Fraud Update April 27, 2016 Duane Reyhl, Partner

Slides:



Advertisements
Similar presentations
Internal Control–Integrated Framework
Advertisements

Chapter 14 Fraud Risk Assessment.
Computer Fraud Chapter 5.
Computer Fraud Chapter 5.
1 Fraud Prevention and Deterrence Pam Peters, CFE Office of Internal Audit.
© 2003 by the AICPA SAS 99: Consideration of Fraud in a Financial Statement Audit.
Albrecht, Albrecht, Albrecht, Zimbelman © 2011 Cengage Learning. All Rights Reserved. May not be copied, scanned, or duplicated, in whole or in part, except.
1 INTERNAL CONTROLS A PRACTICAL GUIDE TO HELP ENSURE FINANCIAL INTEGRITY.
Managing Fraud Risk in Government 2015 IIA District Conference March 10, 2015 David A. King, CPA, CFE – Director, Special Investigations North Carolina.
Office of the Secretary of Defense – Comptroller Financial Improvement and Audit Readiness Directorate Unclassified 17 September 2014 GAO Revised “Green.
Indiana State University Forensic Accounting By Dr. Thomas D. Harris.
Planning the Audit; Linking Audit Procedures to Risk
SAS 99: Consideration of Fraud in a Financial Statement Audit Based upon AICPA 2003 overview available at
Introduction to Fraud Examination
Managing Fraud Risk in Higher Education 2014 UNC Fall Controller's Workshop November 10, 2014 David A. King, CPA, CFE – Director, Special Investigations.
Achieving our mission Presented to Line Staff. INTERNAL CONTROLS What are they?
Fraud detection and prevention
Internal Controls, Fraud and Abuse Awareness presented by South Texas College Business Office Financial Information Services Connecting And Leading.
Control and Accounting Information Systems
AUDIT RESPONSIBILITIES AND OBJECTIVES
Fraud & Internal Control Frank M. Klaus, CPA. Fraud Definition  Fraud is the misappropriation of assets for the benefit of an individual.  “Willful.
CASH RISK ASSESSMENT. Fraud OverviewFraud SchemesWhen & How Fraud HappensOur Approach to Fraud Deterrence Overview.
IT Auditing & Assurance, 2e, Hall & Singleton C hapter 12: Fraud Schemes & Fraud Detection.
1 Chapter Three IT Risks and Controls. 2 The Risk Management Process Identify IT Risks Assess IT Risks Identify IT Controls Document IT Controls Monitor.
The Audit as a Management Tool Vermont State Auditor’s Office – April 2009.
00 CHAPTER 1 Governance, Ethics, and Managerial Decision Making © 2009 Cengage Learning.
IT Auditing & Assurance, 2e, Hall & Singleton Chapter 12: Fraud Schemes & Fraud Detection IT Auditing & Assurance, 2e, Hall & Singleton.
Copyright ©2006 by the Association of Certified Fraud Examiners, Inc. 1.
©2012 Association of Certified Fraud Examiners, Inc. 2 More than one-fifth of frauds in our study caused at least $1 million in losses. Executive Summary.
[Hayes, Dassen, Schilder and Wallage, Principles of Auditing An Introduction to ISAs, edition 2.1] © Pearson Education Limited 2007 Slide 7.1 Internal.
A Guide for Management. Overview Benefits of entity-level controls Nature of entity-level controls Types of entity-level controls, control objectives,
Internal Control Systems
©2010 Association of Certified Fraud Examiners, Inc.
Copyright © 2007 Pearson Education Canada 1 Chapter 10: Fraud Auditing.
Unit 8 Employee Theft Professor Thomas Genovese. Occupational Fraud Corruption Fraudulent Financial Statements Asset Misappropriation.
© 2003 by the AICPA SAS 99: Consideration of Fraud in a Financial Statement Audit.
Presented By: W. Andrew Powell, CPA Principal Halt, Buzas & Powell, Ltd.
Best Practices in Finance for Volunteers Brandy Vannoy, CPA Tim Rodgers, CPA July 26, 2008.
SAS 99: Consideration of Fraud in a Financial Statement Audit.
Auditors’ Dilemma – reporting requirements on Internal Financial Controls under the Companies Act 2013 and Clause 49 of the Listing agreement V. Venkataramanan.
SUNY Maritime Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal controls.
SUNY Maritime College Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal.
Director - Audit and Assurance
Auditing Concepts.
Fraud Occurs in Governments Too
Fraud’s Hidden Cost.
Types of fraud Fraudulent Financial Reporting—An intentional misstatement or omission of amounts or disclosures with the intent to deceive users. Most.
Internal Control Procedures
South Texas College Fraud Awareness and Internal Controls
Internal Control.
Developing Good Internal Control
Understanding the Principles and Their Effect on the Audit
RAISING FRAUD AWARENESS: BEST PRACTICES IN FRAUD RISK ASSESSMENTS
PEM PAL IA COP Internal Control Working Group COSO Principles
Internal control objectives
Cindy Seipel PhD CPA CFE Professor of Accounting (Auditing) NMSU
Fraud & Internal Control
Fraud & Internal Control
Management Fraud and Audit Risk
Strategies for preventing and detecting fraud
Eric Kinsherf, CPA MMAAA Conference June 12, 2018
Fraud & Internal Control
Chapter 12: Fraud Schemes & Fraud Detection
a Fraud Prevention & Detection GFOA St. Louis
Internal Controls Policies and Procedures
The Elements of appropriate Internal Controls
CCP 420: FRAUD DETECTION AND MANAGEMENT
Internal Control Internal control is the process designed and affected by owners, management, and other personnel. It is implemented to address business.
An overview of Internal Controls Structure & Mechanism
Presentation transcript:

Fraud Update April 27, 2016 Duane Reyhl, Partner

Summary 2016 Report to the Nations Risk of Fraud Establishing the Right Culture Preventive Measures

2016 ACFE Report to the Nations The 2016 ACFE Report to the Nations on Occupational Fraud and Abuse provides an analysis of 2,410 cases of occupational fraud that occurred in 114 countries throughout the world.

Costs

Who and Why?

Of the cases involving a government victim, those that occurred at the federal level reported the highest median loss ($194,000), compared to state or provincial ($100,000) and local entities ($80,000).

Conflicts of interest - Purchasing schemes - Sales schemes Bribery - Invoice kickbacks - Bid rigging Illegal gratuities Economic extortion

Conflicts of interest - Purchasing schemes - Sales schemes Bribery - Invoice kickbacks - Bid rigging Illegal gratuities Economic extortion

Asset misappropriation was by far the most common form of occupational fraud, occurring in more than 83% of cases, but causing the smallest median loss of $125,000. Financial statement fraud was on the other end of the spectrum, occurring in less than 10% of cases but causing a median loss of $975,000. Corruption cases fell in the middle, with 35.4% of cases and a median loss of $200,000.

Type of Victim Organization

Type of Victim Organization

Type of Government Victim

Schemes

Scheme Comparison Blue = All Green = Government and Public Administration Pink = Services (Professional)

Overlap of Fraud Schemes

Detection Who sounds the alarm?

Fraud Duration The longer a fraud lasted, the greater the financial damage it caused. While the median duration of the frauds in our study was 18 months, the losses rose as the duration increased. At the extreme end, those schemes that lasted more than five years caused a median loss of $850,000.

Fraud Concealment Fraudulent or altered documents Fraudulent or altered transactions Destroyed or deleted records In 94.5% of the cases in our study, the perpetrator took some efforts to conceal the fraud. The most common concealment methods were creating and altering physical documents. Page 19 of RTTN Created Fraudulent Physical Documents Altered Physical Documents Altered Transactions in the Accounting System Created Fraudulent Transactions in the Accounting System Destroyed Physical Documents Altered Electronic Documents or Files Created Fraudulent Electronic Documents or Files Created Fraudulent Journal Entries Altered Account Balances in the Accounting System Altered Account Reconciliations Deleted Electronic Documents or Files Deleted Transactions in the Accounting System Altered Journal Entries Deleted Journal Entries Other No Concealment Method

The most common detection method in our study was tips (39 The most common detection method in our study was tips (39.1% of cases), but organizations that had reporting hotlines were much more likely to detect fraud through tips than organizations without hotlines (47.3% compared to 28.2%, respectively).

