. involving the wrong amount of resource. occurring at the wrong location. Taxonomy of Business and Information Process Risk Organization Risk Business Event Risk Information Processing Risk System Resource Risks Resources Events Agents Recording Processes Maintenance Processes Reporting Processes Development and Operation Access Systems Failure Data Loss Locations Human Behavior 14
15 Information Processing Risks Recording risks include recording incomplete, inaccurate, or invalid data about a business event. Incomplete data results in not having all the relevant characteristics about an operating event. Inaccuracies arise from recording data that do not accurately represent the event. Invalid refers to data that are recorded about a fabricated event. Maintaining risks are essentially the same as those for recording. The only difference is the data relates to resources, agents, and locations rather than to operating events. The risk relating to maintenance processes is that changes with respect to the organization's resources, agents, and locations will go either undetected or unrecorded (e.g., customer or employee moves, customer declares bankruptcy, or location is destroyed through a natural disaster). Reporting risks include data that are improperly accessed, improperly summarized, provided to unauthorized individuals, or not provided in a timely manner. 15
10-1. Auditing Business Process. Objectives Understand the Auditing of the Enteties Business. Process
10-1 Auditing Business Process Auditing Business Process Objectives Understand the Auditing of the Enteties Business Process Identify the types of transactions in different Business Process Asses Control
Chapter 15: Accounts Payable and Purchases
Accounting Research Manager - Audit Private Accounting Research Manager Miller Interpretations and Other Resources Knowledge-Based Audit Procedures Chapter 15: Accounts Payable and Purchases Chapter 15:
KANSAS CITY, MISSOURI RESPONSES TO THE FISCAL YEAR 2013 AUDIT MANAGEMENT LETTER
KANSAS CITY, MISSOURI RESPONSES TO THE FISCAL YEAR 2013 AUDIT MANAGEMENT LETTER Material Weaknesses (0) No material weaknesses were reported for FY 2013. Significant Deficiencies (1) Grant Receivable Accounting
Audit Phases. Phase 1: Planning and Risk Identification
Audit Phases Phase 1: Planning and Risk Identification Remember the Audit Risk Model of the client, Susceptibility to fraud Control risk Errors likely to occur In client s financial statements Detection
INFORMATION TECHNOLOGY CONTROLS
CHAPTER 14 INFORMATION TECHNOLOGY CONTROLS SCOPE This chapter addresses requirements common to all financial accounting systems and is not limited to the statewide financial accounting system, ENCOMPASS,
Substantive Tests of Transactions and Balances
10 CHAPTER Substantive Tests of Transactions and Balances LEARNING OBJECTIVES After studying this chapter you should be able to: 1 2 identify and distinguish between tests of controls and substantive tests
AUDIT PROCEDURES RECEIVABLE AND SALES
184 AUDIT PROCEDURES RECEIVABLE AND SALES Ștefan Zuca Abstract The overall objective of the audit of accounts receivable and sales is to determine if they are fairly presented in the context of the financial
Office of the State Controller. Self-Assessment of Internal Controls. Purchasing/Accounts Payable Cycle. Objectives and Risks
Office of the State Controller Self-Assessment of Internal Controls Purchasing/Accounts Payable Cycle Objectives and Risks Agency Year-End Objectives All requests for goods and services are initiated and
Dr. Thomas Nösberger. A short overview
Dr. Thomas Nösberger A short overview Why do we need audits and auditors? Page 2 Importance of Auditing Importance of Auditing Information risk reflects the possibility that the information upon which
