Internal Audit Section. Authorized in Section 20.055, Florida Statutes Section 20.055, Florida Statutes (F.S.), authorizes the Inspector General to review.

Slides:



Advertisements
Similar presentations
PRESENTATION ON MONDAY 7 TH AUGUST, 2006 BY SUDHIR VARMA FCA; CIA(USA) FOR THE INSTITUTE OF INTERNAL AUDITORS – INDIA, DELHI CHAPTER.
Advertisements

Auditing, Assurance and Governance in Local Government
Agency Risk Management and Internal Control Standards Presentation to the Board of Visitors November 14, 2014.
Internal Audit Awareness
Internal Control.
Welcome! Internal Auditing CHAPTER 1. Definition Internal auditing is an independent, objective, assurance and consulting activity designed to add value.
Assurance, Attestation, and Internal Auditing Services
Institute of Municipal Finance Officers & Related Professions
IDENTIFYING RISKS AND CONTROLS IN BUSINESS PROCESS
Quality evaluation and improvement for Internal Audit
Office of Inspector General (OIG) Internal Audit
Internal Audits, Governmental Audits, and Fraud Examinations
Purpose of the Standards
Effort Reporting: A Departmental Approach to Meeting Audit Requirements Dianne Valdez, MBA, CIA, CISA, CCSA Enrique Valdez Jr., MBA.
INTERNAL CONTROL OVER FINANCIAL REPORTING
Auditing Standards IFTA\IRP Audit Guidance Government Auditing Standards (GAO) Generally Accepted Auditing Standards (GAAS) International Standards on.
Elements of Internal Controls Preventing Fraud, Waste, and Abuse in Urban and Rural Transit Systems.
Control environment and control activities. Day II Session III and IV.
Internal Auditing and Outsourcing
Internal Control and Control Self-Assessment
IIA Standards Briefing CUAV 2011 Williamsburg Virginia May 23, 2011.
Central Piedmont Community College Internal Audit.
D-1 McGraw-Hill/Irwin ©2005 by the McGraw-Hill Companies, Inc. All rights reserved. Module D Internal, Governmental, and Fraud Audits “I predict that audit.
C. P. Mansoor S. Ahmed M. Com, PGDBA.  Not confined to Independent Audit  Systematic Examination of  Records  Procedures  Systems  Operations.
The Institute of Internal Auditors
Session 3 & 4. Institute of Internal Auditors Inc (IIA) was created for internal auditors in 1941 Generally accepted criteria of a profession are: –Adopting.
UNM and Health System Internal Audit Departments Internal Audit Department Orientation Manu Patel, Internal Audit Director Purvi Mody, Executive Director,
INTERNAL CONTROL OVER FINANCIAL REPORTING
Considering Internal Control
Roles and Responsibilities
ICPAK – ANNUAL INTERNAL AUDIT SEMINAR MOMBASA CONTINENTAL HOTEL 20 TH -22 ND AUGUST, 2014 JACK K. WASONGA Independence & Objectivity of Internal Auditors.
Important acronyms AO = authorizing official ISO = information system owner CA = certification agent.
DEPARTMENT OF MANAGEMENT SERVICES OFFICE OF INSPECTOR GENERAL.
Evaluation of Internal Control System
Taking the STANDARDS Seriously... what they are and why they are so critically important to internal audit professionalism.
Copyright © 2007 Pearson Education Canada 1 Chapter 1: The Demand for Auditing and Assurance Services.
The UNIVERSITY of GREENWICH 1 September 2009 L8c Audit and assurance J. E. Spencer-Wood Auditing and assurance Lecture 8c Standards for the Professional.
The Audit as a Management Tool Vermont State Auditor’s Office – April 2009.
Chapter 21 Internal, Operational, and Compliance Auditing McGraw-Hill/IrwinCopyright © 2014 by The McGraw-Hill Companies, Inc. All rights reserved.
College Reviews An Overview Presented by Howard Lutwak, CIA Director of Internal Audit January 2004.
A.S. FlemingFall 2009 Acct 431 – Cost Management "Ethics in its broader sense, deals with human conduct in relation to what is morally good and bad, right.
Copyright © 2013 by The McGraw-Hill Companies, Inc. All rights reserved.McGraw-Hill/Irwin.
New York State Education Department Charter School Office Initial Statement January 2013.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 7-1 Chapter Seven Auditing Internal Control over Financial Reporting.
Copyright © 2007 Pearson Education Canada 23-1 Chapter 23: Using Advanced Skills.
The New IPPF: What to Know and What Does It Tell Us?
©2012 Prentice Hall Business Publishing, Auditing 14/e, Arens/Elder/Beasley Section 404 Audits of Internal Control and Control Risk Chapter.
Copyright © 2007 Pearson Education Canada 9-1 Chapter 9: Internal Controls and Control Risk.
Copyright © 2015 McGraw-Hill Education. All rights reserved. No reproduction or distribution without the prior written consent of McGraw-Hill Education.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 20-1 Chapter Twenty Assurance, Related Services and Internal.
Regional Accreditation Workshop For Asia and Eastern Europe Manila, Philippines th March, 2012.
©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Considering Internal Control Chapter 10.
Copyright © 2014 Pearson Education, Inc. Publishing as Prentice Hall. Chapter
Important acronyms AO = authorizing official ISO = information system owner CA = certification agent.
Investigations Section. Authorized in Section , Florida Statutes Section , Florida Statutes (F.S.) authorizes the Inspector General to conduct.
Governance, risk and ethics. 2 Section A: Governance and responsibility Section B: Internal control and review Section C: Identifying and assessing risk.
Internal Audit Quality Assessment Guide
The International Professional Practices Framework
SUNY Maritime Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal controls.
Office of Inspector General (OIG) Internal Audit
Update on the Latest Developments in Government Auditing Standards
How to Survive an External Quality Assessment
Assurance, Related Services and Internal Auditing
Kode Etik dan IA Standard Dr Rilla Gantino, SE., AK., MM
Office of Internal Audits
Following Up on Internal Audit Reports Workshop on IIA Standard 2500
Canadian Auditing Standards (CAS)
Internal Audit Ahmad Tariq Bhatti Dubai, United Arab Emirates
Taking the STANDARDS Seriously
Good practices for risk assessment and control activities
Presentation transcript:

