12-CRS-0106 REVISED 8 FEB 2013 MEA (Monitor, Evaluate, and Assess) CDG4I3 / Audit Sistem Informasi Angelina Prima K | Gede Ary W. KK SIDE - 2014.

Slides:



Advertisements
Similar presentations
COBIT 5 and GRC Date.
Advertisements

Major Accident Prevention Policy (MAPP) and Safety Management System (SMS) in the Context of the Seveso II Directive.
[Organisation’s Title] Environmental Management System
PRESENTATION ON MONDAY 7 TH AUGUST, 2006 BY SUDHIR VARMA FCA; CIA(USA) FOR THE INSTITUTE OF INTERNAL AUDITORS – INDIA, DELHI CHAPTER.
USG INFORMATION SECURITY PROGRAM AUDIT: ACHIEVING SUCCESSFUL AUDIT OUTCOMES Cara King Senior IT Auditor, OIAC.
Sodexo.com Group Internal Audit. page 2 helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and.
Internal Control.
COBIT - II.
Chapter © 2009 Pearson Education, Inc. Publishing as Prentice Hall.
Contractor Assurance Discussion Forrestal Building Washington, D.C. December 14, 2011.
Quality evaluation and improvement for Internal Audit
Internal Control in a Financial Statement Audit
BIT-224 Audit Muhammad Khurshid Khan THE DEMAND FOR AUDITING Why do organizations request an audit? –Agency relationship Evidence supporting a demand.
COBIT Framework Introduction. Problems with IT? – Increasing pressure to leverage technology in business strategies – Growing complexity of IT environments.
Purpose of the Standards
Section 1 Guidelines for Office of Inspector General Quality Control and Assurance Programs Peer Review Training – National Science Foundation August 16,
PAINTING THE FULL PICTURE
INTERNAL CONTROL OVER FINANCIAL REPORTING
Session 4: Good Governance: How SAIs influence Good Governance in Public Administration Zahira Ravat 27 & 28 May 2014.
Internal Auditing and Outsourcing