ACCOUNTING RECORDS AND SOURCE DOCUMENTATION
ACCOUNTING RECORDS AND SOURCE DOCUMENTATION May 1994 Introduction Criteria for Accounting Documents and Records Accounting Procedures Manual Chart of Accounts Nine Principles Governing Accounting Records
CHAPTER 11 COMPUTER SYSTEMS INFORMATION TECHNOLOGY SERVICES CONTROLS
11-1 CHAPTER 11 COMPUTER SYSTEMS INFORMATION TECHNOLOGY SERVICES CONTROLS INTRODUCTION The State Board of Accounts, in accordance with State statutes and the Statements on Auditing Standards Numbers 78
CHAPTER 4 EFFECTIVE INTERNAL CONTROLS OVER PAYROLL
CHAPTER 4 EFFECTIVE INTERNAL CONTROLS OVER PAYROLL INTRODUCTION AND LEARNING OBJECTIVES Every organization, including governments, require employees to assist in meeting their goals and objectives. The
INTERNAL CONTROL MATRIX FOR AUDIT OF LABOR AND ACCOUNTING CONTROLS Version No. 4.2 June 2006
INTERNAL CONTROL MATRIX FOR AUDIT OF LABOR AND ACCOUNTING CONTROLS Version No. 4.2 June 2006 Control Objectives ExampleControl Activities Audit Procedures 1. MANAGEMENT REVIEWS Monitor the overall integrity
How to build a great compliance program for your U.S. imports
How to build a great compliance program for your U.S. imports For the importer of record, compliance means the complete and accurate recording of all internal processes through books and records, from
DATA ANALYSIS: THE CORNERSTONE OF EFFECTIVE INTERNAL AUDITING. A CaseWare IDEA Research Report
DATA ANALYSIS: THE CORNERSTONE OF EFFECTIVE INTERNAL AUDITING A CaseWare IDEA Research Report CaseWare IDEA Inc. is a privately held software development and marketing company, with offices in Toronto
An Introduction to Continuous Controls Monitoring
An Introduction to Continuous Controls Monitoring Reduce compliance costs, strengthen the control environment and lessen the risk of unintentional errors and fraud Richard Hunt, Managing Director Marc
Accounting Systems: Complying with FAR Requirements. John S. Sroka, CPA Acquisition Cost/Price Analyst
Accounting Systems: Complying with FAR Requirements John S. Sroka, CPA Acquisition Cost/Price Analyst Background Information FAR Requirements FAR Part 9: Contractor Qualifications FAR Part 16: Cost-reimbursement
German Jordanian University School of Management and Logistics Sciences. International Accounting Department. Courses Description
German Jordanian University School of Management and Logistics Sciences International Accounting Department Courses Description Degree: B.A. in International Accounting 2014-15 ACC101 Principles of Accounting
ACCOUNTING AND FINANCIAL REPORTING REGULATION MANUAL
ACCOUNTING AND FINANCIAL REPORTING REGULATION MANUAL STATE BOARD OF ACCOUNTS 302 West Washington Street Room E418 Indianapolis, Indiana 46204-2769 Issued January 2011 Revised April 2012 TABLE OF CONTENTS
ACCOUNTING POLICIES AND PROCEDURES
Unit: Subject: Sarbanes-Oxley Act Review - Financial Reporting Title: Risk & Control Identification Year end: ACCOUNTING POLICIES AND PROCEDURES Management should define and communicate accounting principles.
Oracle ERP Cloud Period Close Procedures O R A C L E W H I T E P A P E R J U N E 2 0 1 5
Oracle ERP Cloud Period Close Procedures O R A C L E W H I T E P A P E R J U N E 2 0 1 5 Table of Contents Introduction 7 Chapter 1 Period Close Dependencies 8 Chapter 2 Subledger Accounting Overview 9
Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement
Understanding the Entity and Its Environment 1667 AU Section 314 Understanding the Entity and Its Environment and Assessing the Risks of Material Misstatement (Supersedes SAS No. 55.) Source: SAS No. 109.