Internal Audit Section

Authorized in Section , Florida Statutes Section , Florida Statutes (F.S.), authorizes the Inspector General to review and evaluate internal controls necessary to ensure the fiscal accountability of the state agency. The inspector general shall conduct financial, compliance, electronic data processing, and performance audits of the agency.

Organization

Purpose of Internal Auditing Internal auditing is an independent, objective assurance, and consulting activity designed to add value and improve an organization's operations. It helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes.

Standards Audits must be conducted in accordance with the current International Standards for the Professional Practice of Internal Auditing as published by the Institute of Internal Auditors. Section (5)(a), F.S.

Standards (Cont.) The International Professional Practices Framework (IPPF) is the conceptual framework that organizes authoritative guidance. IPPF guidance includes: Mandatory Guidance Definition of Internal Auditing Code of Ethics Standards Strongly Recommended Guidance Position Papers Practice Advisories Practice Guides

Code of Ethics Internal auditors are expected to apply and uphold the following principles: Integrity Objectivity Confidentiality Competency

Independence and Objectivity The internal audit activity must be independent, and internal auditors must be objective in performing their work. The internal audit activity must be free from interference in determining the scope of internal auditing, performing work, and communicating results. Internal auditors must have an impartial, unbiased attitude and avoid any conflict of interest.

Access to Information Auditors examine and need access to a lot of information to do their jobs. Section (5)(c), F.S. states, “The inspector general and the staff shall have access to any records, data, and other information of the state agency he or she deems necessary to carry out his or her duties. The inspector general is also authorized to request such information or assistance as may be necessary from the state agency or from any federal, state, or local government entity.”

