Technology Applications in the Age of Integrity Integrity Forum 2006 Tony Murphy Vice President, Worldwide Sales ACL Services Ltd.

Slides:



Advertisements
Similar presentations
Leveraging an Integrated ERP and CRM System - Featuring Sage MAS 500 ERP and Sage SalesLogix CRM.
Advertisements

Risk The chance of something happening that will have an impact on objectives. A risk is often specified in terms of an event or circumstance and the consequences.
Computer Assisted Audit Tools
Internal Control–Integrated Framework
Continuous Auditing Global Technology Auditing Guide 3 Twelfth Continuous Auditing and Reporting Symposium Rutgers Business School November.
Strategy 2022: A Holistic View Tony Hayes International President ISACA © 2012, ISACA. All rights reserved.
Outcomes focused regulation and compliance in practice Peter Scott Peter Scott Consulting
AUDIT COMMITTEE FORUM TM ACF Roundtable IT Governance – what does it mean to you as an audit committee member July 2010 The AUDIT COMMITTEE FORUM TM is.
Practical Issues of Implementing Continuous Assurance Systems Presented by John Verver CA, CISA, CMC to the 5 th Continuous Assurance Symposium November.
Continuous Auditing Technology Adoption in Leading Internal Audit Organizations Miklos A. Vasarhelyi Siripan Kuenkaikaew.
April 28, 2015 Virginia Tech. Data Analytics “Analytics is the combustion engine of business, and it will be necessary for organizations that want to.
Viewpoint Consulting – Committed to your success.
Enterprise Systems.
SE 464: Industrial Information systems Systems Engineering Department Industrial Information System LAB 02: Introduction to SAP.
Evolution of the Siemens Experience in its Effort to Test IT Controls on a Continuous Basis Rolf Haardörfer IT Audit Professional Siemens Corporation Tenth.
CISB444 - Strategic Information Systems Planning
The Information Systems Audit Process
Audit Automation as the Foundation of Continuous Auditing Michael Alles Alexander Kogan Miklos A. Vasarhelyi J. Donald Warren, Jr.
U.S. Bank Payment Analytics Overview. Payment Fraud Trends 2 Reference: Association of Financial Professionals (AFP), 2011 Payments Fraud and Control.
Continuous Auditing. Items to be discussed include: Developing a Continuous Auditing Program Continuous Auditing Process Benefits of Continuous Auditing.
“The Impact of Sarbanes Oxley, An Evolving Best Practice” Ellen C. Wolf Senior Vice President & Chief Financial Officer American Water National Association.
Click to add text © 2010 IBM Corporation OpenPages Solution Overview Mark Dinning Principal Solutions Consultant.
Continuous Monitoring as a tool for Fraud Detection Anton Bouwer CQS Technology Holdings
PAINTING THE FULL PICTURE
SAS 112: The New Auditing Standard Jim Corkill Controller Accounting Services & Controls.
ACL Solutions for Continuous Auditing and Monitoring John Verver CA, CISA, CMC Vice President, Professional Services & Product Strategy ACL Services Ltd.
COSO Framework Update IIA Columbus Chapter May 17, 2013
Information Technology Audit
How Will Continuous Auditing and XBRL-GL Work Together to Provide Improved Business Value? Nigel J. R. Matthews, BASc, CA ACL Services Ltd.
IT & Business Models Value chain and organizational systems Chp. 10.
DAA and GEP Orlando Audit & Compliance or Audit vs. Compliance.
Presenting The Broker-Dealer Certification Tool The Compliance Department Inc. Broker Dealer Compliance Consultants Compliance SCORE Powered by Keane BRMS.
DAS: State Controller's Division1January 2010 Department of Administrative Services State Controller’s Division Updated January, 2010.
Practical Implementation of Automated Assessment Tools for the IT Auditor John A. Otte, CISSP, CISA, CFE, EnCE, MSIA Director, Strategic Services FishNet.
NIST Special Publication Revision 1
Chapter 07 Internal Control McGraw-Hill/IrwinCopyright © 2014 by The McGraw-Hill Companies, Inc. All rights reserved.
INTERNAL CONTROL OVER FINANCIAL REPORTING
Chapter 5 Internal Control over Financial Reporting
Stepped Up ERM Teresa McKay Director, Defense Finance and Accounting Service ASMC Washington Chapter September 17, 2008.
Name, Title. Presentation Title Name, Job Title Global Digital Information Created and Shared (Posts, Pictures, Documents, Tweets) The Data Explosion.
Enterprise Resource Planning ERP Systems
Enterprise Risk Management Chapter One Prepared by: Raval, Fichadia Raval Fichadia John Wiley & Sons, Inc
ELITE PROCESS REVIEW A TOOL FOR OUR TIMES PRESENTED BY SHELLEY ALVORD CPA.
McGraw-Hill/Irwin © 2008 The McGraw-Hill Companies, All Rights Reserved Chapter 12 Integrating the Organization from End to End – Enterprise Resource Planning.
Global Technology Auditing Guide 3 Presented by Melanie Cloran.
Core Banking Transformation: A Roadmap to a Successful Core Banking Product Implementation - PMI Virtual Library | | © 2008 Kannan S. Ramakrishnan.
Accounting/Finance Ms. Egyirba Walker-Arthur Accounting/Finance Program Manager
An Update of COSO’s Internal Control–Integrated Framework
A Guide for Management. Overview Benefits of entity-level controls Nature of entity-level controls Types of entity-level controls, control objectives,
Rob Davidson, Partner Technology Specialist Microsoft Management Servers: Using management to stay secure.
Internal Control Systems
Kathy Corbiere Service Delivery and Performance Commission
Or How to Gain and Sustain a Competitive Advantage for Your Sales Team Key’s to Consistently High Performing Sales Organizations © by David R. Barnes Jr.
The Second Annual Medical Device Regulatory, Reimbursement and Compliance Congress Presented by J. Glenn George Thursday, March 29, 2007 Day II – Track.
Ensure Our Future. WAR Stories Financial Transactions System Assumptions instead of Detail in SOW Include Purchasing = Value KPMG audited process and.
Data Center Management Microsoft System Center. Objective: Drive Cost of Data Center Management 78% Maintenance 22% New Issue:Issue: 78% of IT budgets.
Management Information Systems Islamia University of Bahawalpur Delivered by: Tasawar Javed Lecture 3b.
Notes accompany this presentation. Please select Notes Page view. These materials can be reproduced only with written approval from Gartner. Such approvals.
MEASURING BPM SOFTWARE ROI AND ITS BENEFITS IN RISK MANAGEMENT PROCESS AUTOMATION Contact us at | Web : | Tel: 1.
Unifying Talent Management. Harnessing the Power of Workforce Intelligence in Talent Planning to Drive Business Performance.
1Third Party Assurance Optimization and Control RationalizationCopyright © 2016 Deloitte Development LLC. All rights reserved. Third-Party Assurance (TPA)
Continuous Auditing: A Core Competency for Regulatory Compliance
Strategic Information Systems Planning
Risk Management and the Treasury Function
Speaker’s Name, SAP Month 00, 2017
Defining Internal Control
An Update of COSO’s Internal Control–Integrated Framework
MAZARS’ CONSULTING PRACTICE Helping your Business Venture Further
GRC - A Strategic Approach
Internal Audit Who? What? When? How? Why? In brief . . .
Presentation transcript:

Technology Applications in the Age of Integrity Integrity Forum 2006 Tony Murphy Vice President, Worldwide Sales ACL Services Ltd.

© 2006 ACL Services Ltd. 2 About ACL Founded1987 – Global leader in audit, controls testing, and compliance technology solutions Corp HeadquartersVancouver, BC Clients170,000 users in 130 countries 70% of Fortune 500 Big 4 Accounting Firms State & federal governments ProductsData Analytics ACL Desktop/Network Edition ACL Server Editions – AIX, Linux, OS390/400, Windows Direct Link for SAP Continuous Controls Monitoring Purchase-to-Payment T&E Expenses Payroll Purchasing Cards Order-to-Cash General Ledger ServicesTechnical Support, Implementation Services, Training

© 2006 ACL Services Ltd. 3 Today’s Agenda Spotlight on Internal Controls Continuous Auditing and Continuous Monitoring  Definitions  Responsibilities  Impact ACL Solutions Summary

© 2006 ACL Services Ltd. 4 Internal Controls: What’s at Stake? Compliance Issues Cost-effectively sustaining compliance Market perception/share value Negative impact on credit rating Business Performance Issues Operational inefficiency Revenue leakage Fraud Technology is seen as one way companies can successfully manage these issues

© 2006 ACL Services Ltd. 5 Compliance Confusion There’s a great deal of confusion in the market about “Compliance” Following slides  Let’s have some plain talk about what compliance is, why it’s important to a business and what ACL is doing to help companies address a critically important slice of their compliance requirements

© 2006 ACL Services Ltd. 6 Sustainable Compliance Regulatory environment now driving the need to  Efficiently and cost-effectively sustain controls assessment and testing efforts  Determine on a timely basis when control deficiencies occur  Quantify the impact of control deficiencies  Improve effectiveness of controls  Gain assurance over effectiveness of controls Need to make compliance attainable, sustainable, and cost-effective Additional goal: improve overall business performance How can audit departments assist? Build compliance processes into the foundation of the business