Internal Control Systems
D. INTERNAL CONTROL 1. Internal Control Systems 2. The Use of Internal Control Systems by Auditors 3. Transaction Cycles 4. Tests of Control 5. The Evaluation of Internal Control Component 6. Communication
MICHIGAN AUDIT REPORT OFFICE OF THE AUDITOR GENERAL THOMAS H. MCTAVISH, C.P.A. AUDITOR GENERAL
MICHIGAN OFFICE OF THE AUDITOR GENERAL AUDIT REPORT THOMAS H. MCTAVISH, C.P.A. AUDITOR GENERAL ...The auditor general shall conduct post audits of financial transactions and accounts of the state and of
Fundamentals Level Skills Module, Paper F8. Section A
Answers Fundamentals Level Skills Module, Paper F8 Audit and Assurance June 2015 Answers Section A Question Answer See Note 1 D 1 2 C 2 3 A 3 4 D 4 5 C 5 6 B 6 7 C 7 8 B 8 9 A 9 10 A 10 11 B 11 12 D 12
Chapter 15 Auditing the Expenditure Cycle
Chapter 15 Auditing the Expenditure Cycle Expenditure cycle consists of activities related to the acquisition of and payment for plant assets and goods and services. Two major transaction classes: 1 purchases
Knowledge Management Series. Internal Audit in ERP Environment
Knowledge Management Series Internal Audit in ERP Environment G BALU ASSOCIATES Knowledge Management Series ISSUE-5 ; VOL 1 Internal Audit in ERP Environment APRIL/2012 Editorial Greetings..!!! Raja Gopalan.B
THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK
THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK ACCOUNTABLE SIGNATURE AUTHORISED for implementation SIGNATURE On behalf of Chief Executive Officer SAHRA Council Date Date
Chapter 10 Overall Audit Plan and Audit Program
Chapter 10 Overall Audit Plan and Audit Program Review Questions 10-1 The four types of tests used by auditors to determine whether financial statements are fairly stated are; 1. procedures to obtain an
Audit Program for Accounts Payable and Purchases
Form AP 50 Index Audit Program for Accounts Payable and Purchases Legal Company Name Client: Balance Sheet Date: Instructions: The auditor should refer to the audit planning documentation to gain an understanding
Auditing Derivative Instruments, Hedging Activities, and Investments in Securities 1
Auditing Derivative Instruments 1915 AU Section 332 Auditing Derivative Instruments, Hedging Activities, and Investments in Securities 1 (Supersedes SAS No. 81.) Source: SAS No. 92. See section 9332 for
Sarbanes-Oxley: Beyond. Using compliance requirements to boost business performance. An RIS White Paper Sponsored by:
Beyond Sarbanes-Oxley: Using compliance requirements to boost business performance The business regulatory environment in the United States has changed. Public companies have new obligations to report
4 Testing General and Automated Controls
4 Testing General and Automated Controls Learning Objectives To understand the reasons for testing; To have an idea about Audit Planning and Testing; To discuss testing critical control points; To learn
Proposed Audit Plan for Fiscal Year 2015-16 and Preliminary Audit Plan for Fiscal Year 2016-17
Page 1 of 13 Proposed Audit Plan for Fiscal Year 2015-16 and Preliminary Audit Plan for Fiscal Year 2016-17 A June 2015 Page 2 of 13 Table of Contents Section I FY 2015-16 Proposed Audit Plan Pension and
Activity Code 12500 Material Management and Accounting System (MMAS) Version 9.10, dated September 2015 B-1 Planning Considerations
Activity Code 12500 Material Management and Accounting System (MMAS) Version 9.10, dated September 2015 B-1 Planning Considerations Audit Specific Independence Determination Members of the audit team and
Guide to the Sarbanes-Oxley Act: IT Risks and Controls. Frequently Asked Questions
Guide to the Sarbanes-Oxley Act: IT Risks and Controls Frequently Asked Questions Table of Contents Page No. Introduction.......................................................................1 Overall
Audit of the Test of Design of Entity-Level Controls
Audit of the Test of Design of Entity-Level Controls Canadian Grain Commission Audit & Evaluation Services Final Report March 2012 Canadian Grain Commission 0 Entity Level Controls 2011 Table of Contents
Internal Control Systems and Maintenance of Accounting and Other Records for Interactive Gaming & Interactive Wagering Corporations (IGIWC)
Internal Control Systems and Maintenance of Accounting and Other Records for Interactive Gaming & Interactive Wagering Corporations (IGIWC) 1 Introduction 1.1 Section 316 (4) of the International Business
September 28, 2011. Audit s Role in Governance, Risk Management and Internal Control
September 28, 2011 Internal Audit Overview Audit s Role in Governance, Risk Management and Internal Control Mission Provide independent, objective assurance and advisory services designed to add value
Guidance for Member States on Audit of Accounts
EGESIF_15_0016-02 final 05/02/2016 EUROPEAN COMMISSION European Structural and Investment Funds Guidance for Member States on Audit of Accounts DISCLAIMER: This is a document prepared by the Commission
Asset Manager Guide to SAS 70. Issue Date: October 7, 2007. Asset
