March 9, 2016. Keys to an Effective Internal Audit Function 2 1. Enhance accountability 2. Earn and increase taxpayer confidence and respect for government.

Slides:



Advertisements
Similar presentations
OCCUPATIONAL SAFETY AND HEALTH ADMINISTRATION
Advertisements

Managing Risk: A Framework and Reporting Cycle 2014.
Changes to HIPAA (as they pertain to records management) Health Information Technology for Economic Clinical Health Act (HITECH) – federal regulation included.
QA Programs for Local Health Departments
Presentation for the Management Study of the Code Enforcement Process City of Little Rock, Arkansas August 3, 2006.
The Unique Alternative to the Big Four ® Gas Safety and Reliability Branch Management and Operations Review Report and Recommendations.
State of Michigan Department of Community Health
Ministry of Health and Long Term Care Performance Improvement and Compliance Branch Compliance Management Program Presentation to the North East Family.
Security Controls – What Works
Laboratory Accumulation of Hazardous Waste Presented By: Richard Smith Environmental Health & Safety Administrative Office Research and Extension Centers.
The Role of the Internal Audit Department
What SMS means for an Operator’s relationship with the CAA
U.S. Bank Payment Analytics Overview. Payment Fraud Trends 2 Reference: Association of Financial Professionals (AFP), 2011 Payments Fraud and Control.
Safety and Loss Control
National Association of College and University Attorneys 1 November 11, 2009 NACUA Fall 2009 Workshop November 2009.
Information Technology Audit
Planning an Internal Audit JM García Merced. Brainstorm.
Hazard Identification
Regulatory Requirements & Compliance: Ensuring Effective Outcomes Presented By: John E. Palmer, CPA Managing Director/Principal.
 This presentation looks at: › What is risk management › How to identify risks › How to implement an effective risk management policy to increase your.
Audits & Assessments: What are the Differences and How Do We Learn from the Results? Brown Bag March 12, 2009 Sal Rubano – Director, Office of the Vice.
FHSAA Eligibility and Compliance Allegations And Investigations Florida High School Athletic Association.
1 State of Michigan Department of Community Health Bureau of Health Systems Division of Operations Roxanne Perry February 28, 2008.
Safety Management. | Ongoing, structured Safety Committee Meetings Ongoing, scheduled Safety Inspections & Trending Relevant.
Establishing A Compliance Program: It Makes Sense
The University of California UC Financial Management Jim Corkill Controller, Accounting Services & Controls University of California, Santa Barbara November,
Coding Compliance Plan July 12, Benefits of a compliance program  To demonstrate our commitment to honest and responsible conduct, decrease the.
Delivering sustainable solutions in a more competitive world 1 © COPYRIGHT 2010 ERM.
Health and Safety Policy
Notices to Comply (NTC) and Notices of Violation (NOV) March 22, 2006 Peter Moore Yorke Engineering, LLC x24
April 14, A Watershed Date in HIPAA Privacy Compliance: Where Should You Be in HIPAA Security Compliance and How to Get There… John Parmigiani National.
Hazards Identification and Risk Assessment
The Audit as a Management Tool Vermont State Auditor’s Office – April 2009.
Auditing IT Vulnerabilities IT vulnerabilities are weaknesses or exposures in IT assets or processes that may lead to a business risk or security risk.
Developing an In-House Air Quality Audit Program March 22, 2006 Judy B. Yorke Yorke Engineering, LLC x25
Significant Provisions Of S MINERS ACT Significant Provisions Of S MINERS ACT Pertaining to Enforcement of all M/NM Mines. New ombudsman within the Office.
UMBC POLICY ON ESH MANAGEMENT & ENFORCEMENT UMBC Policy #VI
 Safety- protecting employees from injuries caused by work- related accidents  Health- employees’ freedom from physical or emotional illness.
Michelle Bruce, Report Assessment & Compliance Compliance monitoring NGER –
Energy Policy Act - BLM Cadastral Support Strategy 1 CADASTRAL PLANNING CADASTRAL SERVICES Consultation for Effective and Efficient Land Management: National.
An Overview: The Role of the Audit Committee in Monitoring, Oversight, and Compliance Derry Harper, Inspector General and Director of Compliance.
Guidance Training (F520) §483.75(o) Quality Assessment and Assurance.
Workers Comp Overview & Accident Investigations
LEA Conference, October 18, CIWMB Proposed Compliance Strategy Lorraine Van Kekerix Division Chief Compliance Evaluation & Enforcement Division.
U.S. Environmental Protection Agency Office of Inspector General Oversight of EPA FIFRA Implementation June 2, 2015 SFIREG Meeting.
Food hygiene inspection.. Food hygiene inspection Code of Practice Northern Ireland Annex 5. – Type of food and method of handling – Method of processing.
Can you conduct DSE risk assessments for under £10 each? ADVISA can! ADVISA makes DSE risk assessments quick & affordable, at a fraction of the cost of.
Test Security Guidebook West Virginia: A State Perspective.
TICKETING AND ADMINISTRATIVE PENALTY SYSTEMS (TAPS) Summer 2012.
OVERSIGHT MECHANISM OPERATIONAL PRISONS MANAGEMENT COURSE NOVEMBER 2013 HPSS,Embakasi, Kenya By Solomon Aina.
Supervising to Permanency PRESENTED BY THE ALLIANCE FOR CHILD WELFARE EXCELLENCE.
GRC: Aligning Policy, Risk and Compliance
Illness & Injury Prevention Program (IIPP) The Town of Los Gatos’ Updated Illness & Injury Prevention Program (IIPP) A Roadmap to a Safer Organization.
The Health Insurance Portability and Accountability Act of 1996 “HIPAA” Public Law
Conservation Development and Planning Department Code Compliance Flow Chart for County Code (Zoning & Land Use) Violations COMPLAINT RESEARCH AND PRIORITIZE.
Ensuring Test Data Integrity Tracy Cerda Cheryl Alcaya Minnesota Assessment Conference August 5, 2015 “Leading for educational excellence and equity. Every.
Education Queensland SMS-PR-021: Safe, Supportive and Disciplined School Environment pr/students/smspr021/
Care and Social Services Inspectorate Wales (CSSIW) Supporting the improvement of social care, child care and social services in Wales.
NAPA COUNTY Conservation Development and Planning Department Code Compliance Flow Chart Building Code Violations 1 COMPLAINT Written complaint (form, letter,
OSHA Inspections.
Care Worker Violence Prevention Focused Inspections
Developing an Effective Ethics Program
ENFORCEMENT ISSUES IN STORMWATER REGULATION
Business in Partnership Against Corruption
Health and Safety! By jack Hughes.
Quick Facts Health & Safety Management
Lesson 1  7 Basic Components of an Effective Compliance Plan
Whose Job Is It? Responsibility for Laboratory Safety and Security
Annual Enforcement Report Overview
Zero tolerance.
Presentation transcript:

March 9, 2016

Keys to an Effective Internal Audit Function 2 1. Enhance accountability 2. Earn and increase taxpayer confidence and respect for government 3. Provide an independent and objective assessment of performance

Risk-Related Standards 3 IIA Standard 2210 Government Auditing Standards

RISK: a situation involving exposure to danger 4

Risk Assessment Process 5 Identifies the threats associated with the area or activity under review; Determines the inherent risk associated with the identified threats; and Assesses whether the existing internal controls will prevent, detect, or correct instances when threats actually occur.

Develop Threat List 6 Threat T-1 The number of high-priority (ie. Health and safety or major environmental issues) violations that can be investigated is limited because code enforcement officers spend time investigating low-priority violations. T-2 The response time for high-priority violations is unnecessarily high because code enforcement officers investigate low-priority violations before high-priority violations. T-3 Code enforcement officers focus on completing tasks (such as inspections) quickly, rather than achieving compliance. T-4 CED's staffing model and processes are inefficient, resulting in a high cost per case. T-5 Some code enforcement officers give violators excessively long 'compliance periods' before issuing fines or penalties, reducing the compliance rate and lengthening the amount of time needed to achieve compliance. T-6 Code enforcement officers cite low-priority violations that are 'pet peeves' rather than focusing on higher-priority violations. T-7 Code enforcement officers are inconsistent in their use of administrative citations and civil penalties, which reduces the effectiveness of enforcement efforts and may create an equity issue.

Identify Actual and Potential Controls 7 C-1 CED assigns a priority to each violation type, with a policy of inspecting higher-priority (ie., health and safety or major environmental issues) violations more quickly. C-2 PTS assigns faster inspection due dates for high-priority violations than low-priority violations. C-3 Supervisors regularly review staff work to ensure that staff are appropriately prioritizing and responding to violation complaints. C-4 CED has performance metrics that measure response times and compliance rates by type of violation. C-5 CED has performance metrics that measure the efficiency of operations (cost per violation, etc.) C-6 PTS automatically generates reports that supervisors and managers can use to monitor inspection on-time rates, compliance rates, and efficiency.

Risk Matrix 8

9

Vulnerability Assessment 10 ThreatControls Threat's Inherent Risk Internal Control Rating Vulnerability Assessment T-1 The number of high-priority (ie. Health and safety or major environmental issues) violations that can be investigated is limited because code enforcement officers spend time investigating low-priority violations. 1-4, 6HighWeakHigh T-2 The response time for high-priority violations is unnecessarily high because code enforcement officers investigate low-priority violations before high-priority violations. 1-4, 6HighWeakHigh T-3 Code enforcement officers focus on completing tasks (such as inspections) quickly, rather than achieving compliance. 3-4, 6, 9HighWeakHigh T-4 CED's staffing model and processes are inefficient, resulting in a high cost per case. 5HighModerateModerate to High T-5 Some code enforcement officers give violators excessively long 'compliance periods' before issuing fines or penalties, reducing the compliance rate and lengthening the amount of time needed to achieve compliance. 3-4, 7, 9HighWeakHigh

Contact Information 11