COSO Framework Update IIA Columbus Chapter May 17, 2013

Slides:



Advertisements
Similar presentations
Internal Control Integrated Framework
Advertisements

Internal Control–Integrated Framework
Federal Audit Executive Council (FAEC) June 2012 Bi-Monthly Meeting Heather I. Keister Doris G. Yanger June 14, 2012 Green Book Update.
Chapter 10 Accounting Information Systems and Internal Controls
Prepared by Wa'el Bibi,CPA,CIA,CISA1 Internal Control Integrated Framework An Overview.. Bibi Consulting COSO’s Source: COSO’s Internal Control Integrated.
INTERNAL AUDIT PROCESS Pre-Audit Presentation. OBJECTIVES OF PRESENTATION  Provide a basic understanding of internal audit  Provide a basic awareness.
Office of the Secretary of Defense – Comptroller Financial Improvement and Audit Readiness Directorate Unclassified 17 September 2014 GAO Revised “Green.
Standards for Internal Control in the Government Going Green Standards for Internal Control in the Federal Government 1.
Standar Pekerjaan Lapangan: Pemahaman Memadai atas Pengendalian Intern Pertemuan 5.
6-1 McGraw-Hill/Irwin ©2002 by The McGraw-Hill Companies, Inc. All rights reserved. Chapter 6 Internal Control Evaluation: Assessing Control Risk.
Internal Control. COSO’s Framework Committee of Sponsoring Organizations 1992 issued a white paper on internal control Since this time, this framework.
Expanded Version of COSO a presentation by Steve Wadleigh Expanded Version of COSO a presentation by Steve Wadleigh Standards for Internal Control in the.
18- 1 © 2006 The McGraw-Hill Companies, Inc., All Rights Reserved. Chapter 18 Integrated Audits of Internal Control (For Public Companies Under Sarbanes-Oxley.
Agenda Framework background Reasons for change Timeline
Board responsibility for internal control and risk management by Kiattisak Jelatianranat Chairman, The Institute of Internal Auditors of Thailand Director,
Sarbanes-Oxley Project Summary of COSO Framework Presented by Larry Dillehay & Scott Reitan Parkfield Group LLC.
Information Systems Controls for System Reliability -Information Security-
Diving into the 2013 COSO Framework
Chicagoland IASA Spring Conference
Internal Auditing and Outsourcing
Internal Control and Control Self-Assessment
Auditing Internal Control over Financial Reporting
D-1 McGraw-Hill/Irwin ©2005 by the McGraw-Hill Companies, Inc. All rights reserved. Module D Internal, Governmental, and Fraud Audits “I predict that audit.
Chapter 9: Introduction to Internal Control Systems
Fraud & Internal Control Frank M. Klaus, CPA. Fraud Definition  Fraud is the misappropriation of assets for the benefit of an individual.  “Willful.
Chapter 3 Internal Controls.
Internal Audit Role in Order to Develop an Ethical Corporate Culture as a Competitiveness Factor A.I.I.A. - Internal Auditing body Università degli Studi.
Transitioning to the COSO 2013 Update.  Released on May 14, 2013  Designed to build upon the foundation of the 1992 Framework  Will supersede the 1992.
IT Risk Management, Planning and Mitigation TCOM 5253 / MSIS 4253
This Lecture Covers Review of Internal Control Definitions.
Implementation Issues of Sarbanes-Oxley CASE Presentation September 23, 2004 By Denise Farnan.
Chapter Three IT Risks and Controls.
Chapter 5 Internal Control over Financial Reporting
Monitoring Internal Control Systems Johann Rieser Senior Auditor, Ministry of Finance, Vienna.