Asset Manager Guide to SAS 70 Issue Date: October 7, 2007 Asset Management Group A s s e t M a n a g e r G u i d e SAS 70 Table of Contents Executive Summary...3 Overview and Current Landscape...3 Service
ETHICS, FRAUD, AND INTERNAL CONTROL
CHAPTER ETHICS, FRAUD, AND INTERNAL CONTROL The three topics of this chapter are closely related. Ethics is a hallmark of the accounting profession. The principles which guide a manager s decision making
Relevant COSO Principles. Policies and procedures are maintained. Policies and Procedures. Roles and responsibilities are identified
Accountability is unable to govern service processes No consistent or communicated policies procedures structure is inadequate Policies procedures are maintained Roles responsibilities are identified Policies
Master Document Audit Program
Activity Code 11510 B-1 Planning Considerations Information Technology General System Controls Audit Specific Independence Determination Members of the audit team and internal specialists consulting on
SOLUTION: AUDIT AND INTERNAL REVIEW, MAY 2014
SOLUTION 1(a) (a) The Auditing guideline points out that the amount or quantity of audit evidence required for the auditor to achieve the level of assurance is a matter of professional judgment. The factors
Connecting the dots: IT to Business
Connecting the dots: IT to Business Jason Wood, CPA, CISA, CIA, CITP, CFF April 2015 1 Speaker Bio Jason Wood Over 18 years of international business experience in planning, conducting, and quality reviewing
AUDITOR GENERAL DAVID W. MARTIN, CPA
AUDITOR GENERAL DAVID W. MARTIN, CPA AGENCY FOR HEALTH CARE ADMINISTRATION ADMINISTRATIVE ACTIVITIES Operational Audit SUMMARY This operational audit of the Agency for Health Care Administration (Agency)
ASTRAZENECA GLOBAL POLICY SAFEGUARDING COMPANY ASSETS AND RESOURCES
ASTRAZENECA GLOBAL POLICY SAFEGUARDING COMPANY ASSETS AND RESOURCES THIS POLICY SETS OUT THE REQUIREMENTS FOR SAFEGUARDING COMPANY ASSETS AND RESOURCES TO PROTECT PATIENTS, STAFF, PRODUCTS, PROPERTY AND
ACC 120 PRINCIPLES OF FINANCIAL ACCOUNTING
ACC 120 PRINCIPLES OF FINANCIAL ACCOUNTING COURSE DESCRIPTION: Prerequisites ENG 090, and RED 090 or DRE 098; MAT 070 or DMA 010, 020, 030, 040, or satisfactory score on placement test Corequisites: None
Data Analysis: The Cornerstone of Effective Internal Auditing. A CaseWare Analytics Research Report
Data Analysis: The Cornerstone of Effective Internal Auditing A CaseWare Analytics Research Report Contents Why Data Analysis Step 1: Foundation - Fix Any Cracks First Step 2: Risk - Where to Look Step
Mandatory Provident Fund Schemes Authority COMPLIANCE STANDARDS FOR MPF APPROVED TRUSTEES. First Edition July 2005. Hong Kong
Mandatory Provident Fund Schemes Authority COMPLIANCE STANDARDS FOR MPF APPROVED TRUSTEES First Edition July 2005 Hong Kong Contents Glossary...2 Introduction to Standards...4 Interpretation Section...6
Sharon Kurek, CPA, CFE Director of Internal Audit
Sharon Kurek, CPA, CFE Director of Internal Audit What You Will Take Aware With You Definition of Internal Auditing Scope of Audit Activities Risk and Control Process Common Audit Topics Fraud Awareness
ISO IEC 27002 2005 (17799 2005) INFORMATION SECURITY AUDIT TOOL
7.1 ESTABLISH RESPONSIBILITY FOR ASSETS 1 GOAL Do you protect your organization s assets? 2 GOAL Do you use controls to protect your assets? 3 GOAL Do you account for your organization s assets? 4 GOAL
Sarbanes-Oxley Control Transformation Through Automation
Sarbanes-Oxley Control Transformation Through Automation An Executive White Paper By BLUE LANCE, Inc. Where have we been? Where are we going? BLUE LANCE INC. www.bluelance.com 713.255.4800 [email protected]
A Guide For Preparing The Financial Information Component Of An Asset Management Plan. Licensing, Monitoring and Customer Protection Division
A Guide For Preparing The Financial Information Component Of An Asset Management Plan Licensing, Monitoring and Customer Protection Division July 2006 Contents 1 Important Notice 2 2 Scope and purpose
FIVE MANAGEMENT SYSTEM Policies and Procedures Checklist
FIVE MANAGEMENT SYSTEM Procedures Checklist Provided by: Navajo Nation Office of the Auditor General TABLE OF CONTENTS Introduction.........................................1 General Administrative Procedures...............................1
Internal Controls. A short presentation from Your Internal Audit Department
Internal Controls A short presentation from Your Internal Audit Department The Old Internal Audit Department The New Internal Audit Department We re here to help! Teach + Train = Change Our goal: Promote
Data Quality Assurance
CHAPTER 4 Data Quality Assurance The previous chapters define accurate data. They talk about the importance of data and in particular the importance of accurate data. They describe how complex the topic
Guide to Internal Control Over Financial Reporting
Guide to Internal Control Over Financial Reporting The Center for Audit Quality prepared this Guide to provide an overview for the general public of internal control over financial reporting ( ICFR ).
