©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley 5 - 5 10 - 1 Considering Internal Control Chapter 10.

Slides:



Advertisements
Similar presentations
Section 404 Audits of Internal Control and Control Risk
Advertisements

Internal Control and Control Risk
Internal Control.
Chapter 10 Section 404 Audits of Internal Control and Control Risk
Standar Pekerjaan Lapangan: Pemahaman Memadai atas Pengendalian Intern Pertemuan 5.
Chapter 5 Risk Assessment: Internal Control Evaluation
6-1 McGraw-Hill/Irwin ©2002 by The McGraw-Hill Companies, Inc. All rights reserved. Chapter 6 Internal Control Evaluation: Assessing Control Risk.
Internal Control. COSO’s Framework Committee of Sponsoring Organizations 1992 issued a white paper on internal control Since this time, this framework.
Auditing A Risk-Based Approach To Conducting A Quality Audit
18- 1 © 2006 The McGraw-Hill Companies, Inc., All Rights Reserved. Chapter 18 Integrated Audits of Internal Control (For Public Companies Under Sarbanes-Oxley.
Internal Control in a Financial Statement Audit
Internal Control. COSO’s Framework Committee of Sponsoring Organizations 1992 issued a white paper on internal control Since this time, this framework.
Section 404 Audits of Internal Control and Control Risk
Nature of an Integrated Audit
Sarbanes-Oxley Project Summary of COSO Framework Presented by Larry Dillehay & Scott Reitan Parkfield Group LLC.
INTERNAL CONTROL OVER FINANCIAL REPORTING
Chapter 10 Internal control and Control Risk.
Auditing Internal Control over Financial Reporting
5-1 McGraw-Hill/Irwin ©2005 by the McGraw-Hill Companies, Inc. All rights reserved. Chapter 5 Internal Control Evaluation: Assessing Control Risk “If everything.
Auditing Internal Control over Financial Reporting
Chapter 07 Internal Control McGraw-Hill/IrwinCopyright © 2014 by The McGraw-Hill Companies, Inc. All rights reserved.
INTERNAL CONTROL OVER FINANCIAL REPORTING
Chapter 5 Internal Control over Financial Reporting
Considering Internal Control
Internal Control in a Financial Statement Audit
BusinessAllstars.com 1 BusinessAllstars.com Presents Copyright © 2004 by Gainbridge Associates All right reserved This material may not be used or reproduced.
Chapter 7 Auditing Internal Control over Financial Reporting McGraw-Hill/Irwin ©2008 The McGraw-Hill Companies, All Rights Reserved.
NO FRAUD LEFT BEHIND The Effect of New Risk Assessment Auditing Standards on Schools Runyon Kersteen Ouellette.
Internal Control in a Financial Statement Audit
9 - 1 ©2003 Prentice Hall Business Publishing, Essentials of Auditing 1/e, Arens/Elder/Beasley Internal Control and Control Risk Chapter 9.
©2003 Prentice Hall Business Publishing, Auditing and Assurance Services 9/e, Arens/Elder/Beasley Internal Control and Control Risk Chapter 10.
Learning Objectives LO5 Illustrate how business risk analysis is used to assess the risk of material misstatement at the financial statement level and.
Evaluation of Internal Control System
5-1 McGraw-Hill/Irwin ©2007 by the McGraw-Hill Companies, Inc. All rights reserved. Chapter 5 Internal Control Evaluation: Assessing Control Risk.
Evaluation of Internal Control System. Learning Objective 1 Contrast management’s need for internal control with the auditor’s need to consider internal.
Chapter 7 Auditing Internal Control over Financial Reporting McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
[Hayes, Dassen, Schilder and Wallage, Principles of Auditing An Introduction to ISAs, edition 2.1] © Pearson Education Limited 2007 Slide 7.1 Internal.
CHAPTER 5 INTERNAL CONTROL OVER FINANCIAL REPORTING.
McGraw-Hill/Irwin © 2003 The McGraw-Hill Companies, Inc., All Rights Reserved. 6-1 Chapter 6 CHAPTER 6 INTERNAL CONTROL IN A FINANCIAL STATEMENT AUDIT.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 6-1 Chapter Six Internal Control in a Financial Statement Audit.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 7-1 Chapter Seven Auditing Internal Control over Financial Reporting.
BA 427 – Assurance and Attestation Services Lecture 21 Tests of Controls.
©2003 Prentice Hall Business Publishing, Auditing and Assurance Services 9/e, Arens/Elder/Beasley Section 404 Audits of Internal Control and Control.
Learning Objectives LO5 Document an accounting system to identify key controls and weaknesses in order to assess control risk. LO6 Write key control tests.
McGraw-Hill/Irwin © The McGraw-Hill Companies 2010 Auditing Internal Control over Financial Reporting Chapter Seven.
Copyright © 2007 Pearson Education Canada 1 Chapter 11: Overall Audit Plan and Audit Program.
Internal Control Chapter 7. McGraw-Hill/Irwin © 2006 The McGraw-Hill Companies, Inc., All Rights Reserved. 7-2 Summary of Internal Control Definition.
©2012 Prentice Hall Business Publishing, Auditing 14/e, Arens/Elder/Beasley Section 404 Audits of Internal Control and Control Risk Chapter.
Copyright © 2007 Pearson Education Canada 9-1 Chapter 9: Internal Controls and Control Risk.
1 Overview of PCAOB Auditing Standard No. 5 An Audit of Internal Control Over Financial Reporting that is Integrated with an Audit of Financial Statements.
Chapter 5 Evaluating the Integrity and Effectiveness of the Client’s Control Systems.
©2008 Prentice Hall Business Publishing, Auditing 12/e, Arens/Beasley/Elder Section 404 Audits of Internal Control and Control Risk Chapter 10.
18-1 Copyright © 2016 McGraw-Hill Education. All rights reserved. No reproduction or distribution without the prior written consent of McGraw-Hill Education.
Copyright © 2014 Pearson Education, Inc. Publishing as Prentice Hall. Chapter
McGraw-Hill/Irwin © The McGraw-Hill Companies 2010 Internal Control in a Financial Statement Audit Chapter Six.
Internal Control. McGraw-Hill/Irwin © 2004 The McGraw-Hill Companies, Inc., All Rights Reserved. 7-2 Summary of Internal Control Definition A process...designed.
Chapter 6 Internal Control in a Financial Statement Audit McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
©2005 Prentice Hall Business Publishing, Auditing and Assurance Services 10/e, Arens/Elder/Beasley Internal Control and Control Risk Chapter 10.
Internal Control Chapter 7. McGraw-Hill/Irwin © 2008 The McGraw-Hill Companies, Inc., All Rights Reserved. 7-2 Summary of Internal Control Definition.
Section 404 Audits of Internal Control and Control Risk
Modern Auditing: Assurance Services and the Integrity of Financial Reporting, 8th Edition William C. Boynton California Polytechnic State University at.
Obtain and document understanding of internal control
Internal Control Evaluation: Assessing Control Risk
Internal Control in a Financial Statement Audit
Internal control objectives
Defining Internal Control
INTERNAL CONTROLS AND THE ASSESSMENT OF CONTROL RISK
Internal Control Internal control is the process designed and affected by owners, management, and other personnel. It is implemented to address business.
Chapter 10 Section 404 Audits of Internal Control and Control Risk Internal Control Risk.
Presentation transcript:

