3 Ways to Reduce the Costs of SOX compliance

Size: px
Start display at page:

Download "3 Ways to Reduce the Costs of SOX compliance"

Transcription

1 3 Ways to Reduce the Costs of SOX compliance

2 Presenters John Verver CPA CA, CISA, CMC Consultant and Advisor to ACL Phil Shomura Senior Product Manager at ACL

3 Agenda Current Costs of SOX Compliance Technology-driven SOX Compliance #1: Enable Greater Collaboration #2: Increase Automation throughout the SOX Process #3: The Powerful Role of Data Analytics Q & A

4

5 SOX Compliance Costs

6 How Much Does SOX Compliance Cost? 32% with 12+ locations $2.0M $1-5B Companies $0.93M Average $1.03M+ $20B+ Companies $1.98M 53% of $20B+ Companies > $2.0M

7 Where Does the Time Go? Average Hours Spent on Each Key Control

8 Costs of SOX Compliance Current State for Many Companies: Recognition that there is value in better financial controls Incredibly resource-intensive process Prohibitively expensive Far from optimally efficient

9 Technology Drivers for Reducing SOX Compliance Costs

10 Improving Efficiency and Effectiveness in SOX Compliance How are companies currently using technology? Many still use spreadsheets and internally developed systems Others use combinations of first generation audit/risk application software Most control testing is manual Minimal use of data analytics

11 Improving Efficiency and Effectiveness in SOX Compliance The challenges of current approaches: Today s optimized technology solution: Spreadsheets are notoriously hard to manage, share, use Difficult to get insights needed for control rationalization/optimization Control testing is laborious Difficult to determine control effectiveness on ongoing basis Certification processes are time consuming Software is designed to support ease-of-use and collaboration Relationships among risks and controls are linked, supporting control optimization Controls tested automatically via data analytics and transactional monitoring Red flags and control remediation managed through automated process SOX compliance integrated into enterprise risk and compliance management

12 How Can Technology Reduce SOX Compliance Costs? Increased Efficiency Improved Collaboration Greater insights & assurance Reduced hours and costs Improved Controls Reduced risks of fraud, error & abuse

13 #1: Enable Greater Collaboration

14 Enabling Greater Collaboration Common Current State: Technology Enablers: Risks and controls in different financial systems are viewed in isolation Each line of defense has different priorities and views of risks Difficult to achieve integrated overall view of ICFR risks and state of compliance External auditors uncertain of compliance activities and perform/request additional work Centralized repository of risks and controls Seamless links to control frameworks with fact-based quantification of risks SOX activities consistent with enterprise risk and compliance Links/relationships among risks and controls clearly visible

15 Framework Assurance

16 Map Risks to Policies, Processes and Control Objectives

17 Connect to Risk Management Frameworks and Regulations

18 Risk Scoring

19 Enabling Greater Collaboration The Results: Increased alignment and understanding around key risks and controls Quantified impact of control failures Greater consistency in SOX compliance processes across the organization SOX compliance can be integrated into enterprise risk and compliance activities External auditors gain more rapid insight into effectiveness of compliance activities

20 #2: Increase Automation

21 Increasing Automation Common Current State: Technology Enablers: Reliance on manual controls Control testing processes largely manual Response processes to control failures rely on spreadsheets and Collecting and collating data from control owners is onerous Controls are automated whenever practical and effective Analytics and monitoring are used to automatically test controls Automated workflow for responses to control weaknesses and suspect transactions Automated distribution, collection and collation of questionnaires, surveys & attestations

22 Project Dashboard

23 Smart Response Management

24 Smart Deficiency Remediation

25 Questionnaires, Surveys and Attestations

26 Manage and Monitor Hotlines

27 Increasing Automation The Results: Reduction in time spent on control testing Reduction in time spent on management/administration of compliance processes More effective controls More effective control remediation

28 #3: The Power of Data Analytics

29 The Power of Data Analytics Common Current State: Technology Enablers: Valuable risk insights trapped in various static documents and systems Limited use of data automation and analytics MS Excel often primary analysis tool Point-in-time testing of controls to uncover risks or anomalies Data analyzed from multiple data sources Suites of analytics applied to test control effectiveness in each financial process area Data analytics drive quantified risk/control assessments Continuous monitoring of activities to uncover evolving risks in key control areas

30 Connect to Data from a Wide Range of Sources

31 Analyzing Massive Amounts of Data to Identify Risks and Anomalies

32 Libraries of Specialized Analytics Revenues

33 Data Visualization and Trend Analysis

34 Dashboard Views of Risk Monitoring and Assessments

35 How Can Technology Reduce SOX Compliance Costs? The Results: Continuous compliance risk management Prompt identification and response to control risks and weaknesses Greater assurance over control effectiveness Quantified views of SOX compliance Reduction in time spent on manual testing activities

36 The Results of Technology Enablement

37 How Can Technology Reduce SOX Compliance Costs? Using Modern Technology as Compliance Enabler Can: Drive more efficient processes Reduce hours and costs Facilitate collaboration Create consistency in processes Increase insights and assurance Improve controls Minimize risks of fraud, error and abuse