Introduction In 1992, the Committee Of Sponsoring Organizations of the Treadway Commission (COSO) published Internal Control-Integrated Framework (1992.
Internal Control in a Financial Statement Audit
Standards for Internal Control in the Government Going Green Standards for Internal Control in the Federal Government 1.
EEC Internal Control Plan (ICP) FY2013. Direction from Secretary Malone Acting EEC Commissioner Thomas Weber shall initiate a top-to-bottom review of.
Internal Control in a Financial Statement Audit
Committee of Sponsoring Organizations of The Treadway Commission Formed in 1985 to sponsor the National Commission on Fraudulent Financial Reporting “Internal.
5-1 McGraw-Hill/Irwin ©2007 by the McGraw-Hill Companies, Inc. All rights reserved. Chapter 5 Internal Control Evaluation: Assessing Control Risk.
McGraw-Hill/Irwin © 2003 The McGraw-Hill Companies, Inc., All Rights Reserved. 6-1 Chapter 6 CHAPTER 6 INTERNAL CONTROL IN A FINANCIAL STATEMENT AUDIT.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 6-1 Chapter Six Internal Control in a Financial Statement Audit.
Chapter 9: Introduction to Internal Control Systems
An Update of COSO’s Internal Control–Integrated Framework
A Guide for Management. Overview Benefits of entity-level controls Nature of entity-level controls Types of entity-level controls, control objectives,
Internal Control Systems
1 20 Years in the Making…. 2 … “…while effective internal control requires leadership from the top, the responsibility for effective implementation of.
INTRODUCTION TO PUBLIC FINANCE MANAGEMENT Module 4.3: Internal Control & Audit.
1 Overview of PCAOB Auditing Standard No. 5 An Audit of Internal Control Over Financial Reporting that is Integrated with an Audit of Financial Statements.
©2008 Prentice Hall Business Publishing, Auditing 12/e, Arens/Beasley/Elder Section 404 Audits of Internal Control and Control Risk Chapter 10.
Deck 5 Accounting Information Systems Romney and Steinbart Linda Batch February 2012.
Meet the New ICIF: Revisions to COSO’s Internal Control Integrated Framework Dr. Sandra Richtermeyer COSO Board Member Associate Dean and Professor.
1 COSO ERM Framework Update Our Next Challenge and Opportunity September 2015.
INTERNAL AUDIT PROCESS PRE-AUDIT PRESENTATION. OBJECTIVES OF PRESENTATION  PROVIDE A BASIC UNDERSTANDING OF INTERNAL AUDIT  PROVIDE A BASIC AWARENESS.
Chapter 6 Internal Control in a Financial Statement Audit McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
Auditors’ Dilemma – reporting requirements on Internal Financial Controls under the Companies Act 2013 and Clause 49 of the Listing agreement V. Venkataramanan.
PEM PAL IA COP Internal Control Working Group COSO Principles
Internal control objectives
Internal Control Integrated Framework
A Framework for Control
Internal Control–Integrated Framework
COSO Internal Control s Framework
Internal control - the IA perspective
INTRODUCTION TO PUBLIC FINANCE MANAGEMENT
Revision of the Internal Control Framework in the European Commission PEMPAL Internal Audit Community of Practice (IACOP) Brussels, 27th February 2017.
Internal Controls Policies and Procedures
An Update of COSO’s Internal Control–Integrated Framework
Leveraging COSO across the three lines of defense
An overview of Internal Controls Structure & Mechanism
Presentation transcript:

COSO Framework Update IIA Columbus Chapter May 17, 2013 Rick Machold, CPA, CRMA Chief Audit Executive © 2012 Total System Services, Inc.® All rights reserved worldwide.

Contents COSO Framework Update COSO History COSO Change Drivers COSO “Overarching Truths” Best Next Actions © 2013 Total System Services, Inc.® All rights reserved worldwide.

Breaking Story - May 14, 2013 © 2013 Total System Services, Inc.® All rights reserved worldwide.

COSO History © 2012 Total System Services, Inc.® All rights reserved worldwide.

COSO History The National Commission on Fraudulent Financial Reporting was formed in 1985 with James C. Treadway, Jr., former SEC Commissioner and GC, Paine Webber as its Chairman. The “Treadway Commission” was thus formed as a private sector initiative to inspect, analyze and make recommendations on fraudulent corporate financial reporting. © 2013 Total System Services, Inc.® All rights reserved worldwide.

The Overarching Recommendation “All public companies should maintain internal controls that provide reasonable assurance that fraudulent financial reporting will be prevented or subject to early detection – this is a broader concept than internal accounting controls…The Commission also recommends that its sponsoring organizations cooperate on developing additional, integrated guidance on internal controls…” -- Treadway Commission Report © 2013 Total System Services, Inc.® All rights reserved worldwide.

The Sponsoring Organizations © 2013 Total System Services, Inc.® All rights reserved worldwide.

The COSO Story Continued… “Management is required to base its assessment of the effectiveness of the company's internal control over financial reporting on a suitable, recognized control framework established by a body of experts that followed due-process procedures, including the broad distribution of the framework for public comment.” (Sec 404(b)) © 2013 Total System Services, Inc.® All rights reserved worldwide.

COSO Change Drivers © 2012 Total System Services, Inc.® All rights reserved worldwide.

COSO Change Drivers Much has happened since 1992. Several changes in the business environment have driven the compelling need for an Update: Environment changes …have driven Framework updates Expectations for governance oversight Globalization of markets and operations Changes and greater complexity in business models Demands and complexities in laws, rules, regulations, and standards Expectations for competencies and accountabilities Use of, and reliance on, evolving technologies Expectations relating to preventing and detecting fraud COSO Cube (2013 Edition) © 2013 Total System Services, Inc.® All rights reserved worldwide.

COSO 2013 Framework © 2012 Total System Services, Inc.® All rights reserved worldwide.

COSO Project Deliverable #1 Consists of three volumes: Executive Summary Framework and Appendices Illustrative Tools for Assessing Effectiveness of a System of Internal Control Sets out: Definition of internal control Categories of objectives Components and principles of internal control Requirements for effectiveness

COSO Project Deliverable #2 Illustrates approaches and examples of how principles are applied in preparing financial statements Considers changes in business and operating environments during past two decades Provides examples from a variety of entities – public, private, not-for- profit, and government Aligns with the updated Framework

The Update increases ease of use and broadens application Summary of Changes The Update increases ease of use and broadens application What is not changing... What is changing... Core definition of internal control Three categories of objectives and five components of internal control Each of the five components of internal control are required for effective internal control Important role of judgment in designing, implementing and conducting internal control, and in assessing its effectiveness 17 Principles codified Role of objective setting clarified Reflects increased role and relevance of technology Incorporates enhanced discussion of governance Expands “Reporting” objective Enhances consideration of anti- fraud expectations Increases focus on non-financial reporting objectives

5 Components, 17 Principles, 73 Points of Focus

TSYS Audit Application: COSO Evaluation

Example Only What’s your COSO Elevator Speech? “The control environment provides an atmosphere in which people conduct their activities and carry out their control responsibilities. It serves as the foundation for the other components. Within this environment, management assesses risks to the achievement of specified operational, compliance and reporting objectives. Control activities are implemented to help ensure that management directives to address the risks are carried out. Meanwhile, relevant risk and control information is captured and communicated throughout the organization. The entire internal control process is then monitored on a periodic and ongoing basis and modified as conditions warrant.”

COSO “Overarching Truths” © 2012 Total System Services, Inc.® All rights reserved worldwide.

COSO “Overarching Truths” COSO is not a “standard” (but “thought leadership and guidance”) Internal control is everyone’s job Control is ideally an enabler, not an inhibitor Effective internal control is built-in, not added-on Establishment of business objectives* is a precondition to effective internal control * Business objectives are different from control objectives. Business objective – what the business/process seeks to accomplish (performance outcomes: profitability, growth, efficiency, effectiveness,) Control objective – what the control activity seeks to accomplish (control outcomes: accuracy, completeness, logical security, business continuity, etc)

Best Next Actions © 2012 Total System Services, Inc.® All rights reserved worldwide.

Best Next Actions Read COSO’s updated Framework and illustrative documents Educate the audit committee, C-suite, operating unit and functional management Establish a process for identifying, assessing, and implementing necessary changes in controls and related documentation Develop and implement a transition plan timely to meet key objectives – e.g., apply updated Framework by December 31, 2014 for external reporting