© 2006 ACL Services Ltd. 7 Gaining Clarity: Some Definitions Continuous Auditing  Method used to perform audit activities on a continual basis – includes control and risk assessment  Performed by Internal Audit Continuous Monitoring  Processes to ensure policies/processes are operating effectively and to assess adequacy/effectiveness of controls  Performed by operational/financial management Continuous Assurance  Combination of continuous auditing and audit oversight of continuous monitoring

© 2006 ACL Services Ltd. 8 Continuous Auditing vs. Continuous Controls Monitoring A Question of Responsibility: Management is responsible for establishing and monitoring the effectiveness of internal controls Audit is responsible for determining whether management has been successful in its responsibility Continuous Auditing and Continuous Controls Monitoring frameworks are vital parts of the controls environment

© 2006 ACL Services Ltd. 9 Relationship of Continuous Auditing/Monitoring/Assurance Role of continuous auditing dependent on management’s role in continuous monitoring of controls  Inverse relationship: the greater the role of management, the less of a direct role of internal audit True continuous assurance  Depends on effective monitoring by management of internal controls and Audit’s independent assessment of that function

© 2006 ACL Services Ltd. 10 Continuous Auditing Compliance requirements now driving the need to  Efficiently and cost-effectively sustain controls assessment and testing efforts  Determine on a timely basis when control deficiencies occur  Quantify the impact of control deficiencies  Improve effectiveness of controls  Gain assurance over effectiveness of controls Continuous Auditing  Shift from traditional approach of periodic cyclical audit processes  Method used to automatically perform control and risk assessments on an ongoing basis  Allows audit to provide ongoing risk and control assessments  Technology is key

© 2006 ACL Services Ltd. 11 Continuous Controls Monitoring Process performed by management to determine whether policies and controls are operating effectively Establishes control objectives and assurance assertions – and uses automated tests to identify activities and transactions that fail to comply with controls Embedded in key business processes Allows management to fix control problems on a timely basis – improves controls and improves operational performance Technology is key

© 2006 ACL Services Ltd. 12 CA & CCM: An Integrated Approach

© 2006 ACL Services Ltd. 13 ACL’s Approach to Enterprise Financial Transaction Monitoring Review 100% of transactions across all systems & platforms Apply automated tests to critical control points Present quantified control exceptions Provide visibility into controls health to all stakeholders Internal & external

© 2006 ACL Services Ltd. 14 ACL’s Complementary Solutions Financial Transaction Monitoring Audit Tools DISCOVER & DETECT… ACL Audit Analytics MONITOR …. Continuous Controls Monitoring (CCM)

© 2006 ACL Services Ltd. 15 ACL’s Complementary Solutions Financial Transaction Monitoring ACL Data Analytics DISCOVER & DETECT…  Interactive analysis built for Audit  Analyze every transaction, across system boundaries  Automate audit best practices  Auditable results  Desktop/Network, Server Editions, Direct Link for SAP Audit Tools

© 2006 ACL Services Ltd. 16 ACL’s Complementary Solutions Continuous Controls Monitoring (CCM) MONITOR ….  Core business processes, end-to-end  Key controls, across system boundaries  Based on COSO framework  CCM applications:  General Ledger  Order-to-Cash Cycle  Payroll  Purchase-to-Payment Cycle  Purchasing Cards  Travel & Entertainment Expenses Financial Transaction Monitoring Audit Tools Financial Transaction Monitoring

© 2006 ACL Services Ltd. 17 Benefits and Outcomes Near-term – Revenue recovery & compliance  Return on investment, early warning system, regulatory compliance  Example: Recovery of duplicate payments and vendor overcharges Mid-term – Operational improvement  Example: Modifications made to system design and controls such as change to vendor master entry Long-term – Enhanced control environment  Improved external audit results  Tangible, demonstrable evidence of effort

© 2006 ACL Services Ltd. 18 Summary Compliance requirements and business process improvement are not optional A sustainable approach is needed Audit has options:  Expand technology investment to apply continuous auditing techniques  Advanced use of data analytics, i.e. script development and automation  Sponsor comprehensive technology solutions to automate controls monitoring within business processes  Implement continuous monitoring technology

© 2006 ACL Services Ltd. 19 Cost savings Business Performance Optimization Cost-effective risk mitigation Bottom-line results Operational efficiencies Fraud reduction Summary Connected compliance across the business supports compliance with the benefit of enhanced business performance. Streamlined internal & external audit Sustainable process for compliance Compliance Requirements Internal Controls Effectiveness Reduced time for reporting/signoff

© 2006 ACL Services Ltd. 20