Sarbanes-Oxley and the New Internal Auditing Rules

Size: px
Start display at page:

Download "Sarbanes-Oxley and the New Internal Auditing Rules"

Transcription

1 Sarbanes-Oxley and the New Internal Auditing Rules ROBERT R. MOELLER John Wiley & Sons, Inc.

2

3 Sarbanes-Oxley and the New Internal Auditing Rules

4

5 Sarbanes-Oxley and the New Internal Auditing Rules ROBERT R. MOELLER John Wiley & Sons, Inc.

6 This book is printed on acid-free paper. Copyright 2004 by John Wiley & Sons, Inc. All rights reserved. Published by John Wiley & Sons, Inc., Hoboken, New Jersey Published simultaneously in Canada No part of this publication may be reproduced, stored in a retrieval system, or transmitted in any form or by any means, electronic, mechanical, photocopying, recording, scanning, or otherwise, except as permitted under Section 107 or 108 of the 1976 United States Copyright Act, without either the prior written permission of the Publisher, or authorization through payment of the appropriate per-copy fee to the Copyright Clearance Center, Inc., 222 Rosewood Drive, Danvers, MA 01923, , fax , or on the web at Requests to the Publisher for permission should be addressed to the Permissions Department, John Wiley & Sons, Inc., 111 River Street, Hoboken, NJ 07030, , fax , permcoordinator@wiley.com. Limit of Liability/Disclaimer of Warranty: While the publisher and author have used their best efforts in preparing this book, they make no representations or warranties with respect to the accuracy or completeness of the contents of this book and specifically disclaim any implied warranties of merchantability or fitness for a particular purpose. No warranty may be created or extended by sales representatives or written sales materials. The advice and strategies contained herein may not be suitable for your situation. You should consult with a professional where appropriate. Neither the publisher nor author shall be liable for any loss of profit or any other commercial damages, including but not limited to special, incidental, consequential, or other damages. For general information on our other products and services, or technical support, please contact our Customer Care Department within the United States at , outside the United States at or fax Wiley also publishes its books in a variety of electronic formats. Some content that appears in print may not be available in electronic books. For more information about Wiley products, visit our web site at Library of Congress Cataloging-in-Publication Data Moeller, Robert R. Sarbanes-Oxley and the new internal auditing rules / Robert R. Moeller. p. cm. Includes bibliographical references and index. ISBN (CLOTH) 1. Auditing, Internal Law and legislation United States. 2. United States. Sarbanes-Oxley Act of I. Title. KF1357.M '063 dc Printed in the United States of America

7 To my best friend and wife, Lois Moeller

8

9 contents Preface xi CHAPTER 1 Introduction 1 Accounting and Auditing Scandals and Internal Audit 1 What Are the New Rules? 3 Who Will Find this Book Useful? 7 CHAPTER 2 Internal Audit and the Sarbanes-Oxley Act 9 Where Were the Auditors? Standards Failure 10 Sarbanes-Oxley Overview: Key Internal Audit Concerns 12 Impact of the Sarbanes-Oxley Act on the Modern 57 Internal Auditor CHAPTER 3 Heightened Responsibilities for Audit Committees 59 Audit Committee Charters and Other Requirements 60 Board s Financial Expert and Internal Audit 64 Helping to Establish Documentation Procedures 67 Controlling Other Audit Services 69 Establishing Open Communications 70 CHAPTER 4 Launching an Ethics and Whistleblower Program 71 Launching an Organization Ethics Program 72 Establishing a Mission or Values Statement 79 Codes of Conduct 81 Whistleblower and Hotline Functions 89 Auditing the Organization s Ethics Functions 99 vii

10 viii CONTENTS Chapter 5 COSO, Section 404, and Control Self-Assessments 103 SOA Section COSO Internal Control Framework 123 Violation Penalties: Organizational Sentencing Guidelines 146 Control Self-Assessments 155 Chapter 6 IIA, CobiT, and Other Professional Internal Audit Standards 165 Institute of Internal Auditors Standards for Professional Practice 165 CobiT and Information Technology Governance 175 ASQ Audit Standards: A Different Approach 183 Chapter 7 Disaster Recovery and Continuity Planning after 9/ Business Continuity Planning and the New Language of Recovery Planning 190 Continuity Planning and Service-Level Agreements 194 New Technologies: Critical Data Mirroring Techniques 195 Establishing Effective Contingency Policies: What Are We Protecting? 197 Building the Disaster Planning Business Continuity Plan 198 Testing, Maintaining, and Auditing the Continuity Plan 206 Continuity Planning Going Forward 211 Chapter 8 Internal Audit Fraud Detection and Prevention 213 Red Flags: Fraud Detection for Auditors 214 Public Accounting s New Role in Fraud Detection 220 IIA Standards for Detecting and Investigating Fraud 223 Fraud Investigations for Internal Auditors 225 Information Systems Fraud Prevention Processes 226 Chapter 9 Enterprise Risk Management, Privacy, and Other Legislative Initiatives 231 Enterprise Risk Management 231 Concurrent with SOA: Other Legislation Impacting Internal Auditors 243

