Prepared by Wa'el Bibi,CPA,CIA,CISA1 Internal Control Integrated Framework An Overview.. Bibi Consulting COSO’s Source: COSO’s Internal Control Integrated.

Slides:



Advertisements
Similar presentations
Internal Control Integrated Framework
Advertisements

INTERNAL AUDIT PROCESS Pre-Audit Presentation. OBJECTIVES OF PRESENTATION  Provide a basic understanding of internal audit  Provide a basic awareness.
Internal Control.
1 INTERNAL CONTROLS A PRACTICAL GUIDE TO HELP ENSURE FINANCIAL INTEGRITY.
The Islamic University of Gaza
Accountability and Grants Management:
INTERNAL CONTROL. INTERNAL CONTROL DEFINED  INTERNAL CONTROL IS A PROCESS - EFFECTED BY AN ENTITY'S BOARD OF DIRECTORS, MANAGEMENT, AND OTHER PERSONNEL.
Standar Pekerjaan Lapangan: Pemahaman Memadai atas Pengendalian Intern Pertemuan 5.
6-1 McGraw-Hill/Irwin ©2002 by The McGraw-Hill Companies, Inc. All rights reserved. Chapter 6 Internal Control Evaluation: Assessing Control Risk.
Internal Control. COSO’s Framework Committee of Sponsoring Organizations 1992 issued a white paper on internal control Since this time, this framework.
Expanded Version of COSO a presentation by Steve Wadleigh Expanded Version of COSO a presentation by Steve Wadleigh Standards for Internal Control in the.
Internal Control. COSO’s Framework Committee of Sponsoring Organizations 1992 issued a white paper on internal control Since this time, this framework.
Presented By: Donna Denker, CPA Donna Denker & Associates.
1 Dept of Finance & Management. 2  In January 2005, the Department of Finance & Management embarked on a statewide initiative to strengthen internal.
Sarbanes-Oxley Project Summary of COSO Framework Presented by Larry Dillehay & Scott Reitan Parkfield Group LLC.
Information Systems Controls for System Reliability -Information Security-
INTERNAL CONTROL OVER FINANCIAL REPORTING
Elements of Internal Controls Preventing Fraud, Waste, and Abuse in Urban and Rural Transit Systems.
Control environment and control activities. Day II Session III and IV.
Internal Control and Control Self-Assessment
Control and Accounting Information Systems
Central Piedmont Community College Internal Audit.
5-1 McGraw-Hill/Irwin ©2005 by the McGraw-Hill Companies, Inc. All rights reserved. Chapter 5 Internal Control Evaluation: Assessing Control Risk “If everything.
Chapter 3 Internal Controls.
Presented to President’s Cabinet. INTERNAL CONTROLS are the integration of the activities, plans, attitudes, policies and efforts of the people of an.
Introduction to Internal Control Systems
INTERNAL CONTROL OVER FINANCIAL REPORTING
Implementation Issues of Sarbanes-Oxley CASE Presentation September 23, 2004 By Denise Farnan.
Internal controls. Session objectives Define Internal Controls To understand components of Internal Controls, control environment and types of controls.
Enterprise Risk Management
Chapter 5 Internal Control over Financial Reporting
Monitoring Internal Control Systems Johann Rieser Senior Auditor, Ministry of Finance, Vienna.
Introduction In 1992, the Committee Of Sponsoring Organizations of the Treadway Commission (COSO) published Internal Control-Integrated Framework (1992.
Internal Control in a Financial Statement Audit
NO FRAUD LEFT BEHIND The Effect of New Risk Assessment Auditing Standards on Schools Runyon Kersteen Ouellette.
Learning Objectives LO5 Illustrate how business risk analysis is used to assess the risk of material misstatement at the financial statement level and.