38

39 Questions?

40 For more information contact: John Verver Phil Shomura

7 Key Trends in Enterprise Risk Management

7 Key Trends in Enterprise Risk Management 7 Key Trends in Enterprise Risk Management John Verver, CPA CA, CISA, CMC Kevin Legere, ACDA Presenters John Verver Consultant and Advisor to ACL Kevin Legere Director of Product Design Agenda Excellence

More information

SERIOUSLY REDUCING THE BURDEN OF ICFR/ SOX/A-123 COMPLIANCE

SERIOUSLY REDUCING THE BURDEN OF ICFR/ SOX/A-123 COMPLIANCE ACL EBOOK The essential guide to SERIOUSLY REDUCING THE BURDEN OF ICFR/ SOX/A-123 COMPLIANCE 7 steps for improving compliance processes CONTENTS Seriously Reducing the Burden of ICFR/SOX/A-123 Compliance...3

More information

ACL EBOOK 7 KEY TRENDS IN ENTERPRISE RISK MANAGEMENT. A guide to enhancing strategic performance with smart ERM. By John Verver, CPA CA, CISA, CMC

ACL EBOOK 7 KEY TRENDS IN ENTERPRISE RISK MANAGEMENT. A guide to enhancing strategic performance with smart ERM. By John Verver, CPA CA, CISA, CMC ACL EBOOK 7 KEY TRENDS IN ENTERPRISE RISK MANAGEMENT A guide to enhancing strategic performance with smart ERM By John Verver, CPA CA, CISA, CMC Contents Defining ERM... 4 How do you spell success? E R

More information

2013 COSO Internal Control Framework Update. September 5, 2013

2013 COSO Internal Control Framework Update. September 5, 2013 2013 COSO Internal Control Framework Update September 5, 2013 Agenda 2013 COSO IC Framework Topic Minutes The update process 5 What is not changing / What is changing 5 The 17 principles and changes to

More information

Enterprise Compliance Management for Credit Unions

Enterprise Compliance Management for Credit Unions Enterprise Compliance for Credit Unions Streamline Regulatory Compliance with a Unified Platform to Manage Requirements and Demonstrate Compliance to Regulators Industry Challenge Credit unions are subject

More information

Risk & Continuous Controls Monitoring: How to implement issue remediation workflows the business will love

Risk & Continuous Controls Monitoring: How to implement issue remediation workflows the business will love Risk & Continuous Controls Monitoring: How to implement issue remediation workflows the business will love Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management, Siemens Financial

More information

Effective Risk Management With AML Risk Assessment. January 25, 2017

Effective Risk Management With AML Risk Assessment. January 25, 2017 Effective Risk Management With AML Risk Assessment January 25, 2017 2017 2017 Crowe Crowe Horwath Horwath LLP LLP Agenda Regulatory Trends in Risk Assessment Crowe Approach to Anti-Money Laundering (AML)

More information

The power of the Converge platform lies in the ability to share data across all aspects of risk management over a secure workspace.

The power of the Converge platform lies in the ability to share data across all aspects of risk management over a secure workspace. Converge Platform The transition to value-based care is breaking down the barriers between the CNO, CMO, and Chief Legal Counsel in managing enterprise risk. It s time to take a proactive systems approach

More information

The Road to Continuous Assurance. Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc.

The Road to Continuous Assurance. Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc. The Road to Continuous Assurance Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc. Agenda Key Drivers for Successful Implementation Technology

More information

Digital Testing and Controls Automation A transformative approach to automating your control environment

Digital Testing and Controls Automation A transformative approach to automating your control environment Digital Testing and Controls Automation A transformative approach to automating your control environment Digital Testing and Controls Automation A transformative approach to automating your control environment

More information

Using data analytics and continuous auditing for effective risk management

Using data analytics and continuous auditing for effective risk management Using data analytics and continuous auditing for effective risk management November 2013 Irakis Kanavaris Agenda Current trends Common terminology of Data Analytics and CA/CM KPMG approach & observations

More information

Global Benchmark. Role of data analytics for internal fraud detection

Global Benchmark. Role of data analytics for internal fraud detection Global Benchmark Role of data analytics for internal fraud detection 2 overview According to the latest findings in the Ernst & Young Global Forensic Data Analytics Survey 2016 and 2016 ACFE Report to

More information

WHITE PAPER. The ACL Audit Analytic Capability Model: Navigating the journey from basic data analysis to continuous monitoring

WHITE PAPER. The ACL Audit Analytic Capability Model: Navigating the journey from basic data analysis to continuous monitoring WHITE PAPER The ACL Audit Analytic Capability Model: Navigating the journey from basic data analysis to continuous monitoring CONTENTS INTRODUCTION... 1 ACL s Audit Analytic Capability Model... 1 Level

More information

How to Maximize Your Internal Controls Program. June 15, 2017 Atlanta, GA

How to Maximize Your Internal Controls Program. June 15, 2017 Atlanta, GA How to Maximize Your Internal Controls Program June 15, 2017 Atlanta, GA Sarbanes-Oxley Update June 15, 2017 Rick Warren Principal patrick.warren@pwc.com Andres Leal Director andres.m.leal@pwc.com 3 Agenda

More information

The Ins and Outs: Audits Under FDICIA. Jennifer Gureckis and Kaylyn Landry BerryDunn February 27, 2018

The Ins and Outs: Audits Under FDICIA. Jennifer Gureckis and Kaylyn Landry BerryDunn February 27, 2018 The Ins and Outs: Audits Under FDICIA Jennifer Gureckis and Kaylyn Landry BerryDunn February 27, 2018 Presenters Jennifer Gureckis, CPA Kaylyn Landry, CPA Objectives Overview of Internal Controls over

More information

The Road to Continuous Assurance. Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc.