11 Contents Chapter 10 Rules and Procedures for Internal Auditors Worldwide 257 ix SOA International Requirements 258 International Accounting and Auditing Standards 259 COSO Worldwide: International Internal Control Frameworks 267 ISO and the Standards Registration Process 272 ITIL Service Support and Service Delivery Best Practices 279 Chapter 11 Continuous Assurance Auditing Future Directions 293 Implementing Continuous Assurance Auditing 294 Internet-Based Extensible Mark-Up Languages: XBRL 302 Data Warehouses, Data Mining, and OLAP 306 Newer Technologies, the Continuous Close, and SOA 311 Chapter 12 Summary: Internal Auditing Going Forward 313 Future Prospects for Internal Auditors 313 Glossary 317 Index 321

12

13 H1 head xi preface After years of gradually changing, the profession of internal auditing in the late 1990s was very different from the internal auditing profession of an earlier decade. Perhaps one of the more significant changes was that the major public accounting firms were aggressively assuming responsibility for internal audit functions through what was called outsourcing. Many internal audit professionals suddenly found themselves working for their public accounting firms as outsourced internal auditors. Although there were many good things to say about this trend, new internal audit roles and responsibilities were evolving and the profession of internal auditing was changing. This was all happening during the dot-com bubble of the 1990s, during which time the stock market was going in only one direction up and some serious thinkers were predicting that there would never be another market downturn. A series of events in the later 1990s and early 2000 changed all of this and the rules. Suddenly we were faced with a series of corporate failures and accounting scandals, many of which were caused by corporate executives who liberally bent the rules or blatantly reported false financial results for their organizations. Corporate scandals are nothing new in the United States; there has been a major failure about once every ten years over the last century. However, this was different. The traditional watchdogs auditors and board members appeared to be asleep at the switch. There was a clamor to do something! The end result was that, in 2002, the U.S. Congress passed the Sarbanes-Oxley Act, a major new rule that impacts both internal and external auditors, corporate senior management, their boards of directors, and more. Among other matters, the act prohibited the public accounting practice of outsourcing internal audit services. The Sarbanes-Oxley Act, often referenced as just SOA, is the major new rule discussed throughout this book. Internal auditors now have some new responsibilities with regard to their audit committees and external auditors and for overall corporate governance. This book explains these changes and how internal audit can help with other requirements, such as launching an ethics and whistle-blower program or performing effective internal controls reviews under the COSO (Committee of Sponsoring Organizations) framework. xi

14 xii PREFACE Some of what we call new rules are not really rules at all but are best practices that have gained the attention of professionals worldwide. Business recovery and continuity procedures after the World Trade Center terrorist attack of September 11, 2001, are an example. Some organizations had processes in place that allowed easier recovery from that event, and we discuss those approaches. Even though internal auditors may not be initiating such practices, they need to have an understanding of such best practices as part of reviewing current approaches or recommending improvements. This book also discusses other new trends or legislation that is creating new rules for internal auditors. One of these is the overall emphasis on privacy and security in many areas. We discuss several here, with Healthcare and Insurance Portability and Accountability Act (HIPAA) and its privacy rules as an example. Although that legislation is directed at healthcare, its requirements regarding such things as electronic signatures will cause changes in a wide range of organizations and systems. Fraud detection and prevention is another trend that is becoming a new rule. Auditors, both internal and external, often treated fraud matters in the past as not my job ; however, the rules are changing here. The American Institute of Certified Public Accountants (AICPA) has issued new fraud-related auditing standards, with more changes to come. Risk management is yet another new rule area. As this book goes to press, a new COSO Enterprise Risk Management (ERM) framework has just been released in draft form. The book introduces this draft framework, which will soon become an important new rule for internal auditors. This book attempts to describe the new rules impacting internal auditors and other professionals as they exist in mid We may have missed the point in some areas, or things may change in directions different from what we have anticipated. However, the Sarbanes-Oxley Act of 2003, as well as a series of other matters occurring at about the same time, have created a series of new rules for internal auditors and management professionals, both in the United States and worldwide. Although some final rules are yet to be issued and other matters may change, this book outlines some of the new rules as well as evolving trends that impact internal audit professionals. ROBERT MOELLER