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Considering Internal Control Chapter 10

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 1 Describe the three primary objectives of effective internal control.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Compliance with laws and regulations Efficiency/ effectiveness of operations Reliability of financial reporting Internal Control Objectives Management has three broad objectives in designing an effective internal control system

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 2 Contrast management’s responsibilities for maintaining and reporting on internal controls with the auditor’s responsibilities for understanding, testing, and reporting on internal controls.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Management’s Responsibilities for Establishing Internal Control  Management must establish and maintain the entity’s internal controls  Management’s design and implementation of internal controls is based on two key underlying concepts:  Reasonable assurance  Inherent limitations

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Management of all public companies to issue an internal control report that includes the following:  An acknowledgement of responsibility for internal controls  Results of annual internal control assessment Management’s Section 404 Reporting Responsibilities 2010 federal financial reform laws permanently exempted nonaccelerated filers from reporting on internal controls.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley  Management must first test the design of internal controls over financial reporting.  Management must also test the operating effectiveness of those controls. Management’s Assessment of Internal Controls

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Management’s Assessment of Internal Controls

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Auditor Responsibilities for Understanding Internal Control  Second GAAS fieldwork standard  Must assess control risk in every audit  Primarily concerned about controls over: reliability of financial reporting classes of transactions

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Sales Transaction-related Audit Objectives

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Auditor Responsibilities for Testing Internal Control  Obtains understanding of controls  Performs tests of controls: significant account balances classes of transactions disclosures and related financial statement assertions

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 3 Explain the five components of the COSO internal control framework.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Five Components of Internal Control

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley The Control Environment  Integrity and ethical values  Commitment to competence  Board of directors or audit committee participation

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley The Control Environment Management’s philosophy and operating style Organizational structure Human resource policies and practices

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Risk Assessment  Identify factors that may increase risk  Assess the likelihood of the risk occurring  Determine actions necessary to manage the risk  Estimate the significance of the risk

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Control Activities 1. Adequate separation of duties 2. Proper authorization of transactions and activities 3. Adequate documents and records 4. Physical control over assets and records 5. Independent checks on performance