The Road to Continuous Assurance. Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc. The Road to Continuous Assurance Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc. Challenge Statement: Implement a CCM program for the Organization

More information

Advanced Monitoring and Testing to Enable Performance. SCCE Boston Regional Conference

Advanced Monitoring and Testing to Enable Performance. SCCE Boston Regional Conference www.pwc.com Advanced Monitoring and Testing to Enable Performance SCCE Boston Regional Conference Presenters Jon Mackenzie Managing Director, Office: (267) 330 8111 Email: jonathan.b.mackenzie@pwc.com

More information

WHITE PAPER. The ACL Audit Analytic Capability Model: Leveraging analytics in the fight against fraud

WHITE PAPER. The ACL Audit Analytic Capability Model: Leveraging analytics in the fight against fraud WHITE PAPER The ACL Audit Analytic Capability Model: Leveraging analytics in the fight against fraud CONTENTS INTRODUCTION... 1 THE ANALYTIC CAPABILITY MODEL... 1 LEVEL 1 - BASIC... 3 Characteristics...

More information

Continuous Monitoring: Getting Results Today!

Continuous Monitoring: Getting Results Today! Continuous Monitoring: Getting Results Today! Gerard (Rod) Brennan, PhD, CFE Risk & Internal Control Officer NA, Siemens Corporation Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management,

More information

Together, they re better. NICE Quality Central + Nexidia Analytics. Faster insights. Better outcomes.

Together, they re better. NICE Quality Central + Nexidia Analytics. Faster insights. Better outcomes. Together, they re better. NICE Quality Central + Nexidia Analytics. Faster insights. Better outcomes. NICE Quality Central Powered by Nexidia Analytics Better Together Align Quality Processes The contact

More information

FORENSIC AUDIT SEMINAR Presentation by: Isaac Mutembei Murugu CIA, CISA

FORENSIC AUDIT SEMINAR Presentation by: Isaac Mutembei Murugu CIA, CISA FORENSIC AUDIT SEMINAR Presentation by: Isaac Mutembei Murugu CIA, CISA 6 th October 2017 Uphold public interest Agenda IT Tools, Techniques and Data Analytics in Fraud Auditing 1. Technology as a driver

More information

The Road to Continuous Assurance. Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc.

The Road to Continuous Assurance. Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc. The Road to Continuous Assurance Jason A. Gross, CPA, CIA, CFE, CISA, ACDA Vice President, Controls Management Siemens Financial Services, Inc. Agenda Key Drivers for Successful Implementation Technology

More information

Maximizing value from your lines of defense

Maximizing value from your lines of defense Insights on governance, risk and compliance December 2013 Maximizing value from your lines of defense A pragmatic approach to establishing and optimizing your LOD model Contents Introduction Are you getting

More information

Continuous Auditing and Monitoring technology - the next generation

Continuous Auditing and Monitoring technology - the next generation Technology for Business Assurance Continuous Auditing and Monitoring technology - the next generation Copyright 2009 ACL Services Ltd. 19 th World Continuous Auditing Symposium Rutgers Business School

More information

September 19, 2007 San Francisco Chapter

September 19, 2007 San Francisco Chapter Optimizing Spreadsheet Controls A Proactive Approach to Sustaining Compliance September 19, 2007 Welcome! Today s Facilitators Dannette Roberts Industry Partner Manager Microsoft Corporation Terry Nystrom

More information

Audit the Future: Using Audit Analysis to Predictively Manage Future Risks. Dan Zitting, CPA, CISA, GRCA Chief Product Officer, ACL

Audit the Future: Using Audit Analysis to Predictively Manage Future Risks. Dan Zitting, CPA, CISA, GRCA Chief Product Officer, ACL Audit the Future: Using Audit Analysis to Predictively Manage Future Risks Dan Zitting, CPA, CISA, GRCA Chief Product Officer, ACL I Hear Unbelievable Stories Every Day A savvy ACL user last year landed

More information

COSO Updates and Expectations. IIA San Diego Chapter January 8, 2014

COSO Updates and Expectations. IIA San Diego Chapter January 8, 2014 COSO Updates and Expectations IIA San Diego Chapter January 8, 2014 Agenda Overview of 2013 Internal Control-Integrated Framework and Companion Guidance 2013 Framework General Enhancements by Component

More information

2013 New COSO 2013 Framework and Current Trends in Risk Management

2013 New COSO 2013 Framework and Current Trends in Risk Management 2013 New COSO 2013 Framework and Current Trends in Risk Management Session 105 IASA 86 TH ANNUAL EDUCATIONAL CONFERENCE & BUSINESS SHOW Agenda COSO 2013 framework Overview Why the update? What has been

