Bank Audit. Internal Audit Internal audit is an independent, objective assurance activity and can give valuable insight in providing assurance that major.

Slides:



Advertisements
Similar presentations
1 Documentation Legal Framework Air Navigation Orders Guidelines ATS Manual Airport Manual Safety Management Manual ICAO Annexes Licenses / Certificates.
Advertisements

Organizational Governance
Risk The chance of something happening that will have an impact on objectives. A risk is often specified in terms of an event or circumstance and the consequences.
Auditing, Assurance and Governance in Local Government
Lisanne Sison Director ERM Bickmore
IMFO Audit & Risk Indaba June 2012
Chapter 10 Accounting Information Systems and Internal Controls
Chapter 7 Control and AIS Copyright © 2012 Pearson Education, Inc. publishing as Prentice Hall 7-1.
Control and Accounting Information Systems
Control and Accounting Information Systems
Agency Risk Management and Internal Control Standards Presentation to the Board of Visitors November 14, 2014.
Development of internal control: methodology and responsibility
It’s Time to Talk About Risk and Control
Introduction to Enterprise Risk Management (ERM)
Sodexo.com Group Internal Audit. page 2 helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and.
Internal Control.
Executive Insight through Enhanced Enterprise Risk Management Leverage Value From Your Risk Management Investment.
Audit Committee in Albania Legal framework Law 9226 /2006 “On banks in Republic of Albania” Law 9901/2008 “On entrepreneurs and commercial companies” Corporate.
Tax Risk Management Keeping Up with the Ever-Changing World of Corporate Tax March 27, 2007 Tax Services Bryan Slone March 27, 2007.
Building a Better Business Model Start with a discussion of Risk Higher Education Policy Commission Board of Governors Summit August 2, 2014.
1 INTERNAL CONTROLS A PRACTICAL GUIDE TO HELP ENSURE FINANCIAL INTEGRITY.
AUDIT COMMITTEE FORUM TM ACF Roundtable IT Governance – what does it mean to you as an audit committee member July 2010 The AUDIT COMMITTEE FORUM TM is.
Chapter 7 Control and AIS Copyright © 2012 Pearson Education, Inc. publishing as Prentice Hall 7-1.
PwC Role of Internal Audit in Corporate Governance September 2010 Tumin Gültekin, Partner.
The Information Systems Audit Process
Euseden INTERNAL AUDIT & ASSURANCE SERVICES.
PAINTING THE FULL PICTURE
INTRODUCTION TO PUBLIC FINANCE MANAGEMENT Module 3.2 -Internal Control & Audit.
Chapter 4 Internal Controls McGraw-Hill/Irwin
Internal Auditing and Outsourcing
Internal auditing for credit unions Nuala Comerford, Chair IIA Irish Region Committee Pamela McDonald Council Member IIA Credit Union Summer School Thursday,
Governance of the Treasury Function CIPFA Scottish Treasury Management Forum Alan George, Regional Director 23rd February 2012.
Overview of Systems Audit
The role of internal audit in enterprise-wide risk management (ERM)
Audits & Assessments: What are the Differences and How Do We Learn from the Results? Brown Bag March 12, 2009 Sal Rubano – Director, Office of the Vice.
D-1 McGraw-Hill/Irwin ©2005 by the McGraw-Hill Companies, Inc. All rights reserved. Module D Internal, Governmental, and Fraud Audits “I predict that audit.
Chapter 9: Introduction to Internal Control Systems
Chapter 3 Internal Controls.
Presented to President’s Cabinet. INTERNAL CONTROLS are the integration of the activities, plans, attitudes, policies and efforts of the people of an.
Introduction to Internal Control Systems
Chapter 5 Internal Control over Financial Reporting
Enterprise Risk Management & IT Compliance March 30, 2010 Presented by: Ken Rowe, Director Enterprise Systems Assurance & Chief Security Officer University.
Learning Objectives LO5 Illustrate how business risk analysis is used to assess the risk of material misstatement at the financial statement level and.
1 Today’s Presentation Sarbanes Oxley and Financial Reporting An NSTAR Perspective.
Evaluation of Internal Control System
Private & Confidential1 (SIA) 13 Enterprise Risk Management The Standard should be read in the conjunction with the "Preface to the Standards on Internal.
+ Regulation and Compliance Summary “ Making Great Ideas Become Reality”
The Connection between Risk Management and Internal Control in Organizations Mag. Norbert Wagner Budapest,
Internal Controls Christina Urias Managing Director – International Regulatory Affairs NAIC.
Chapter 9: Introduction to Internal Control Systems
Internal Audit & Internal Controls Companies Act 2013.
Copyright © 2007 Pearson Education Canada 9-1 Chapter 9: Internal Controls and Control Risk.
Deck 5 Accounting Information Systems Romney and Steinbart Linda Batch February 2012.
PIC EU-28 Conference Paris, 26 – 27 November 2015 PIC An EU Approach Assurance Maps An Introductory workshop Nathan Paget United Kingdom.
F8: Audit and Assurance. 2 Audit and Assurance Designed to give you knowledge and application of: Section A: Audit Framework and Regulation Section B:
Company LOGO Chapter4 Internal control systems. Internal control  It is any action taken by management to enhance the likelihood that established objectives.
Lecture 5 Control and AIS Copyright © 2012 Pearson Education 7-1.
Governance, risk and ethics. 2 Section A: Governance and responsibility Section B: Internal control and review Section C: Identifying and assessing risk.
COBIT. The Control Objectives for Information and related Technology (COBIT) A set of best practices (framework) for information technology (IT) management.
Seminar for Certified Secretaries Working in State Corporations and County Governments Imperial Hotel Kisumu 13 – 15 April 2016 Session Facilitator: CS.
Risk Management Dr. Clive Vlieland-Boddy. Managements Responsibilities Strategy – Hopefully sustainable! Control – Hopefully maximising profits! Risk.
SUNY Maritime Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal controls.
CPA Gilberto Rivera, VP Compliance and Operational Risk
Chapter 4 Internal Controls McGraw-Hill/Irwin
Audit & Risk Management
Chapter 9 Control, security and audit
Internal control objectives
Adding Value Across the Board
Internal Control Internal control is the process designed and affected by owners, management, and other personnel. It is implemented to address business.
Presentation transcript:

Bank Audit

Internal Audit Internal audit is an independent, objective assurance activity and can give valuable insight in providing assurance that major business risks are being managed appropriately and the risk management and internal control framework is operating effectively

Four Phases of Internal Audit Traditional Audit – Verification of Accounts Conventional Audit – Compliance of Regulation Modern Audit – Technology Help Risk Audit – Going Beyond Audit Boundaries

Internal Audit Functions Critical evaluation of internal controls, performing GAP analysis and suggesting areas for strengthening Constructive review of business operations by keeping the organisation's business needs in focus Identification and recommendation of areas for cost reduction, revenue optimisation and improvement in operational efficiency

Internal Audit Functions Critical evaluation of systems and procedures and adherence to Standard Operating Procedures Review of Information Technology (IT) controls and Business Continuity Plan Identification, assessments and control of risks Review of compliances with the various regulatory provisions and operations manuals Review of adherence to the corporate governance requirements

Internal Audit Objectives Facilitate achievement of business objectives Optimum utilisation of resources Evaluate internal controls, systems and procedures Safeguarding of assets Identification, assessment and control of risks Facilitating corporate governance code compliance Reporting independently to the audit committee Reviewing compliance with policies, procedures, laws and regulations Increasing reliability of financial statements

Internal Audit In Practice Developing a strategic role for internal audit Defining the work Establishing arrangements (co-sourcing, out-sourcing) Transforming the function Creating the conditions for use of audit committees Helping in transforming ideas into operation Improving audit quality, efficiency and cost-effectiveness

Scope of Internal Audit Work Matching expectations and resources Range of banking activities Strategic and annual audit plans Internal audit development plans Audit risk assessment Resource implications and the skills needed Auditing bank performance

Bank Audit Participative Auditing Governance Auditing Branch Auditing (including ATM Audits)

Non Involvement of Internal Audit Setting risk appetite Taking decision on risk response Implementing risk response Taking accountability of risk management

Traditional Approach to Internal Audit Accounts oriented Transaction focused Passive detection Compliance oriented Routine areas of audit Manual checking Time consuming

Modern Internal Audit Developing role of internal audit (traditional, conventional, leading edge and off-the-edge auditing) Approaches to audit work Moving from inspection to providing a risk-focused service to the board Enhancing the audit function and adding value

Risk Assessment through Internal Audit Enterprise-wide Risk Management (ERM) is a structured, consistent and continuous process across the whole organisation for identifying, assessing, deciding on responses to and reporting on opportunities and threats that affect the achievement of its objectives. Responsibility of ERM is with the Board of Directors.

Role of Enterprise Resource Planning Facilitating and identification of key risks Evaluating and reporting of key risks Consolidating risks across the organisation Developing and maintaining the ERM framework Providing assurance to management Providing assurance to the Board on the effectiveness of risk management

Resources Needed for Conducting Internal Audit Information for Decision Making Information Technology (IT) Information System (IS) Information System Development Assessment of Risks and its Management Business Continuity Plan Disaster Recovery Plan Hardware, Software and Network audits

Contemporary Approach to Internal Audit Business orientation Process orientation Value creation Real time detection Prevention orientation Risk based audit Technology orientation Time and cost efficient

Risk Based Audit

Risk Identification Establish objectives Classification of objectives Identify strategies Identify operational objectives Stating compliance requirement Reporting risks

Risk Assessment Identify risk likely to have an impact Likelihood of risk Measure the impact of risk

Risk Evaluation Responses to risk Evaluate risk to be avoided Evaluate risk to be accepted Risk reducing procedures Risk sharing procedures

Risk Monitoring Evaluate implementation of strategies Monitor risk responses

Internal Audit Documentation