Definition IPPF Audit Standard 2120 – Risk Management

Slides:



Advertisements
Similar presentations
OPERATING EFFECTIVELY AT WESD. What is Internal Control? A process designed to provide reasonable assurance the organizations objectives are achieved.
Advertisements

Risk The chance of something happening that will have an impact on objectives. A risk is often specified in terms of an event or circumstance and the consequences.
Roadmap for Sourcing Decision Review Board (DRB)
Auditing Concepts.
Group 3 John Gregory John Marsh Gerri Houston Samantha McNeily.
1 INTERNAL CONTROLS A PRACTICAL GUIDE TO HELP ENSURE FINANCIAL INTEGRITY.
Managing the Information Technology Resource Jerry N. Luftman
1 Purchasing and Procurement Processes Module Four Revision Date: 2/06/2015.
PRESENTED BY TRUST THOMAS EROMOSELE STUDENT NO:
An Introduction to AlarmInsight
Degree and Graduation Seminar Project Management Processes
BA 378: Accounting Information Systems Instructor: Dr. James R. Coakley.
9 Closing the Project Teaching Strategies
McGraw-Hill/Irwin © 2006 The McGraw-Hill Companies, Inc. All rights reserved. BUSINESS DRIVEN TECHNOLOGY Business Plug-In B10 Project Management.
12-1 Project Management from Simple to Complex This work is licensed under the Creative Commons Attribution-Noncommercial-Share Alike 3.0 Unported.
Business Analysis and Essential Competencies
Internal Control in a Financial Statement Audit
© 2015 Cengage Learning. All Rights Reserved. May not be scanned, copied or duplicated, or posted to a publicly accessible website, in whole or in part.
Learning Outcomes At the end of this chapter you should be able to: Explain the meaning and purpose of accounting; Describe the role of accounting as.
Risk Management for Technology Projects Geography 463 : GIS Workshop May
1 What’s Next for Financial Management Line of Business (FMLoB)? AGA/GWSCPA 6 th Annual Conference Dianne Copeland, Director, FSIO May 8, 2007.
SECTION 1 THE PROJECT MANAGEMENT FRAMEWORK
Project Life Cycle.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 6-1 Chapter Six Internal Control in a Financial Statement Audit.
RTI, Nagpur 1 Day 3- Session I  Role of audit in consideration of fraud.
RECOMMENDATIONS OF THE GOVERNOR ’ S TASK FORCE ON CONTRACTING AND PROCUREMENT REVIEW Report Overview PD Customer Forum September 2002.
Revision N° 11ICAO Safety Management Systems (SMS) Course01/01/08 Module N° 9 – SMS operation.
Session 2: Developing a Comprehensive M&E Work Plan.
International Safety Rating System
AUDIT STAFF TRAINING WORKSHOP 13 TH – 14 TH NOVEMBER 2014, HILTON HOTEL NAIROBI AUDIT PLANNING 1.
Chapter 6 Internal Control in a Financial Statement Audit McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
Governance, Risk and Ethics. 2 Section A: Governance and responsibility Section B: Internal control and review Section C: Identifying and assessing risk.
Pipeline Safety Management Systems
Modern Auditing: Assurance Services and the Integrity of Financial Reporting, 8th Edition William C. Boynton California Polytechnic State University at.
Auditing Concepts.
An Overview on Risk Management
Software Quality Control and Quality Assurance: Introduction
BUSINESS PLUG-IN B15 Project Management.
BUSINESS DRIVEN TECHNOLOGY
10 Risk Management.
Systems Analysis and Design in a Changing World, 4th Edition
Software Quality Assurance
Project Human Resource Management
Internal Control in a Financial Statement Audit
Fundamentals of Information Systems, Sixth Edition
CS4311 Spring 2011 Process Improvement Dr
Risk Management for Technology Projects
Project Integration Management
City of Norfolk Office of the Purchasing Agent
CHARTER – User Intelligence Groups
ServiceNow Implementation Knowledge Management
UNIT V QUALITY SYSTEMS.
Chapter 4 Systems Planning and Selection
ITPD ISSUE MANAGEMENT PROCESS SEPTEMBER 5, 2008
Air Carrier Continuing Analysis and Surveillance System (CASS)
Defining Internal Control
Project Charter START IT! By Catherine B. Calio, PMP
Here are some top tips to help you bake responsible data into your project design:.
Management of Change Report Errors to Management.
Alignment of COBIT to Botswana IT Audit Methodology
Lockheed Martin Canada’s SMB Mentoring Program
Project Management Process Groups
Project Management Group
Goal-Driven Software Measurement
CHAPTER 4 - ORGANISATION AND JOB DESIGN
Internal Control Internal control is the process designed and affected by owners, management, and other personnel. It is implemented to address business.
ISSUE MANAGEMENT PROCESS MONTH DAY, YEAR
Metrics That Work for You
By: Andi Indahwaty Sidin A Critical Review of The Role of Clinical Governance in Health Care and its Potential Application in Indonesia.
Management of Change GROUP HSE RULE (CR-GR-HSE-302)
Presentation transcript:

Definition IPPF Audit Standard 2120 – Risk Management A method by which both management and staff collectively identify and evaluate risks and associated controls in sessions facilitated by an Internal Audit (IA) team member. A process to identify potential events or circumstances that may affect the business unit’s ability to meet its objectives and to create a plan to handle those negative potential events.

RCSA versus Audit RCSA differs from an audit in that the scope of an RCSA is determined by management; the scope of an internal audit is determined by Internal Audit. An audit includes testing of transactions to determine whether internal controls are operating as expected. RCSA typically does not include testing within its scope of work. Any recommendations resulting from an audit are formally followed up on by IA. Follow up for action items resulting from an RCSA project are the responsibility of management.

Benefits Offers a proactive, structured framework for assessing and controlling risks potentially before consequences occur. Provides reasonable assurance to stakeholders regarding the achievement of the unit's objectives. Increases knowledge and understanding of risk and control concepts. Integrates risk management practices into the organization’s culture. Creates a relationship-building opportunity.

Steps in RCSA Obtain an understanding of the process selected. Hold facilitated session in which participants will: Identify selected process objective. Identify significant risks to achieving objective. Identify and evaluate control activities to mitigate those risks. Discuss gaps in control design, and Develop an action plan to fill control gaps and mitigate identified risks. Reporting

Fleet Management - Tire Repair and Replacement Objective: To ensure the tires on our fleet and equipment are repaired and or replaced at a frequency that is cost effective and ensures the safety of our operators. Participants: 4 levels of management from HQ and every service center as well as operational support staff.

EXAMPLE

EXAMPLE

Fleet Management - Tire Repair and Replacement Project Highlights: Operational support staff were able to communicate difficulties with our software used to create requisitions. Purchasing immediately developed a temporary workaround to relieve frustration, increase efficiency of requisition entry and greatly reduce the need for the use of a MISC line item. Provided assurance that proper approvals were being obtained before the vendor started work.

Fleet Management - Tire Repair and Replacement Project Highlights: Proposed the development of an on-call log to better track the repairs or replacements performed after hours. Identified key replacement vs. repair decisions so that management could formalize expectations in the procedure. Identified which key data points should be captured in work orders for tire repairs and replacements to allow Fleet management to analyze process performance. Obtained a cost savings of roughly $290k

Other Processes Reviewed Computer Hardware Inventory Management Employment Eligibility Verification Contract Solicitations Supply

Reminders… There will be different outcomes based on the level of participation. There is more than one way to perform or report on RCSAs. The process should and will constantly evolve as management’s understanding of risks and controls evolve.

Questions