More information

Control and testing transformation

Control and testing transformation Control and testing transformation 1 Control and testing transformation Innovation and disruption are providing incredible opportunities and challenges to the process, risk and control environment in the

More information

BlackLine Compliance

BlackLine Compliance BlackLine Compliance The Compliance Imperative Compliance and Internal Audit teams are facing a complex regulatory and operating environment. Many teams are under significant cost pressure to improve efficiency

More information

EY Center for Board Matters. Leading practices for audit committees

EY Center for Board Matters. Leading practices for audit committees EY Center for Board Matters for audit committees As an audit committee member, your role is increasingly complex and demanding. Regulators, standard-setters and investors are pressing for more transparency

More information

Internal Audit & the Audit Committee

Internal Audit & the Audit Committee HCCA Audit & Compliance Committee Conference February 2008 Internal Audit & the Audit Committee Glen C. Mueller, CPA, CIA, CISA, CISM Scripps Health, San Diego, CA VP-Chief Audit & Compliance Executive

More information

Innovation in transactions

Innovation in transactions Innovation in transactions Data and Analytics in the Transaction lifecycle Kenneth Ingram EY Transaction Analytics Markets are changing with data growth in volume, variety and velocity Business are facing

More information

Supplier Portals 101: What You Need for Effective Supplier Information Management Systems. Aloke Bhandia Sr. Director, Product Management, Lavante

Supplier Portals 101: What You Need for Effective Supplier Information Management Systems. Aloke Bhandia Sr. Director, Product Management, Lavante Supplier Portals 101: What You Need for Effective Supplier Information Management Systems Aloke Bhandia Sr. Director, Product Management, Lavante September 18, 2012 Supplier Portals 101 Introduction What

More information

Plugging the Gaps in Financial Controls Monitoring

Plugging the Gaps in Financial Controls Monitoring Plugging the Gaps in Financial Controls Monitoring Finance organizations are under duress to improve overall governance and are bearing substantial costs in maintaining monitoring and audit functions.

More information

The Blue Sage Group. Sarbanes-Oxley. 404 Compliance Program. The Blue Sage Group

The Blue Sage Group. Sarbanes-Oxley. 404 Compliance Program. The Blue Sage Group The Blue Sage Group Sarbanes-Oxley 404 Compliance Program The Blue Sage Group Agenda The Blue Sage Group 404 Compliance Challenges Meeting the 404 Challenges TBSG 404 Compliance Program Assessment and

More information

SEGREGATION OF DUTIES: THE INCREASING BURDEN OF PROOF

SEGREGATION OF DUTIES: THE INCREASING BURDEN OF PROOF SEGREGATION OF DUTIES: THE INCREASING BURDEN OF PROOF Vijan Patel Protiviti Houston IIA Conference - April 3, 2017 Protiviti Perspective provided by Brandon W., Houston Internal Audit, Risk, Business &

More information

An Oracle White Paper December Reducing the Pain of Account Reconciliations

An Oracle White Paper December Reducing the Pain of Account Reconciliations An Oracle White Paper December 2012 Reducing the Pain of Account Reconciliations Introduction The finance department in most organizations is coming under increasing pressure to transform and streamline

More information

BRIBERY AND CORRUPTION

BRIBERY AND CORRUPTION ACL EBOOK BRIBERY AND CORRUPTION THE ESSENTIAL GUIDE TO MANAGING THE RISKS CONTENTS Failing to Manage Bribery and Corruption Risks Can Be Very Expensive 4 A Global Risk 8 So Why is Bribery Still Commonplace

More information

Tax Technology Solutions. A summary of our solutions designed to meet your organisation s needs

Tax Technology Solutions. A summary of our solutions designed to meet your organisation s needs Tax Technology Solutions A summary of our solutions designed to meet your organisation s needs August 2017 Managing Disruption and Tax Technology Business, economic and political disruption, both on a

More information

INTELLIGENT IAM FOR DUMMIES. SecureAuth Special Edition

INTELLIGENT IAM FOR DUMMIES. SecureAuth Special Edition INTELLIGENT IAM FOR DUMMIES SecureAuth Special Edition TABLE OF CONTENTS Introduction... 3 Introducing Intelligent Identity and Access Management (IIAM)... 4 What Can IIAM Do for You?... 7 Analyzing Account

More information

Developing an Integrated Anti-Fraud, Compliance, and Ethics Program

Developing an Integrated Anti-Fraud, Compliance, and Ethics Program Developing an Integrated Anti-Fraud, Compliance, and Ethics Program Monitoring, Assessing, and Remediating the Program 2018 Association of Certified Fraud Examiners, Inc. Discussion Questions 1. How does

More information

Five Tips: How to measure the value of your internal audit department

Five Tips: How to measure the value of your internal audit department Five Tips: How to measure the value of your internal audit department By Connie Valencia CIA, CCSA, principal with Elevate Consulting and Gaurav Kapoor COO with MetricStream Measuring the performance of