Risk Assessment What is risk? The possibility of an event occurring that will have an impact on the achievement of objectives. Risk is measured in terms of impact and likelihood. How do we manage risk? Control Processes are the policies, procedures, and activities that are part of a control framework, designed to ensure that risks are contained within the risk tolerances established by the risk management process.

Controls What are controls? There are many definitions. In essence a control is any action taken by management and/or other parties or systems to manage and mitigate the negative impact of risk and increase the likelihood that established objectives and goals will be achieved. The control environment includes the following elements: Integrity and ethical values; Management's philosophy and operating style; Organizational structure; Assignment of authority and responsibility; Human resource policies and practices; and Competence of personnel.

Controls (Cont.) Examples of typical controls include: Policies and procedures Management reviews and approvals Physical safeguards Authorization of transactions Segregation of duties (organizational structure) IT Security (e.g. passwords, access logs, etc.) Information processing / application controls

Risk Assessment and Audit Planning Section (5)(i), F.S. states “The Inspector General shall develop long-term and annual Audit Plans based on the findings of periodic risk assessments. The Audit Plan shall show the individual audits to be conducted during each year and related resources to be devoted to the respective audits.”

Risk Assessment and Audit Planning (Cont.) The internal audit activity's plan of engagements must be based on a documented risk assessment, undertaken at least annually. The Audit Director should consider accepting proposed consulting engagements based on the engagement's potential to improve management of risks, add value, and improve the organization's operations.

Assurance Engagements Assurance services involve the internal auditor’s objective assessment of evidence to provide an independent opinion or conclusions regarding an entity, operation, function, process, system, or other subject matter. The nature and scope of the assurance engagement are determined by the internal auditor. There are generally three parties involved in assurance services: The person or group directly involved with the entity, operation, function, process, system, or other subject matter (e.g. process owner), The person or group making the assessment (e.g. the internal auditor), and The person or group using the assessment (e.g. the user).

Consulting Engagements Consulting services are advisory in nature, and are generally performed at the specific request of an engagement client. The nature and scope of the consulting engagement are subject to agreement with the engagement client. Consulting services generally involve two parties: The person or group offering the advice (e.g. the internal auditor), and The person or group seeking and receiving the advice (e.g. the engagement client). When performing consulting services the internal auditor should maintain objectivity and not assume management responsibility.

Audit Process Audit Cycles: Engagement Planning Fieldwork Report Writing Follow Up *Review and consulting engagement cycle elements are less involved than an audit.

Audit Process (Cont.) Planning  Background Review (authoritative references, contractual requirements, budgetary information, policy and procedure review, process mapping, and risk & control assessment)  Entrance Conference  Work Program Development Fieldwork  Work Program Execution  Testing of controls Report Writing  Draft and Approval  Exit Conference  Management Response (20 working days)  Final Report Issuance w/ Management Response Follow Up (6 month intervals)  Corrective Action Status Updates  Verification  Status Report Issued

External Audit Entities Who audits the auditor? The Auditor General (AG):  Reviews a sample of each state agency’s internal audit reports to determine compliance with current standards once every 3 years.

External Audit Liaison Role The Inspector General shall monitor the implementation of the state agency's response to any report on the state agency issued by the Auditor General or by the Office of Program Policy Analysis and Government Accountability. No later than 6 months after the Auditor General or the Office of Program Policy Analysis and Government Accountability publishes a report on the state agency, the Inspector General shall provide a written response to the agency head on the status of corrective actions taken. Section (5)(h), F.S.

Annual Report Not later than September 30 of each year, the DHSMV IG submits an annual report to the Executive Director, Chief Inspector General, and Auditor General summarizing the activities of the office during the preceding fiscal year. Included in this report is a summarization of the internal audit activities of the DHSMV IG. Section (7), F.S.

Contact the Inspector General Office of Inspector General 2900 Apalachee Parkway Tallahassee, Florida Phone (850) FAX (850)