15 CHAPTER 1 Introduction ACCOUNTING AND AUDITING SCANDALS AND INTERNAL AUDIT Despite all of the cataclysmic predictions of computer systems and other process-related disasters, the world survived the Y2K millennium change to the year 2000 with no major problems. However, the following year, 2001, became a real disaster for many U.S. accountants and auditors, as well as business in general. The long-running stock market boom, fueled by dot-com Internet businesses, was shutting down with many companies failing and growing ranks of unemployed professionals. Those same boom years spawned some businesses following new or very different models or approaches. One business that received considerable attention and investor interest at that time was Enron, an energy trading company. Starting as an oil and gas pipeline company, Enron developed a business model based on buying and selling excess capacity first over its competitors pipelines and then moved to excess capacity trading in many other areas. For example, an electrical utility might have a power plant generating several millions of excess kilowatt-hours of power during a period. Enron would arrange to buy the rights to that power and then sell it to a different power company to get the latter out of a capacity crunch. Enron applied its trading concept in many other areas, such as telephone message capacity, oil tankers, and water purification. Enron quickly became a very large corporation and got the attention of investors. Its business approach was aggressive but appeared to be profitable. Then, in late 2001, it was discovered that Enron was not telling investors the true story about its financial condition. It was found to be using off balance sheet accounting to hide some major debt balances. It had been transferring significant financial transactions to the books of unaffiliated partnership organizations that did not have to be consolidated into its financial statements. Even worse, the off balance sheet entities were paper-shuffling transactions 1

Despite all of the cataclysmic predictions of computer systems and other

Despite all of the cataclysmic predictions of computer systems and other c01.tex (001-008) 12/12/03 2:55 PM Page 1 CHAPTER 1 Introduction ACCOUNTING AND AUDITING SCANDALS AND INTERNAL AUDIT Despite all of the cataclysmic predictions of computer systems and other process-related

More information

For more information on any of the above titles, please visit

For more information on any of the above titles, please visit ESSENTIALS of XBRL Financial Reporting in the 21st Century Bryan Bergeron John Wiley & Sons, Inc. ESSENTIALS of XBRL Essentials Series The Essentials Series was created for busy business advisory and

More information

JOHN BASCHAB JON PIOT

JOHN BASCHAB JON PIOT T H E PROFESSIONAL SERVICES FIRM BIBLE JOHN BASCHAB JON PIOT John Wiley & Sons, Inc. T H E PROFESSIONAL SERVICES FIRM BIBLE T H E PROFESSIONAL SERVICES FIRM BIBLE JOHN BASCHAB JON PIOT John Wiley & Sons,

More information

A Guide to Creating a Successful Algorithmic Trading Strategy

A Guide to Creating a Successful Algorithmic Trading Strategy A Guide to Creating a Successful Algorithmic Trading Strategy The Wiley Trading series features books by traders who have survived the market s ever changing temperament and have prospered some by reinventing

More information

SOFTWARE EVOLUTION AND MAINTENANCE

SOFTWARE EVOLUTION AND MAINTENANCE SOFTWARE EVOLUTION AND MAINTENANCE A PRACTITIONER S APPROACH PRIYADARSHI TRIPATHY KSHIRASAGAR NAIK SOFTWARE EVOLUTION AND MAINTENANCE SOFTWARE EVOLUTION AND MAINTENANCE A Practitioner s Approach PRIYADARSHI

More information

COSO ENTERPRISE RISK MANAGEMENT

COSO ENTERPRISE RISK MANAGEMENT COSO ENTERPRISE RISK MANAGEMENT UNDERSTANDING THE NEW INTEGRATED ERM FRAMEWORK ROBERT R. MOELLER JOHN WILEY & SONS, INC. COSO ENTERPRISE RISK MANAGEMENT COSO ENTERPRISE RISK MANAGEMENT UNDERSTANDING

More information

Corporate Recruiting Reports. Strategic OUTSOURCING. Staffing.org

Corporate Recruiting Reports. Strategic OUTSOURCING. Staffing.org Corporate Recruiting Reports Strategic OUTSOURCING Staffing.org Corporate Recruiting Reports Strategic Outsourcing 10 Burchard Lane, Rowayton, CT 06853 www.staffing.org 203-227-0186 Staffing.org, Inc.,

More information

THE TRAINER S BALANCED SCORECARD. Ajay M. Pangarkar Teresa Kirkwood. Foreword by Dr. David Norton

THE TRAINER S BALANCED SCORECARD. Ajay M. Pangarkar Teresa Kirkwood. Foreword by Dr. David Norton Essential resources for training and HR professionals THE TRAINER S Ajay M. Pangarkar Teresa Kirkwood Foreword by Dr. David Norton BALANCED SCORECARD A Complete Resource for Linking LEARNING to ORGANIZATIONAL

More information

IT and Enterprise Governance By Michael J. A. Parkinson, CISA, CIA, and Nicholas J. Baker, CPA

IT and Enterprise Governance By Michael J. A. Parkinson, CISA, CIA, and Nicholas J. Baker, CPA Copyright 2005 Information Systems Audit and Control Association. All rights reserved. www.isaca.org. IT and Enterprise Governance By Michael J. A. Parkinson, CISA, CIA, and Nicholas J. Baker, CPA Enterprise

More information

AUDITING THE RISK MANAGEMENT PROCESS K.H. SPENCER PICKETT

AUDITING THE RISK MANAGEMENT PROCESS K.H. SPENCER PICKETT AUDITING THE RISK MANAGEMENT PROCESS K.H. SPENCER PICKETT John Wiley & Sons, Inc. AUDITING THE RISK MANAGEMENT PROCESS AUDITING THE RISK MANAGEMENT PROCESS K.H. SPENCER PICKETT John Wiley & Sons, Inc.