More information

2017 Internal Controls Survey

2017 Internal Controls Survey 2017 Internal Controls Survey kpmg.com 2017 Internal Controls Survey Executive summary Although Sarbanes-Oxley (SOX) is not a new regulation, it has continued to evolve over the last 15 years since it

More information

Key Questions for Your Functional Partners. Improving Cross-Functional Collaboration in Compliance Program Activities

Key Questions for Your Functional Partners. Improving Cross-Functional Collaboration in Compliance Program Activities Key Questions for Your Functional Partners Improving Cross-Functional Collaboration in Compliance Program Activities WHAT IT MEANS TO BE BUILT-IN This report will help integrate compliance and ethics programs

More information

Continuous Auditing. What This Guide Covers. What This Guide Covers. What This Guide Covers. Environment Check. A Brief History

Continuous Auditing. What This Guide Covers. What This Guide Covers. What This Guide Covers. Environment Check. A Brief History Continuous Auditing Global Technology Auditing Guide 3 Brief history Environment check COSO ERM Benefits Key concepts www.theiia.org 2 Relationship of continuous auditing, continuous monitoring, and continuous

More information

Internal Controls Optimization

Internal Controls Optimization Internal Controls Optimization PricewaterhouseCoopers LLP Controls optimization Background on Internal Controls Background on Internal Controls Business advances that have offered growth and opportunity

More information

Comprehensive Enterprise Solution for Compliance and Risk Monitoring

Comprehensive Enterprise Solution for Compliance and Risk Monitoring Comprehensive Enterprise Solution for Compliance and Risk Monitoring 30 Wall Street, 8th Floor New York, NY 10005 E inquiries@surveil-lens.com T (212) 804-5734 F (212) 943-2300 UNIQUE FEATURES OF SURVEILLENS

More information

Continuous Auditing - A Delicate Chemistry

Continuous Auditing - A Delicate Chemistry Continuous Auditing - A Delicate Chemistry Continuous Auditing - A Delicate Chemistry - WeiserMazars LLP s Governance, Risk and Compliance (GRC) Group WeiserMazars LLP is an independent member firm of

More information

Empower loss prevention with strategic data analytics

Empower loss prevention with strategic data analytics www.pwc.com/us/lossprevention January 2015 Empower loss prevention with strategic data analytics Empower loss prevention with strategic data analytics Amid heightened levels of business competition and

More information

Internal Audit s Brave Prudent, New World Annual WNY Conference

Internal Audit s Brave Prudent, New World Annual WNY Conference Internal s Brave Prudent, New World 2017 Annual WNY Conference AGENDA Utopia or Dystopia Design for a new world: frameworks Data analytics and the audit life cycle Session Description The always-increasing

More information

BPS Resolver Internal Audit

BPS Resolver Internal Audit Internal Audit We help companies operate responsibly and sustainably, grow with a clear understanding of strategic risk and reward, and leave the business, its stakeholders and the community in a stronger

More information

Speech by SEC Staff: Remarks before the 2007 AICPA National Conference on Current SEC and PCAOB Developments

Speech by SEC Staff: Remarks before the 2007 AICPA National Conference on Current SEC and PCAOB Developments Home Previous Page Speech by SEC Staff: Remarks before the 2007 AICPA National Conference on Current SEC and PCAOB Developments by Josh Jones Professional Accounting Fellow, Office of the Chief Accountant

More information

A Financial Executive s Guide to Internal Controls & Fraud Prevention in the Cloud

A Financial Executive s Guide to Internal Controls & Fraud Prevention in the Cloud A Financial Executive s Guide to Internal Controls & Fraud Prevention in the Cloud July 2018 Greenlight Technologies. All rights reserved. 1 Speakers James Rice Vice President of Customer Solutions Greenlight

More information

ARIS WHAT S NEW? USER GROUP NORDIC. Helge Hess ARIS Product Management / Marketing

ARIS WHAT S NEW? USER GROUP NORDIC. Helge Hess ARIS Product Management / Marketing ARIS USER GROUP NORDIC WHAT S NEW? Helge Hess ARIS Product Management / Marketing TRANSFORM.MANAGE.CONTROL Manage Constant Change CONTROL HOW YOUR ORGANISATION ACTUALLY PERFORMS TRANSFORM HOW TO WIN IN

More information

DIGITAL CASE STUDIES

DIGITAL CASE STUDIES DIGITAL CASE STUDIES 1 Digital Banking with an Internet-Only Bank Digital banking is at a tipping point, our clients are looking for support to create new digitally disruptive services while complying

More information

Using Transactional Analysis for

Using Transactional Analysis for Using Transactional Analysis for Effective Fraud Detection Date: 15 th January 2009 Nishith Seth Seth Services.P. Ltd. www.sspl.net.in Cost Indirect costs: image, morale Fraud Issues & Impact Direct costs:

More information

Audit and Advisory Services Integrity, Innovation and Quality. Audit of Internal Controls over Financial Reporting

Audit and Advisory Services Integrity, Innovation and Quality. Audit of Internal Controls over Financial Reporting Audit and Advisory Services Integrity, Innovation and Quality Audit of Internal Controls over Financial Reporting October 2015 Table of Contents i Audit of Internal Controls over Financial Reporting EXECUTIVE