5-1 McGraw-Hill/Irwin ©2007 by the McGraw-Hill Companies, Inc. All rights reserved. Chapter 5 Internal Control Evaluation: Assessing Control Risk.
[Hayes, Dassen, Schilder and Wallage, Principles of Auditing An Introduction to ISAs, edition 2.1] © Pearson Education Limited 2007 Slide 7.1 Internal.
McGraw-Hill/Irwin © 2003 The McGraw-Hill Companies, Inc., All Rights Reserved. 6-1 Chapter 6 CHAPTER 6 INTERNAL CONTROL IN A FINANCIAL STATEMENT AUDIT.
Chapter 9: Introduction to Internal Control Systems
Auditing Internal Control Studies & Risk Assessment Chapter 9 Internal Control Studies & Risk Assessment Chapter 9.
A Guide for Management. Overview Benefits of entity-level controls Nature of entity-level controls Types of entity-level controls, control objectives,
S5: Internal controls. What is Internal Control Internal control is a process Internal control is a process Internal control is effected by people Internal.
1  Introduction of the Internal Controls Team  Discuss the Internal Controls initiative for the State of Kansas  Present the Internal Controls Managers.
Modern Auditing: Assurance Services and the Integrity of Financial Reporting, 8 th Edition Modern Auditing: Assurance Services and the Integrity of Financial.
Internal Control Chapter 7. McGraw-Hill/Irwin © 2006 The McGraw-Hill Companies, Inc., All Rights Reserved. 7-2 Summary of Internal Control Definition.
Copyright © 2007 Pearson Education Canada 9-1 Chapter 9: Internal Controls and Control Risk.
Chapter 5 Evaluating the Integrity and Effectiveness of the Client’s Control Systems.
INTERNAL AUDIT PROCESS PRE-AUDIT PRESENTATION. OBJECTIVES OF PRESENTATION  PROVIDE A BASIC UNDERSTANDING OF INTERNAL AUDIT  PROVIDE A BASIC AWARENESS.
INTERNAL CONTROLS A STUDY TO THE REQUIREMENT OF INTERNAL CONTROL SYSTEMS.
6/11/2016 Filename Session 135 Control Practices and Control Theories Jeff Roth, CISA.
Governance, risk and ethics. 2 Section A: Governance and responsibility Section B: Internal control and review Section C: Identifying and assessing risk.
#327 – Legal and Regulatory Risk: Silent and Possibly Deadly Deborah Frazer, CPA CISA CISSP Senior Director, Internal Audit PalmSource, Inc.
Internal Control. McGraw-Hill/Irwin © 2004 The McGraw-Hill Companies, Inc., All Rights Reserved. 7-2 Summary of Internal Control Definition A process...designed.
Chapter 6 Internal Control in a Financial Statement Audit McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
Auditors’ Dilemma – reporting requirements on Internal Financial Controls under the Companies Act 2013 and Clause 49 of the Listing agreement V. Venkataramanan.
SUNY Maritime Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal controls.
SUNY Maritime College Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal.
Modern Auditing: Assurance Services and the Integrity of Financial Reporting, 8th Edition William C. Boynton California Polytechnic State University at.
Internal Control.
Internal Control in a Financial Statement Audit
Understanding the Principles and Their Effect on the Audit
Internal control objectives
Internal Control Integrated Framework
Internal control - the IA perspective
Tim Grow, CPA Charleston Office Managing Shareholder
The control environment
INTERNAL CONTROLS AND THE ASSESSMENT OF CONTROL RISK
An overview of Internal Controls Structure & Mechanism
OCPS Internal Controls and Stakeholder Value
Presentation transcript:

Prepared by Wa'el Bibi,CPA,CIA,CISA1 Internal Control Integrated Framework An Overview.. Bibi Consulting COSO’s Source: COSO’s Internal Control Integrated Framework

Prepared by Wa'el Bibi,CPA,CIA,CISA2 What is COSO? Who are the sponsors?

Prepared by Wa'el Bibi,CPA,CIA,CISA3 What Is Internal Control ? “ A process effected by an entity’s board of directors,management and other personnel,designed to provide reasonable assurance regarding the achievements of objectives in the following categories:  Effectiveness & efficiency of operations.  Reliability of financial reporting.  Compliance with applicable laws and regulations.”

Prepared by Wa'el Bibi,CPA,CIA,CISA4  Internal control is a process. It is a means to an end, not an end in itself.  Internal control is effected by people. It ’ s not merely policy manuals and forms, but people at every level of an organization.  Internal control can be expected to provide only reasonable assurance, not absolute assurance, to an entity ’ s management and board.  Internal control is geared to the achievement of objectives in one or more separate but overlapping categories.

Prepared by Wa'el Bibi,CPA,CIA,CISA5 Components Of Internal Control  Control Environment.  Risk Assessment.  Control Activities.  Information & Communication.  Monitoring.

Prepared by Wa'el Bibi,CPA,CIA,CISA6

17 Principles Prepared by Wa'el Bibi,CPA,CIA,CISA7 Source: Deloitte

Prepared by Wa'el Bibi,CPA,CIA,CISA8 Control Environment  Sets the tone of the organization.  The foundation for all other components.  It includes the integrity, ethical values and competence of the people.  Reflects: management’s philosophy & operating style, the way management assigns authority and responsibility and organizes and develops its people, and the attention and direction provided by the board of directors.

Prepared by Wa'el Bibi,CPA,CIA,CISA9 Risk Assessment  Every entity faces internal &external risks.  Every entity sets objectives.  Risk assessment is the identification and analysis of relevant risks to achievements of the objectives.

Prepared by Wa'el Bibi,CPA,CIA,CISA10 Control Activities  The policies and procedures that help ensure management directives are carried out.  They help ensure that necessary actions are taken to address risks.  Control activities occur throughout the entity at all levels and in all functions.  They include activities such as approvals, authorization, reconciliations and segregation of duties.

Prepared by Wa'el Bibi,CPA,CIA,CISA11 Information & Communication  Relevant information must be identified, captured and communicated in a form & timeframe that enables people to carry out their responsibilities.  Information systems produce reports containing operational, financial and compliance –related information that make it possible to run and control the business.  Effective communication must occur in a broader sense, flowing down, across and up the organization.

Prepared by Wa'el Bibi,CPA,CIA,CISA12 Monitoring  Internal control systems need to be monitored.  Types of monitoring: - ongoing during the course of operations. - evaluation for which the scope and frequency will depend primarily on an assessment of risks and the effectiveness of ongoing monitoring procedures.

Prepared by Wa'el Bibi,CPA,CIA,CISA13 Responsibilities Who is responsible for internal control ? Everyone ! Board of Directors : Governance,guidance & oversight Management : CEO is the owner Internal Auditors: evaluate & monitor Other personnel :information and communication

Prepared by Wa'el Bibi,CPA,CIA,CISA14 What Internal Control Can Do  It can help achieve performance & profitability targets.  It can help prevent loss of resources.  It can help ensure reliable financial reporting.  It can help ensure compliance with laws. It can help an entity get to where it wants to go,and avoid pitfalls and surprises along the way.

Prepared by Wa'el Bibi,CPA,CIA,CISA15 What Internal Control Cannot Do  It cannot ensure success.  It cannot ensure the reliability of financial reporting.  It cannot ensure compliance with laws and regulations. Internal controls,no matter how well designed and operated,can provide only reasonable assurance to management regarding achievements of an entity’s objectives.

Prepared by Wa'el Bibi,CPA,CIA,CISA16 Limitations of Internal Control  Judgement.  Breakdowns.  Management override.  Collusion.  Costs Versus Benefits.

Prepared by Wa'el Bibi,CPA,CIA,CISA17 End of COSO Presentation

Prepared by Wa'el Bibi,CPA,CIA,CISA18 Types of Controls  Preventive  Detective  Corrective  Directive

Prepared by Wa'el Bibi,CPA,CIA,CISA19 Preventive Controls  Are designed to discourage errors or irregularities from occurring.  They are more cost-effective than detective controls.  Examples: - Segregation of duties - Authorization - Firewalls - Passwords

Prepared by Wa'el Bibi,CPA,CIA,CISA20 Detective Controls  Are designed to search for and identify errors after they have occurred.  They are more expensive than preventive controls.  Examples: - Reconcilaitions - Analysis - Periodic Inventory - Surveillance cameras - Audit

Prepared by Wa'el Bibi,CPA,CIA,CISA21 Corrective Controls  corrective controls are designed to restore a system to an approved/last known good state.  Examples: - Anti Virus software. - Adjusting entries.

Prepared by Wa'el Bibi,CPA,CIA,CISA22 Directive Controls  Are designed to provide direction from management. (Actions taken to cause or encourage a desirable event to occur).  Examples: - Job Description - Training - Policies and procedures.