More information

ENGINEERING INNOVATIVE PRODUCTS

ENGINEERING INNOVATIVE PRODUCTS ENGINEERING INNOVATIVE PRODUCTS ENGINEERING INNOVATIVE PRODUCTS A PRACTICAL EXPERIENCE Edited by Roger Woods Karen Rafferty Julian Murphy School of Electronics, Electrical Engineering and Computer Science,

More information

PROJECT MANAGEMENT CASE STUDIES, FOURTH EDITION

PROJECT MANAGEMENT CASE STUDIES, FOURTH EDITION PROJECT MANAGEMENT CASE STUDIES, FOURTH EDITION PROJECT MANAGEMENT CASE STUDIES, FOURTH EDITION HAROLD KERZNER, Ph.D. Senior Executive Director for Project Management The International Institute for Learning

More information

BUSINESS CPA EXAM REVIEW V 3.0. For Exams Scheduled After March 31, 2017

BUSINESS CPA EXAM REVIEW V 3.0. For Exams Scheduled After March 31, 2017 For Exams Scheduled After March 31, 2017 CPA EXAM REVIEW BUSINESS UPDATES AND ACADEMIC HELP Click on Community and Support at www.becker.com/cpa CUSTOMER SERVICE AND TECHNICAL SUPPORT Call 1-877-CPA-EXAM

More information

understanding business processes Brett CONSIDINE Alison PARKES Yvette BLOUNT

understanding business processes Brett CONSIDINE Alison PARKES Yvette BLOUNT Accounting INFORMATION Systems understanding business processes 4t h edition Brett CONSIDINE Alison PARKES Karin OLESEN Yvette BLOUNT Derek SPEER WILEY John Wiley & Sons Australia, Ltd PREFACE x ACKNOWLEDGEMENTS

More information

About the Pulse of Internal Audit

About the Pulse of Internal Audit About the Pulse of Internal Audit Number of Responses The IIA s Audit Executive Center (AEC ) has gathered insight from leaders in the CAEs 460 profession through the annual Pulse of Internal Audit survey

More information

Documentation Management

Documentation Management Documentation Management PUBLISHED BY IAITAM Publishing, LLC 1137 State Route 43 Suffield, Ohio 44260 Copyright 2008 by IAITAM Publishing, LLC All rights reserved. No part of the contents of this book

More information

Chapter 2 The Public Accounting Profession

Chapter 2 The Public Accounting Profession Chapter 2 The Public Accounting Profession Audit Challenge 2-1: Top-Quality Service East and West Chapter 2: The Public Accounting Profession 1. They would be looking for members that are current in their

More information

WELDING INSPECTION TECHNOLOGY

WELDING INSPECTION TECHNOLOGY WELDING INSPECTION TECHNOLOGY FIFTH EDITION 2008 Published by American Welding Society Education Department Education Services WELDING INSPECTION TECHNOLOGY DISCLAIMER The American Welding Society, Inc.

More information

Mc Graw Hill Education

Mc Graw Hill Education Accounting Information Systems Vernon J. Richardson University of Arkansas C. Janie Chang San Diego State University Rodney Smith California State University, Long Beach Mc Graw Hill Education Contents

More information

ACCOUNTS PAYABLE A GUIDE TO RUNNING AN EFFICIENT DEPARTMENT SECOND EDITION MARY S. SCHAEFFER JOHN WILEY & SONS, INC.

ACCOUNTS PAYABLE A GUIDE TO RUNNING AN EFFICIENT DEPARTMENT SECOND EDITION MARY S. SCHAEFFER JOHN WILEY & SONS, INC. ACCOUNTS PAYABLE A GUIDE TO RUNNING AN EFFICIENT DEPARTMENT SECOND EDITION MARY S. SCHAEFFER Executive Editor IOMA s Report on Managing Accounts Payable co-creator The Accounts Payable Certification Program

More information

Checklist for Higher Education

Checklist for Higher Education Checklist for Higher Education The following section contains a checklist addressing issues of particular relevance to higher education. The guidance is considered best practice for higher education. The

More information

Corporate Governance Principles of Auditing: An Introduction to International Standards on Auditing - Ch 14

Corporate Governance Principles of Auditing: An Introduction to International Standards on Auditing - Ch 14 Slide 14.1 Corporate Governance Principles of Auditing: An Introduction to International Standards on Auditing - Ch 14 Rick Stephan Hayes, Roger Dassen, Arnold Schilder, Philip Wallage Slide 14.2 Corporate

More information

Sarbanes-Oxley Compliance Kit

Sarbanes-Oxley Compliance Kit Kit February 2018 This product is NOT FOR RESALE or REDISTRIBUTION in any physical or electronic format. The purchaser of this template has acquired the rights to use it for a SINGLE Disaster Recovery

More information

The Future of Internal Auditing:

The Future of Internal Auditing: Internal Audit The Future of Internal Auditing: Changing Internal Audit s Value Proposition October 12, 2010 Istanbul, Turkey Presented by: Naman Parekh Partner, Agenda Background of the 2012 Study Key

More information

ISO/IEC INTERNATIONAL STANDARD. Systems and software engineering System life cycle processes IEEE

ISO/IEC INTERNATIONAL STANDARD. Systems and software engineering System life cycle processes IEEE INTERNATIONAL STANDARD ISO/IEC 15288 IEEE Std 15288-2008 Second edition 2008-02-01 Systems and software engineering System life cycle processes Ingénierie des systèmes et du logiciel Processus du cycle

More information

ISACA S IT Audit, Information Security & Risk Insights Africa 2014 MAY, 2014

ISACA S IT Audit, Information Security & Risk Insights Africa 2014 MAY, 2014 ISACA S IT Audit, Information Security & Risk Insights Africa 2014 MAY, 2014 MANAGING IT RISKS IN THE BANKING INDUSTRY Emmanuel Ofori Boateng, Dep. Head, IT, Ecobank Ghana OVERVIEW - HISTORY OF RISK MANAGEMENT

More information

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it?

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? As used in this document, Deloitte means Deloitte Tax LLP, which provides tax services; Deloitte & Touche LLP, which provides assurance

More information

Oracle E-Business Suite Development and Extensibility Handbook

Oracle E-Business Suite Development and Extensibility Handbook Oracle E-Business Suite Development and Extensibility Handbook About the Authors Anil Passi is an Oracle ACE with over a decade of consultancy experience in Oracle E-Business Suite. He is also a speaker

More information

Understanding Changes to the Certified Internal Auditor Program for 2013

Understanding Changes to the Certified Internal Auditor Program for 2013 Understanding Changes to the Certified Internal Auditor Program for 2013 Certified Internal Auditor (CIA ) 2013 Content Change Overview: This document is provided by IIA Global Headquarters to explain

More information

CORPORATE GOVERNANCE THEORY, SCOPE AND IMPORTANCE

CORPORATE GOVERNANCE THEORY, SCOPE AND IMPORTANCE CORPORATE GOVERNANCE THEORY, SCOPE AND IMPORTANCE What is on the agenda Corporate Governance: In Theory Brief history The concept Principles Corporate Governance: In Practice Corporate governance elements

More information

Increasing External Auditor Reliance

Increasing External Auditor Reliance Increasing External Auditor Reliance Guiding Internal Auditors to realize the benefits of raising the bar on External Auditor Reliance. SOX Software Made Simple Table of Contents 1 Introduction 3 Factors

More information

Baptist Health South Florida

Baptist Health South Florida Baptist Health South Florida IIA Miami Top Challenges Facing Internal Audit Departments 2016 Agenda 1. Cybersecurity 2. Culture 3. Timely Identification of Risk 4. Data Analysis Cybersecurity Cybersecurity

More information

OXFORD UNIVERSITY PRESS SOUTHERN AFRICA

OXFORD UNIVERSITY PRESS SOUTHERN AFRICA AUDITING FUNDAMENTALS IN A SOUTH AFRICAN CONTEXT Editors: Pieter von Wielligh Frans Prinsloo Gerrit Penning Rika Butler Dana Nathan (Josset) Rolien Kunz Vincent Motholo Graeme O'Reilly Riaan Rudman Henriette

More information

Audit Committee Member Roles and Responsibilities

Audit Committee Member Roles and Responsibilities PURPOSE OF THIS TOOL: The following information illustrates how the audit committee might be structured and assigns roles and responsibilities between the audit committee and finance committee. Not-for-profits

More information

ISO Internal Audit: A Plain English Guide

ISO Internal Audit: A Plain English Guide ISO Internal Audit: A Plain English Guide 1 Also by Dejan Kosutic: Secure & Simple: A Small-Business Guide to Implementing ISO 27001 On Your Own 9 Steps to Cybersecurity: The Manager s Information Security

More information

Kellogg. Branding. The Marketing Faculty of The Kellogg School of Management EDITED BY ALICE M. TYBOUT AND TIM CALKINS FOREWORD BY PHILIP KOTLER

Kellogg. Branding. The Marketing Faculty of The Kellogg School of Management EDITED BY ALICE M. TYBOUT AND TIM CALKINS FOREWORD BY PHILIP KOTLER Kellogg on Branding The Marketing Faculty of The Kellogg School of Management EDITED BY ALICE M. TYBOUT AND TIM CALKINS FOREWORD BY PHILIP KOTLER John Wiley & Sons, Inc. Kellogg on Branding Kellogg on

More information

Beyond Compliance. Leveraging Internal Control to Build a Better Business: A Response to Sarbanes-Oxley Sections 302 and 404

Beyond Compliance. Leveraging Internal Control to Build a Better Business: A Response to Sarbanes-Oxley Sections 302 and 404 Beyond Compliance Leveraging Internal Control to Build a Better Business: A Response to Sarbanes-Oxley Sections 302 and 404 Note to Readers Regarding This First Edition April 2003: This document was published