Source of Tips

Source of Tips

Whistleblower Stats Percentage of Tips Received by Methods Top to bottom: Telephone hotline (40%) Email (34%) Web-based/Online Form (24%) Mailed Letter/Form (17%) Other (10%) Fax (2%)

Whistleblower E-methods Percentage of Tips Received by Methods Top to bottom: Telephone hotline (40%) Email (34%) Web-based/Online Form (24%) Mailed Letter/Form (17%) Other (10%) Fax (2%)

Whistleblower Recipient Percentage of Tips Received by Methods Top to bottom: Telephone hotline (40%) Email (34%) Web-based/Online Form (24%) Mailed Letter/Form (17%) Other (10%) Fax (2%)

Control

Control Weakness Contributors

Internal Control Weaknesses

Effective Controls

Prevention

Weigh Risks COSO - Risk Assessment – Principle 8 – The organization considers the potential for fraud in assessing risks to the achievement of objectives. Points of Focus The following points of focus highlight important characteristics relating to this principle: Considers Various Types of Fraud-The assessment of fraud considers fraudulent reporting, possible loss of assets, and corruption resulting from the various ways that fraud and misconduct can occur. Assesses Incentive and Pressures-The assessment of fraud risk considers incentives and pressures. Assesses Opportunities-The assessment of fraud risk considers opportunities for unauthorized acquisition, use, or disposal of assets, altering of the entity's reporting records, or committing other inappropriate acts. Assesses Attitudes and Rationalizations-The assessment of fraud risk considers how management and other personnel might engage in or justify inappropriate actions.

Internal Control Control Environment - Principle 1 - The organization demonstrates a commitment to integrity and ethical values. Risk Assessment – Principle 8 – The organization considers the potential for fraud in assessing risks to the achievement of objectives. Control Activities – Principle 10 - The organization selects and develops control activities that contribute to the mitigation of risks to the achievement of objectives to acceptable levels. Information and Communication – Principle 13 – The organization obtains or generates and uses relevant, quality information to support the functioning of internal control.

Internal Control – Fraud Risk COSO - Risk Assessment – Principle 8 – The organization considers the potential for fraud in assessing risks to the achievement of objectives. Principle 8 has 4 points of focus that highlight important characteristics of how an organization adopts this principle: Considers Various Types of Fraud-The assessment of fraud considers fraudulent reporting, possible loss of assets, and corruption resulting from the various ways that fraud and misconduct can occur. Assesses Incentive and Pressures-The assessment of fraud risk considers incentives and pressures. Assesses Opportunities-The assessment of fraud risk considers opportunities for unauthorized acquisition, use, or disposal of assets, altering of the entity's reporting records, or committing other inappropriate acts. Assesses Attitudes and Rationalizations-The assessment of fraud risk considers how management and other personnel might engage in or justify inappropriate actions.

Internal Control – Culture Control Environment - Principle 1 - The organization demonstrates a commitment to integrity and ethical values. Risk Assessment – Principle 8 – The organization considers the potential for fraud in assessing risks to the achievement of objectives. Control Activities – Principle 10 - The organization selects and develops control activities that contribute to the mitigation of risks to the achievement of objectives to acceptable levels. Information and Communication – Principle 13 – The organization obtains or generates and uses relevant, quality information to support the functioning of internal control.

Internal Control – Detection Control Environment - Principle 1 - The organization demonstrates a commitment to integrity and ethical values. Risk Assessment – Principle 8 – The organization considers the potential for fraud in assessing risks to the achievement of objectives. Control Activities – Principle 10 - The organization selects and develops control activities that contribute to the mitigation of risks to the achievement of objectives to acceptable levels. Information and Communication – Principle 13 – The organization obtains or generates and uses relevant, quality information to support the functioning of internal control.

COSO – Control Environment 5 Principles Principle 1 - The organization demonstrates a commitment to integrity and ethical values. 4 points of focus The next slide shows the 4 points of focus: Tone at the top Establish standards of conduct Evaluate adherence Address deviations

Commitment to Integrity / Ethics Tone at the top Establish standards of conduct Evaluate adherence Address deviations COSO Principle 1 – the 4 points of focus One element of a code of conduct might be an anti-fraud policy

Risk Considerations What can happen? What is the potential loss? Likelihood of occurrence? How do you mitigate?

Risk Mitigation Noncontrollable Controllable Internal control Insurance Acceptance

Anti-Fraud Controls - Frequency

Anti-Fraud Controls – Govt

Hotline Effect Hotline challenges: Cost Trust Reliability Vetting Feedback

Resources

Fraud-Related Information 2016 Report to the Nations www.acfe.com GFOA Best Practices www.gfoa.org The Accounting Procedures Manual for Local Units of Government in Michigan references the Federal Green Book, COSO, and GFOA Best Practices

Questions and Discussion