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Adequate Separation of Duties Custody of assetsAccounting Authorization of transactions The custody of related assets Operational responsibility Record-keeping responsibility IT dutiesUser departments from

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Proper Authorization of Transactions and Activities General Authorization Specific Authorization Transaction Approval Policies

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Adequate Documents and Records  Prenumbered consecutively  Prepared at the time of transaction  Designed for multiple use  Constructed to encourage correct preparation

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Physical Control Over Assets and Records The most important type of protective measure for safeguarding assets and records is the use of physical precautions.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Independent Checks on Performance The need for independent checks arises because internal control tends to change over time unless there is a mechanism for frequent review.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Information and Communication The purpose of an accounting information and communication system Initiate Process Record Report transactions Maintain Accountability for Related Assets

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Monitoring Monitoring activities deal with management’s ongoing and periodic assessment of the quality of internal control performance… to determine whether controls are operating as intended and modified when needed.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 4 Obtain and document an understanding of internal control.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Process for Understanding Internal Control and Assessing Control Risk

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Obtain and Document Understanding of Internal Control Auditing standards require auditors to obtain an understanding of internal control for every audit. Procedures to obtain an understanding:  Design of internal controls  Whether placed in operation  Uses this information as a basis for the integrated audit

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Methods Used Narrative Flowchart Internal control questionnaire

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Narrative 1. The origin of every document and record in the system 2. All processing that takes place 3. The disposition of every document and record in the system 4. An indication of the controls relevant to the assessment of control risk

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Evaluating Internal Control Operation  Update and evaluate auditor’s previous experience with the entity  Make inquiries of client personnel  Examine documents and records  Observe entity activities and operations  Perform walk-throughs of the accounting system

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 5 Assess control risk by linking key controls, significant deficiencies, and material weaknesses to transaction-related audit objectives.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Assess Control Risk Assess whether the financial statements are auditable. Determine assessed control risk supported by the understanding obtained assuming the controls are being followed. Use a control risk matrix to assess control risk.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Control Risk Matrix Many auditors use the control risk matrix to assist in the control risk assessment process.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Control Risk Matrix  Identify audit objectives  Identify existing controls  Associate controls with related audit objectives  Identify and evaluate control deficiencies, significant deficiencies, and material weaknesses

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Evaluating Significant Control Deficiencies

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Identify Deficiencies and Material Weaknesses  Identify existing controls  Identify the absence of key controls  Consider the possibility of compensating controls  Decide whether there is a significant deficiency or material weakness  Determine potential misstatements that could result

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Communications to Those Charged with Governance  Management letters from the auditor  less significant control weaknesses  ideas for operational improvements  Auditor must communicate in writing significant deficiencies and material weaknesses to the audit committee

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 6 Describe the process of designing and performing tests of controls.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Tests of Controls The procedures to test effectiveness of controls in support of a reduced assessed control risk are called tests of controls.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Procedures for Tests of Controls Inquire of client personnel Examine documents, records, reports Observe control-related activities Reperform client procedures

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Extent of Procedures  Reliance on evidence from prior year’s audit  Testing of controls related to significant risks  Testing less than the entire audit period

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Relationship of Assessed Control Risk and Extent of Procedures Inquiry Documentation Observation Reperformance Yes–extensive Yes–with transaction walk-through Yes–with transaction walk-through No Yes–some Yes–using sampling Yes–at multiple times Yes–using sampling Type of procedure High level: Procedures to obtain an understanding Lower level: Tests of controls Assessed Control Risk

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Decide Planned Detection Risk and Design Substantive Tests Control risk assessment process results Related substantive tests Planned detection risk Tests of controls Control risk assessments Balance related audit objectives

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 7 Understand Section 404 requirements for auditor reporting on internal control.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Section 404 Reporting on Internal Control The scope of the auditor’s report on internal control is limited to obtaining reasonable assurance that material weaknesses in internal control are identified.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Types of Opinions Unqualified Adverse Qualified or disclaimer No material weaknesses No scope restrictions One or more material weaknesses Scope limitation

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Learning Objective 8 Describe the differences in evaluating, reporting, and testing internal control for nonpublic companies.

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Evaluating, Reporting, and Testing Internal Control for Nonpublic Companies 1. Reporting requirements 2. Extent of required internal controls 4. Assessing control risk 5. Extent of tests of controls needed 3. Extent of understanding needed

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley Differences in Scope of Controls Tested Internal controls over financial reporting Internal controls used to assess control risk below maximum Controls that must be tested in an audit of financial statements Controls that must be tested in an audit of internal controls

©©2012 Pearson Education, Auditing 14/e, Arens/Elder/Beasley End of Chapter 10