More information

Using the COSO Map. Unpublished Article By Larry Hubbard

Using the COSO Map. Unpublished Article By Larry Hubbard Unpublished Article By Larry Hubbard Internal Control Integrated Framework published by the Committee of Sponsoring Organizations (COSO) of the Treadway Commission How many times have we read articles

More information

Specification for Quality Programs for the Petroleum, Petrochemical and Natural Gas Industry

Specification for Quality Programs for the Petroleum, Petrochemical and Natural Gas Industry Specification for Quality Programs for the Petroleum, Petrochemical and Natural Gas Industry ANSI/API SPECIFICATION Q1 EIGHTH EDITION, DECEMBER 2007 EFFECTIVE DATE: JUNE 15, 2008 CONTAINS API MONOGRAM

More information

Implementation Guide 1000

Implementation Guide 1000 Implementation Guide 1000 Standard 1000 Purpose, Authority, and Responsibility The purpose, authority, and responsibility of the internal audit activity must be formally defined in an internal audit charter,

More information

STANDING ADVISORY GROUP MEETING

STANDING ADVISORY GROUP MEETING 1666 K Street, NW Washington, D.C. 20006 Telephone: (202) 207-9100 Facsimile: (202)862-8430 www.pcaobus.org PROPOSAL TO RECONSIDER THE HIERARCHY OF AUDITING STANDARDS AND GUIDANCE NOVEMBER 17-18, 2004

More information

Trends in Telephone Interpreting

Trends in Telephone Interpreting Trends in Telephone Interpreting The Current Market Dynamics of Over-the-Phone Interpretation By Nataly Kelly and Vijayalaxmi Hegde Trends in Telephone Interpreting By Nataly Kelly and Vijayalaxmi Hegde

More information

EFFICIENT USE OF AUDIT COMMITTEES

EFFICIENT USE OF AUDIT COMMITTEES AGENDA EFFICIENT USE OF AUDIT COMMITTEES BRENT YOUNG, CPA JERRY GAITHER, CPA Best practices related to: Audit Committee Process Internal Audit Risk Management 2 AUDIT COMMITTEE PROCESS AND PROCEDURES Audit

More information

MISSISSIPPI STATE UNIVERSITY INTERNAL AUDIT CHARTER

MISSISSIPPI STATE UNIVERSITY INTERNAL AUDIT CHARTER MISSISSIPPI STATE UNIVERSITY INTERNAL AUDIT CHARTER I. The Charter The Office of Internal Audit was established by the President of Mississippi State University to assist the University in meeting its

More information

Guide to the Sarbanes-Oxley Act: Internal Control Reporting Requirements

Guide to the Sarbanes-Oxley Act: Internal Control Reporting Requirements Guide to the Sarbanes-Oxley Act: Internal Control Reporting Requirements Frequently Asked Questions Regarding Section 404 Updated to reflect the SEC's final rules Table of Contents Page No. Introduction

More information

Why Reporting Hotlines Are Considered a Best Practice

Why Reporting Hotlines Are Considered a Best Practice WhitePaper Why Reporting Hotlines Are Considered a Best Practice 11/22/17 Table of Contents Abstract.. 2 The Call for Higher Ethical Standards.....4 Specific Ethical Concerns...5 Best Practices and Reporting

More information

DAVITA INC. AUDIT COMMITTEE CHARTER

DAVITA INC. AUDIT COMMITTEE CHARTER DAVITA INC. AUDIT COMMITTEE CHARTER I. Audit Committee Purpose The Audit Committee (the Committee ) is appointed by the Board of Directors (the Board ) of (the Company ) to assist the Board in fulfilling

More information

Should boards and CEOs care about COSO ERM 2017? By Tim J. Leech

Should boards and CEOs care about COSO ERM 2017? By Tim J. Leech Should boards and CEOs care about COSO ERM 2017? By Tim J. Leech Source: Conference Board December 2017 https://www.conferenceboard.org/blog/postdetail.cfm?post=6631 As globalization accelerates and the

More information

i am pleased to transmit to you a summary of the Public Company Accounting

i am pleased to transmit to you a summary of the Public Company Accounting PCAOB Public Company Accounting Oversight Board May 27, 2005 1666 K Street, N.W. Washington, DC 20006 Telephone: (202) 207-9100 Facsimile: (202) 862-8430 ww.pcaobus.org By Hand Deliverv The Honorable Wiliam

More information

Leading the Global. Next Decade Doing More with Less The Lean Internal Audit Model. Larry Rieger

Leading the Global. Next Decade Doing More with Less The Lean Internal Audit Model. Larry Rieger Leading the Global Profession into the Next Decade Doing More with Less The Lean Internal Audit Model Larry Rieger 1 Agenda How chief audit executives and internal audit functions remain relevant Market