More information

RISK MANAGEMENT FOR FINANCIAL SERVICES

RISK MANAGEMENT FOR FINANCIAL SERVICES -/+? REPORT RISK MANAGEMENT FOR FINANCIAL SERVICES Report 1 2 1 3 90 EQ7 -/+ 87? 2 RISK MANAGEMENT FOR FINANCIAL SERVICES RISK MANAGEMENT FOR FINANCIAL SERVICES A New Generation Software for the New World

More information

Benchmarking Report Share, Compare, Validate SAMPLE. Year: 2017 Your Organization Date

Benchmarking Report Share, Compare, Validate SAMPLE. Year: 2017 Your Organization Date Benchmarking Report Share, Compare, Validate Year: 2017 Your Organization Date Benchmarking Tier 1: Your Organization Benchmarking Tier 2: Services Benchmarking Tier 3: Services $1B to $5B Benchmarking

More information

Table of Contents. Preface xi. Acknowledgments xv. Chapter 1: What We All Share 1. Need for Control Criteria 1

Table of Contents. Preface xi. Acknowledgments xv. Chapter 1: What We All Share 1. Need for Control Criteria 1 Table of Contents Preface xi Acknowledgments xv Chapter 1: What We All Share 1 Need for Control Criteria 1 Overview of the COSO Internal Control Integrated Framework 2 Holistic, Integrated View 3 Revised

More information

Reinforcing the Three Lines of Defense SAP software for risk management, process control, and audit management

Reinforcing the Three Lines of Defense SAP software for risk management, process control, and audit management Reinforcing the Three Lines of Defense SAP software for risk management, process control, and audit management Three Lines of Defense Building confidence and trust The three-lines-of-defense framework,

More information

Connecting the Dots: Your Role in Corporate Performance Management Part 2 Analytics Where Audit Meets Performance Stephen Wang Ernst & Young

Connecting the Dots: Your Role in Corporate Performance Management Part 2 Analytics Where Audit Meets Performance Stephen Wang Ernst & Young Connecting the Dots: Your Role in Corporate Performance Management Part 2 Analytics Where Audit Meets Performance Stephen Wang Ernst & Young Stephen Wang EY ShinNihon Senior Manager, Advisory Services

More information

Sarbanes-Oxley: Company Case Study - Viacom Inc. IT General Controls - Sustaining Compliance Efforts. Anthony Noble VP, IT Internal Audit

Sarbanes-Oxley: Company Case Study - Viacom Inc. IT General Controls - Sustaining Compliance Efforts. Anthony Noble VP, IT Internal Audit Sarbanes-Oxley: A Focus on IT Controls Company Case Study - Viacom Inc. IT General Controls - Sustaining Compliance Efforts Anthony Noble VP, IT Internal Audit Today s Agenda Introduction Viacom Methodology

More information

Oceanfile Marine. David Sanderson

Oceanfile Marine. David Sanderson Oceanfile Marine David Sanderson Effective Management Tools for the Statistical and Analytical Requirements of TMSA3 Effective Management Tools - Key Benefits: Complete TMSA Workflow Streamlined TMSA Audits

More information

ENTERPRISE RISK MANAGEMENT USING DATA ANALYTICS. Dan Julevich and Chris Dawes April 17, 2015

ENTERPRISE RISK MANAGEMENT USING DATA ANALYTICS. Dan Julevich and Chris Dawes April 17, 2015 ENTERPRISE RISK MANAGEMENT USING DATA ANALYTICS Dan Julevich and Chris Dawes April 17, 2015 Agenda ERM What, Why, How? ERM Keys to Success Fail, Survive, or Thrive? ERM Current State Overview ERM Leading

More information

Bribery and Corruption

Bribery and Corruption Bribery and Corruption Anti-Corruption Programs 2018 Association of Certified Fraud Examiners, Inc. Discussion Questions 1. What companywide policies does your organization have in place to address the

More information

The Future of Accounts Payable

The Future of Accounts Payable November 12-14, 2017 Bellagio Resort & Casino, Las Vegas The Future of Accounts Payable Presented by: Mark Brousseau November 12-14, 2017 Bellagio Resort & Casino, Las Vegas Accounts Payable Automation

More information

Emerging technologies such as AI present a host of risks, and opportunities, for auditors to consider.

Emerging technologies such as AI present a host of risks, and opportunities, for auditors to consider. TECHNOLOGY Emerging technologies such as AI present a host of risks, and opportunities, for auditors to consider. Michael Rose, Ethan Rojhani, and Vivek Rodrigues Illustration by Sean Yates T he big in

More information

Outsourcing banking processes: The question is no longer if, but how to effectively manage extended enterprises

Outsourcing banking processes: The question is no longer if, but how to effectively manage extended enterprises Outsourcing banking processes: The question is no longer if, but how to effectively manage extended enterprises In today s business environment, banks are continuously facing challenges to reduce their

More information

Trusted by more than 150 CSPs worldwide.