Effective Monitoring of Outsourced Plan Recordkeeping and Reporting Functions
Effective Monitoring of Outsourced Plan Recordkeeping and Reporting Functions Plan Advisory The AICPA EBPAQC is a firm-based, volunteer membership center created with the goal of promoting quality employee
Business Continuity Planning 101. +1 610 768-4120 (800) 634-2016 www.strohlsystems.com [email protected]
Business Continuity Planning 101 Presentation Overview What is business continuity planning Plan Development Plan Testing Plan Maintenance Future advancements in BCP Question & Answer What is a Disaster?
GAO. Standards for Internal Control in the Federal Government. Internal Control. United States General Accounting Office.
GAO United States General Accounting Office Internal Control November 1999 Standards for Internal Control in the Federal Government GAO/AIMD-00-21.3.1 Foreword Federal policymakers and program managers
Information Security Policy September 2009 Newman University IT Services. Information Security Policy
Contents 1. Statement 1.1 Introduction 1.2 Objectives 1.3 Scope and Policy Structure 1.4 Risk Assessment and Management 1.5 Responsibilities for Information Security 2. Compliance 3. HR Security 3.1 Terms
Developing Effective Internal Controls Using the COSO Model
Developing Effective Internal Controls Using the COSO Model Office of State Controller Internal Controls in a COSO Environment Seminar Raleigh, North Carolina March 2007 Mark S. Beasley Director, ERM Initiative
Checklist - Monthly Close Process
Checklist - Monthly Close Process Introductuion: This document should be used as a general guide to creating a monthly financial close process checklist, however, it does not address all activities that
Sample Financial institution Risk Management Policy 2011
Sample Financial institution Risk Management Policy 2011 1 Contents Risk Management Program...2 Internal Control and Risk Management Diagram... 2 General Control Environment... 2 Specific Internal Control
Effective Monitoring of Outsourced Plan Recordkeeping and Reporting Functions
PLAN ADVISORY Effective Monitoring of Outsourced Plan Recordkeeping and Reporting Functions PLAN ADVISORY Table of Contents Introduction 3 Selecting and Monitoring Third-Party Service Providers 4 Quality
Communicating Internal Control Related Matters Identified in an Audit
Communicating Internal Control 1843 AU Section 325 Communicating Internal Control Related Matters Identified in an Audit (Supersedes SAS No. 112.) Source: SAS No. 115. Effective for audits of financial
Chapter 6 Labor-Charging Systems and Other Considerations
6 Chapter 6 Labor-Charging Systems and Other Considerations The purpose of this chapter is to provide interpretive guidance only. This chapter is not intended to be authoritative or to supersede the FAR.
Chapter 14 Completing the Tests in the Sales and Collection Cycle: Accounts Receivable
Chapter 14 Completing the Tests in the Sales and Collection Cycle: Accounts Receivable Review Questions 14-1 Tests of details of financial balances are designed to determine the reasonableness of the balances
FIXED ASSETS PROCEDURES
SECTION XI - INVENTORY / FIXED ASSETS FIXED ASSETS PROCEDURES WHO IS RESPONSIBLE? A. Building principals and department managers are accountable for assets/equipment within their immediate area of responsibility.