More information

ACFE FRAUD PREVENTION CHECK-UP ASSOCIATION OF CERTIFIED FRAUD EXAMINERS

ACFE FRAUD PREVENTION CHECK-UP ASSOCIATION OF CERTIFIED FRAUD EXAMINERS ACFE FRAUD PREVENTION ASSOCIATION OF CERTIFIED FRAUD EXAMINERS ACFE FRAUD PREVENTION One of the ACFE s most valuable fraud prevention resources, the ACFE Fraud Prevention Check-Up is a simple yet powerful

More information

SOA and Mainframe Applications

SOA and Mainframe Applications The Essentials Series SOA and Mainframe Applications sponsored by by Dan Sullivan Addressing Design and Life Cycle Challenges of Mainframe Applications in an SOA Environment...1 Two Distinct Application

More information

Implementation Guides

Implementation Guides Implementation Guides Implementation Guides assist internal auditors in applying the Definition of Internal Auditing, the Code of Ethics, and the Standards and promoting good practices. Implementation

More information

Oracle Landed Cost Management

Oracle Landed Cost Management Oracle Landed Cost Management Process Guide Release 12.1 Part No. E14299-01 April 2009 Oracle Landed Cost Management Process Guide, Release 12.1 Part No. E14299-01 Copyright 2009, Oracle and/or its affiliates.

More information

PROJECT MANAGEMENT BODY OF KNOWLEDGE

PROJECT MANAGEMENT BODY OF KNOWLEDGE A Guide to the PROJECT MANAGEMENT BODY OF KNOWLEDGE Third Edition (PMBOK Guide) Project Management Institute A Guide to the Project Management Body of Knowledge Third Edition (PMBOK Guide) an American

More information

Effective implementation of COSO s new anti-fraud guidance

Effective implementation of COSO s new anti-fraud guidance Effective implementation of COSO s new anti-fraud guidance In September 2016, the Committee of Sponsoring Organizations of the Treadway Commission (COSO) published a new Fraud Risk Management Guide (Anti-fraud

More information

ISO & ISO TRAINING DAY 4 : Certifying ISO 37001

ISO & ISO TRAINING DAY 4 : Certifying ISO 37001 ISO 19600 & ISO 37001 TRAINING DAY 4 : Certifying ISO 37001 2017 SLIDE 1 DAY 4 Program Part 1 : Audit rules 1. Audit principles 2. Types of findings Part 2 : Audit process 3. The steps of an audit 4. Audit

More information

ETHICS HOW DO YOU AND YOUR ORGANIZATION MEASURE UP? Larry Finney, CPA

ETHICS HOW DO YOU AND YOUR ORGANIZATION MEASURE UP? Larry Finney, CPA ETHICS HOW DO YOU AND YOUR ORGANIZATION MEASURE UP? Larry Finney, CPA ETHICS Case studies Survey ETHICS What is ethics? What is basis? How determined? Why important? Why is ethics an issue? What happens

More information

This charter defines the purpose, authority and responsibility of News Corporation s (the Company ) Corporate Audit Department.

This charter defines the purpose, authority and responsibility of News Corporation s (the Company ) Corporate Audit Department. CORPORATE AUDIT DEPARTMENT CHARTER PURPOSE This charter defines the purpose, authority and responsibility of News Corporation s (the Company ) Corporate Audit Department. The Institute of Internal Auditors

More information

Mr. Jim Sylph Technical Director International Auditing and Assurance Standards Board 545 Fifth Avenue, 14th Floor New York, NY 10017

Mr. Jim Sylph Technical Director International Auditing and Assurance Standards Board 545 Fifth Avenue, 14th Floor New York, NY 10017 William G. Bishop III, CIA President Tel: +1 407 937 1200 wbishop@theiia.org November 15, 2003 Mr. Jim Sylph Technical Director International Auditing and Assurance Standards Board 545 Fifth Avenue, 14th

More information

Office of Internal Auditing

Office of Internal Auditing Office of Internal Auditing FY 2017 Annual Report Page Intentionally Blank CONTENTS Executive Summary... 4 Introduction... 5 Personnel/Proficiency/Professional Development... 6 Resources - Allocation...

More information

ACCA. Paper P1. Governance, risk and ethics. Pocket notes

ACCA. Paper P1. Governance, risk and ethics. Pocket notes ACCA Paper P1 Governance, risk and ethics Pocket notes Governance, risk and ethics British library cataloguing-in-publication data A catalogue record for this book is available from the British Library.

More information

AUDITING. Auditing PAGE 1

AUDITING. Auditing PAGE 1 AUDITING Auditing 1. Professionalism The International Professional Practices Framework (IPPF) is the conceptual framework that organizes authoritative guidance promulgated by The Institute of Internal

More information

Gaining Financial Integrity Through Improved Internal Controls

Gaining Financial Integrity Through Improved Internal Controls Gaining Financial Integrity Through Improved Internal Controls SAP Management of Internal Controls Tool PwC and SAP Sarbanes-Oxley 404 Web Conference Series March 2004 William R. Shipley, Partner, IT Advisory

More information

This workbook supports BSBCUS401B Coordinate implementation of customer service strategies in the BSB07 Business Services Training Package.