The role of internal audit in enterprise-wide risk management (ERM)
Continual Service Improvement Process
Risk Management Report to Audit Committee 26 September 2006 Lee Harris Assistant Chief Executive.
Basic Elements of Control Copyright © Houghton Mifflin Company. All rights reserved.20–1.
IAEA International Atomic Energy Agency Reviewing Management System and the Interface with Nuclear Security (IRRS Modules 4 and 12) BASIC IRRS TRAINING.
Internal controls. Session objectives Define Internal Controls To understand components of Internal Controls, control environment and types of controls.
Monitoring Internal Control Systems Johann Rieser Senior Auditor, Ministry of Finance, Vienna.
Internal Control in a Financial Statement Audit
How does the ECA assess Member States’ internal control systems? Workshop on Audit/Evaluation of Public Internal Financial Control Systems (PIFC) Ankara,
Internal Control in a Financial Statement Audit
CCAB Training Providers Event 17 November 2008 Reviews Required by QAC Heather Briers Director Chartered Accountants Regulatory Board.
Key Individual chapter 3. CO must submit reports to Registrar Phase 1 and Phase 2 qualifications and experience CPD requirements Registrar may withdraw.
Learning Objectives LO5 Illustrate how business risk analysis is used to assess the risk of material misstatement at the financial statement level and.
1 Today’s Presentation Sarbanes Oxley and Financial Reporting An NSTAR Perspective.
Roadmap to Maturity FISMA and ISO 2700x. Technical Controls Data IntegritySDLC & Change Management Operations Management Authentication, Authorization.
TI Tata Kelola Sistem dan Teknologi Informasi BISNIS &
The Connection between Risk Management and Internal Control in Organizations Mag. Norbert Wagner Budapest,
Name Position Organisation Date. What is data integration? Dataset A Dataset B Integrated dataset Education data + EMPLOYMENT data = understanding education.
1 Internal Audit. 2 Definition Is an independent activity established by management to examine and evaluate the organization’s risk management processes.
Adaptive Processes Consulting Pvt. Ltd. An ISO 9001:2000 Certified Company This document is the property of and proprietary to.
BZUPAGES.COM Iram mumtaz Roll no Quality audit “An audit is a systematic and independent examination to determine whether quality activities and.
S3: Understanding the Business. Session objective To explain why understanding of the business of the entity is important for the auditor To explain why.
S5: Internal controls. What is Internal Control Internal control is a process Internal control is a process Internal control is effected by people Internal.
Enhancing the Effectiveness, Efficiency, Transparency, and Accountability of Operations of the Philippine Information Agency through Improvement of Internal.
12-CRS-0106 REVISED 8 FEB 2013 APO (Align, Plan and Organise)
12-CRS-0106 REVISED 8 FEB 2013 BAI (Build, Acquire, and Implement) CDG4I3 / Audit Sistem Informasi Angelina Prima K | Gede Ary W. KK SIDE
Vector INTERNAL CONTROL Mike Trigg. vector WHAT IS INTERNAL CONTROL? A key part of effective corporate governance Policies and processes to: - make operations.
Chapter 5 Evaluating the Integrity and Effectiveness of the Client’s Control Systems.
Presented by. Information! Information is a key resource for all enterprises. Information is created, used, retained, disclosed and destroyed. Technology.
INTERNAL AUDIT BRIEFING Business Objectives Business Objectives: What are they and how are they used?
Department of Computer Science Introduction to Information Security Chapter 8 ISO/IEC Semester 1.
12-CRS-0106 REVISED 8 FEB 2013 EDM (Evaluate, Direct, and Monitor) CDG4I3 / Audit Sistem Informasi Angelina Prima K | Gede Ary W. KK SIDE
McGraw-Hill/Irwin © The McGraw-Hill Companies 2010 Internal Control in a Financial Statement Audit Chapter Six.
Integration of Financial Operations and IT Cybersecurity Controls Integration of Financial Operations and IT Cybersecurity Controls March 18, 2016 Mr.
Chapter 6 Internal Control in a Financial Statement Audit McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
Governance, Risk and Ethics. 2 Section A: Governance and responsibility Section B: Internal control and review Section C: Identifying and assessing risk.
What Is ISO ISO 27001, titled "Information Security Management - Specification With Guidance for Use", is the replacement for BS It is intended.
EIA approval process, Management plan and Monitoring
Alia Al-Nujaidi
IIASA Governance Review
Audit & Risk Management
Chapter 9 Control, security and audit
The view from the ‘regulator’
COBIT 5 and GRC Date.
December 5, 2018.
COBIT 5 and GRC Date.
COBIT 5 and GRC Date.
An overview of Internal Controls Structure & Mechanism
COBIT 5 and GRC Date.
Presentation transcript:

12-CRS-0106 REVISED 8 FEB 2013 MEA (Monitor, Evaluate, and Assess) CDG4I3 / Audit Sistem Informasi Angelina Prima K | Gede Ary W. KK SIDE

12-CRS-0106 REVISED 8 FEB 2013 MEA (Monitor, Evaluate and Assess) 01 Monitor, evaluate and assess performance and conformance 02 Monitor, evaluate and assess the system of internal control 03 Monitor, evaluate and assess compliance with external requirements

12-CRS-0106 REVISED 8 FEB 2013 MEA01 Monitor, evaluate and assess performance and conformance Process Description Collect, validate and evaluate business, IT and process goals and metrics. Monitor that processes are performing against agreed-on performance and conformance goals and metrics and provide reporting that is systematic and timely. Process Purpose Statement Provide transparency of performance and conformance and drive achievement of goals. MEA01

12-CRS-0106 REVISED 8 FEB 2013

MEA02 Monitor, evaluate and assess the system of internal control Process Description Continuously monitor and evaluate the control environment, including self-assessments and independent assurance reviews. Enable management to identify control deficiencies and inefficiencies and to initiate improvement actions. Plan, organise and maintain standards for internal control assessment and assurance activities. Process Purpose Statement Obtain transparency for key stakeholders on the adequacy of the system of internal controls and thus provide trust in operations, confidence in the achievement of enterprise objectives and an adequate understanding of residual risks. MEA02

12-CRS-0106 REVISED 8 FEB 2013

MEA03 Monitor, evaluate and assess compliance with external requirements Process Description Evaluate that IT processes and IT-supported business processes are compliant with laws, regulations and contractual requirements. Obtain assurance that the requirements have been identified and complied with, and integrate IT compliance with overall enterprise compliance. Process Purpose Statement Ensure that the enterprise is compliant with all applicable external requirements. MEA03

12-CRS-0106 REVISED 8 FEB 2013

THANK YOU