Trusted by more than 150 CSPs worldwide. RAID is a platform designed for Communication Service Providers that want to leverage their data assets to improve business processes and gain business insights, while at the same time simplify their IT

More information

3/28/2016. Compliance and Operational Risk Management using Data Analytics. Agenda. ACL History. ACL Today. ACL is growing. What is data-driven GRC?

3/28/2016. Compliance and Operational Risk Management using Data Analytics. Agenda. ACL History. ACL Today. ACL is growing. What is data-driven GRC? Agenda Compliance and Operational Risk Management using Data Analytics Presenters: Scott Robinson Account Executive, ACL Public Sector Mark Swann Metropolitan Auditor, Metropolitan Government of Nashville

More information

Adopting automation in internal audit Using robotic process automation and cognitive intelligence to fortify the third line of defense

Adopting automation in internal audit Using robotic process automation and cognitive intelligence to fortify the third line of defense Adopting automation in internal audit Using robotic process automation and cognitive intelligence to fortify the third line of defense The age of automation is here, and with it comes opportunities for

More information

W207: How should you leverage internal audit? October 26, 2016

W207: How should you leverage internal audit? October 26, 2016 W207: How should you leverage internal audit? October 26, 2016 Agenda Internal Audit Framework 3 Lines of Defense Value Enhancement Work Internal Audit vs. Compliance Areas of Focus Key takeaways 2 What

More information

Flexibility of WRM and The Power of WRM. Bob Adderley

Flexibility of WRM and The Power of WRM. Bob Adderley Flexibility of WRM and The Power of WRM Bob Adderley 1 Risk Management (GRCA) are the starting point but you can add on many other things including: Internal Audit Business Continuity Management Incident

More information

The Best of Crimes, the Worst of Crimes: Fraud Stories That Prove the Truth Is in the Transactions

The Best of Crimes, the Worst of Crimes: Fraud Stories That Prove the Truth Is in the Transactions Technology for Business Assurance The Best of Crimes, the Worst of Crimes: Fraud Stories That Prove the Truth Is in the Transactions Copyright 2009 ACL Services Ltd. Peter Millar Director, Technology Application

More information

Internal Control Program

Internal Control Program DFA Conversations Office of the University Controller Internal Control Program November 20, 2017 Introduction Bill Sibert, University Controller Erica Jessup, Senior Financial Analyst Phil Turke, Payroll

More information

Present and functioning: Fine-tuning your ICFR using the COSO update

Present and functioning: Fine-tuning your ICFR using the COSO update Present and functioning: Fine-tuning your ICFR using the COSO update November 2014 With the COSO s 1992 Control Framework being superseded by the 2013 updated edition on December 15, 2014, now is the time

More information

CREATING A FRAUD RISK ASSESSMENT AND IMPLEMENTING A CONTINUOUS MONITORING PROGRAM

CREATING A FRAUD RISK ASSESSMENT AND IMPLEMENTING A CONTINUOUS MONITORING PROGRAM CREATING A FRAUD RISK ASSESSMENT AND IMPLEMENTING A CONTINUOUS MONITORING PROGRAM Compliance professionals around the world are struggling with how to do more with less. In order to provide effective assurance

More information

How a university audit team became senior leadership s trusted advisors. September 14, 2017

How a university audit team became senior leadership s trusted advisors. September 14, 2017 How a university audit team became senior leadership s trusted advisors September 14, 2017 Presenters Curtis Josey Jr. Data Analytics Manager Audit Office, Cornell University Mark Perry, CPA Audit Director

More information

Continuous Auditing at Siemens. Gerard (Rod) Brennan Dir. IT Audit Siemens Corp

Continuous Auditing at Siemens. Gerard (Rod) Brennan Dir. IT Audit Siemens Corp Continuous Auditing at Siemens Gerard (Rod) Brennan Dir. IT Audit Siemens Corp Eighth Continuous Auditing & Reporting Symposium Meeting 11/5/2004 CFFA Team Meeting Agenda Why continuous auditing at Siemens?

More information

Identity Governance and Administration

Identity Governance and Administration Identity Governance and Administration Background In the early days of identity management, organizations implemented the technology to provision access to applications so that users could be more efficient

More information

Service Business Plan

Service Business Plan Service Business Plan Service Name Internal Audit Service Type Internal Service Owner Name Sheila Jones Year 2018 Service Owner Title Service Description City Auditor An internal service to provide independent,

More information

Internal Audit Solutions:

Internal Audit Solutions: Internal Audit Solutions: Internal Audit Leading Practices - Continuous Monitoring / Auditing Provided to Sioux Falls, SD IIA Chapter Thursday January 25, 2018 11:30 AM 1:00 PM CT Today's Presenter Anne

More information

Streamline your business processes for far-reaching results. EY s Business Process Management Services practice

Streamline your business processes for far-reaching results. EY s Business Process Management Services practice Streamline your business processes for far-reaching results EY s Business Process Management Services practice Introduction Today s financial services organizations are facing a number of pressures: Stressed

More information

SAP Road Map for Governance, Risk, and Compliance Solutions

SAP Road Map for Governance, Risk, and Compliance Solutions SAP Road Map for Governance, Risk, and Compliance Solutions Q4 2016 Customer Disclaimer The information in this presentation is confidential and proprietary to SAP and may not be disclosed without the