Audit Guide for Audit Committees of Small Nonprofit Organizations
Audit Guide for Audit Committees of Small Nonprofit Organizations A free resource provided by the Virginia Society of Certified Public Accountants Audit Guide for Small Nonprofit Organizations A free resource
August 2014 Report No. 14-043
John Keel, CPA State Auditor A Report on On-site Audits of Residential Child Care Providers Report No. 14-043 A Report on On-site Audits of Residential Child Care Providers Overall Conclusion Three of
RISK MANAGEMENT IN A FOR-
RISK MANAGEMENT IN A FOR- PROFIT ORGANISATION 1 OBJECTIVES Explain the risk management framework The underlying process and cycle, and resources and people involved The framework can be applied in for
Audit of NSERC Award Management Information System
Internal Audit Audit Report Audit of NSERC Award Management Information System TABLE OF CONTENTS 1. EXECUTIVE SUMMARY... 2 2. INTRODUCTION... 3 3. AUDIT FINDINGS- BUSINESS PROCESS CONTROLS... 5 4. AUDIT
Master Document Audit Program. Version 7.4, dated November 2006 B-1 Planning Considerations. Purpose and Scope
Activity Code 24010 B-1 Planning Considerations Estimating System Survey (ICR) Purpose and Scope The major objectives of this audit are to: Evaluate the adequacy of and the contractor s compliance with
Construction Company Capacity Assessment
Business/Firm Name: Vendor NCDOT Number: Contact Address: Construction Company Capacity Assessment Name/Title of Person Taking Assessment: Phone Contact Information: Email Contact Information: List Current
How To Audit A Financial Statement
INTERNATIONAL STANDARD ON 400 RISK ASSESSMENTS AND INTERNAL CONTROL (This Standard is effective, but will be withdrawn when ISA 315 and 330 become effective) * CONTENTS Paragraph Introduction... 1-10 Inherent
The University of Georgia Service Center Policy
TABLE OF CONTENTS The University of Georgia Service Center Policy 1. INTRODUCTION... 4 2. SCOPE... 4 2.1. Recharge Activities... 4 2.2. Service Centers... 4 2.3. Specialized Service Centers... 4 3. INTENT....
Audit of Cash Balances
Audit of Cash Balances Chapter 23 2008 Prentice Hall Business Publishing, Auditing 12/e, Arens/Beasley/Elder 23-1 Learning Objective 1 Show the relationship of cash in the bank to the various transaction
AP1000 European 18. Human Factors Engineering Design Control Document
18.2 Human Factors Engineering Program Management The purpose of this section is to describe the goals of the AP1000 human factors engineering program, the technical program to accomplish these goals,
INTERNATIONAL AUDITING PRACTICE STATEMENT 1012 AUDITING DERIVATIVE FINANCIAL INSTRUMENTS
INTERNATIONAL AUDITING PRACTICE STATEMENT 1012 AUDITING DERIVATIVE FINANCIAL INSTRUMENTS (This Statement is effective) CONTENTS Paragraph Introduction... 1 Derivative Instruments and Activities... 2 7
FRAMEWORK FOR THE PREPARATION OF ACCOUNTS. Best Practice Guidance
FRAMEWORK FOR THE PREPARATION OF ACCOUNTS Best Practice Guidance Revised Edition April 2010 PUBLISHED IN APRIL 2010 THE INSTITUTE OF CHARTERED ACCOUNTANTS OF SCOTLAND This document is published by the
Accounting information systems and business process : part 1
King Saud University College of Administrative Science Department of Accounting Accounting information systems and business process : part 1 Chapter 4 Prepared By: Eman Al-Aqeel Professor : Dr: Suliman
FISCAL PLAN RESPONSE TO THE AUDITOR GENERAL
Government FISCAL PLAN RESPONSE TO THE AUDITOR GENERAL OCTOBER 2015 127 TABLE OF CONTENTS RESPONSE TO THE AUDITOR GENERAL October 2015.... 129 128 RESPONSE TO THE AUDITOR GENERAL FISCAL PLAN 2016 19 RESPONSE
Understanding SAS 70 Reports on Internal Control
Understanding SAS 70 Reports on Internal Control PwC Agenda Internal Control Reporting: A Focus on SAS 70 Trends affecting internal control reporting Discussion points for Mutual Fund Directors with management
Article: Control Systems and Controls Testing: General Review
Article: Control Systems and Controls Testing: General Review By: Paul Lydon, BA, CPA, MBS (Hons), PGCLTHE, FHEA Current Examiner in P1 Auditing The main duty of auditors is to report to the members on
Transmittal Letter... 1. Objectives and Scope... 2. Approach... 3-7. Financial System... 8. Permitting Application... 9
Internal Audit Committee of Information Technology Risk Assessment Public Report Prepared By: Internal Auditors of Brevard County September 30, 2009 Table of Contents Transmittal Letter... 1 Objectives