More information

B S R & Co. LLP. Reporting on Internal. Reporting An Overview. Sarbanes Oxley Act (SOX) 28 December 2013

B S R & Co. LLP. Reporting on Internal. Reporting An Overview. Sarbanes Oxley Act (SOX) 28 December 2013 B S R & Co. LLP Reporting on Internal Controls over Financial Reporting An Overview Sarbanes Oxley Act (SOX) 28 December 2013 Agenda Sarbanes Oxley Key Sections COSO Framework Management Approach to ICOFR

More information

SARBANES-OXLEY COMPLIANCE MANAGING CHANGING EXPECTATIONS January 20, 2017

SARBANES-OXLEY COMPLIANCE MANAGING CHANGING EXPECTATIONS January 20, 2017 SARBANES-OXLEY COMPLIANCE MANAGING CHANGING EXPECTATIONS January 20, 2017 Pat Mitchell Managing Director Internal Audit, Risk, Business & Technology Consulting CHANGES IN THE COST AND SCOPE OF SOX COMPLIANCE

More information

Infor Risk & Compliance Monitor and control risk across your business

Infor Risk & Compliance Monitor and control risk across your business Infor Risk & Compliance Monitor and control risk across your business Automate the detection, prevention, and remediation of fraud, waste, and abuse Make informed, actionable decisions Navigating risk

More information

Corporate Governance Update. SOX 404 and Internal Controls

Corporate Governance Update. SOX 404 and Internal Controls Corporate Governance Update SOX 404 and Internal Controls Speakers Barbara Borden bborden@cooley.com 858.550.6243 Brad Peck bpeck@cooley.com 858.550.6012 Steven Spector (858) 453-7200 x229 sspector@arenapharm.com

More information

Risk-Focused Examinations

Risk-Focused Examinations Risk-Focused Examinations Session 704 IASA 86 TH ANNUAL EDUCATIONAL CONFERENCE & BUSINESS SHOW Understanding the Examination Process In order to be able to maximize examination efficiency and have examiners

More information

The Future of Accounts Payable

The Future of Accounts Payable May 7-9, 2017 Disney s Yacht & Beach Club Resorts, Florida The Future of Accounts Payable Presented by: Mark Brousseau May 7-9, 2017 Disney s Yacht & Beach Club Resorts, Florida Accounts Payable Automation

More information

Vendor Due Diligence: Keep The Risk Out!

Vendor Due Diligence: Keep The Risk Out! Vendor Due Diligence: Keep The Risk Out! August 25, 2015 2015 ProcessUnity, Inc. All Rights Reserved. ProcessUnity Risk Suite Comprehensive, Flexible, Scalable RISK SUITE Enterprise Risk Regulatory Compliance

More information

Board Audit Committee Training Automation of Audit Function. Anthony Wanyoike TeamMate Consulting East, Central & West Africa

Board Audit Committee Training Automation of Audit Function. Anthony Wanyoike TeamMate Consulting East, Central & West Africa Board Audit Committee Training Automation of Audit Function Anthony Wanyoike TeamMate Consulting East, Central & West Africa Agenda 1. Automation of Audit Function Steps of developing automated Audit Operational

More information

Energy Future Holdings (EFH)

Energy Future Holdings (EFH) Energy Future Holdings (EFH) Inclusion of Data Analytics into the Internal Audit Lifecycle June 3, 2015 Starting Place Baseline Questions Pertaining to the utilization of data analytics in the internal

More information

The Challenges of Modern Financial Reporting. Girish Muzumdar

The Challenges of Modern Financial Reporting. Girish Muzumdar The Challenges of Modern Financial Reporting Girish Muzumdar Agenda The Survey The Essence of the Survey Financial reporting continues to be a major challenge for most finance teams for several significant

More information

5th CAE Annual Conference

5th CAE Annual Conference 5th CAE Annual Conference 6 7 December 2015 Lead to Innovate, Innovate to Lead Data-Enabled Auditing Thomas Pulling www.pwc.com/me Data-Enabled Auditing Welcome and introduction 3 Introductions Thomas

More information

Integrating COSO s Fraud Risk Management Guide on an Enterprise Scale

Integrating COSO s Fraud Risk Management Guide on an Enterprise Scale Integrating COSO s Fraud Risk Management Guide on an Enterprise Scale September 15, 2017 Vincent Walden Partner EY Atlanta Delores White Director, Internal Audit Southern Company Scott Hulsey Chief Compliance

More information

Internal Audit Division FY 17 - Audit Plan Overview

Internal Audit Division FY 17 - Audit Plan Overview Division FY 17 - Audit Plan Overview Our Value Proposition - Objective Insight and Catalyst for Positive Change delivers value-added services that are catalysts for positive institutional change in governance,

More information

Internal controls over financial reporting Uncovering the full picture of control costs

Internal controls over financial reporting Uncovering the full picture of control costs Internal controls over financial reporting Uncovering the full picture of control costs kpmg.com Internal controls over financial reporting (ICOFR) is expensive, with many costs hidden, since the departments

More information