This workbook supports BSBCUS401B Coordinate implementation of customer service strategies in the BSB07 Business Services Training Package. Coordinate implementation of customer service strategies This workbook supports BSBCUS401B Coordinate implementation of customer service strategies in the BSB07 Business Services Training Package. Upgraded

More information

Internal Financial Controls New perspectives as per Companies Act 2013 and CARO 2016

Internal Financial Controls New perspectives as per Companies Act 2013 and CARO 2016 New perspectives as per Companies Act 2013 and CARO 2016 1 Contents: Background Meaning of IFC IFC on Financial Reporting Why IFC? Regulatory mandate Role of various authorities Components of IFC IFC under

More information

Sarbanes Oxley Impact on Supply Chain Management

Sarbanes Oxley Impact on Supply Chain Management Sarbanes Oxley Impact on Supply Chain Management Robert J. Engel, C.P.M. National Director of Client Service Resources Global Professionals-SCM Practice 713-403-1979: Bob.Engel@Resources-us.com 91 st Annual

More information

The GMO Handbook. Genetically Modified Animals, Microbes, and Plants in Biotechnology. Edited by. Sarad R. Parekh, PhD

The GMO Handbook. Genetically Modified Animals, Microbes, and Plants in Biotechnology. Edited by. Sarad R. Parekh, PhD The GMO Handbook The GMO Handbook Genetically Modified Animals, Microbes, and Plants in Biotechnology Edited by Sarad R. Parekh, PhD Dow AgroSciences, Indianapolis, IN * Springer Science+Business Media,

More information

Auditing reborn. AUTHOR: ROBERT K. ELLIOTT SOURCE: CA Magazine v129 p36-8 Ag '96

Auditing reborn. AUTHOR: ROBERT K. ELLIOTT SOURCE: CA Magazine v129 p36-8 Ag '96 Auditing reborn AUTHOR: ROBERT K. ELLIOTT SOURCE: CA Magazine v129 p36-8 Ag '96 The magazine publisher is the copyright holder of this article and it is reproduced with permission. Further reproduction

More information

University Retail Food Service Vendor Account Payable System (VAPS)

University Retail Food Service Vendor Account Payable System (VAPS) University Retail Food Service Vendor Account Payable System (VAPS) Prepared by Harold W. Webb The author does not intend to illustrate either effective or ineffective handling of a managerial situation.

More information

Benchmarking Report Share, Compare, Validate SAMPLE. Year: 2017 Your Organization Date

Benchmarking Report Share, Compare, Validate SAMPLE. Year: 2017 Your Organization Date Benchmarking Report Share, Compare, Validate Year: 2017 Your Organization Date Benchmarking Tier 1: Your Organization Benchmarking Tier 2: Services Benchmarking Tier 3: Services $1B to $5B Benchmarking

More information

QA 2 / 2011 OCCURRENCE OF REVENUE FROM SALE OF GOODS

QA 2 / 2011 OCCURRENCE OF REVENUE FROM SALE OF GOODS QA 2 / 2011 OCCURRENCE OF REVENUE FROM SALE OF GOODS MAY 2011 INTRODUCTION 1. Revenue is used not only by the company s management but also by various other external stakeholders such as investors and

More information

Job Interview Prep Kit

Job Interview Prep Kit Job Interview Prep Kit All content copyright 2017 by Career Confidential. All rights reserved. No part of this document or related files may be reproduced or transmitted in any form, by any means (electronic,

More information

CONSIGNMENT AGREEMENT

CONSIGNMENT AGREEMENT CONSIGNMENT AGREEMENT This Consignment Agreement, hereinafter referred to as this Agreement, states the terms of the parties agreement with respect to personal property, hereinafter referred to as Consigned

More information

Paper FAU. Foundations in Audit. Pocket Notes

Paper FAU. Foundations in Audit. Pocket Notes Paper FAU Foundations in Audit Pocket Notes Foundations in Audit British library cataloguing-in-publication data A catalogue record for this book is available from the British Library. Published by: Kaplan

More information

) ) ) ) ) ) ) ) ) ) II.

) ) ) ) ) ) ) ) ) ) II. 1666 K Street, N.W. Washington, DC 20006 Telephone: (202 207-9100 Facsimile: (202 862-8430 www.pcaobus.org INSTITUTING DISCIPLINARY PROCEEDINGS, MAKING FINDINGS, AND IMPOSING SANCTIONS In the Matter of

More information

AWS D14.3/D14.3M:2010 An American National Standard. Specification for Welding Earthmoving, Construction, and Agricultural Equipment

AWS D14.3/D14.3M:2010 An American National Standard. Specification for Welding Earthmoving, Construction, and Agricultural Equipment An American National Standard Specification for Welding Earthmoving, Construction, and Agricultural Equipment An American National Standard Approved by the American National Standards Institute May 26,

More information

MY ACCOUNT. Terms of use. New South Wales South Australia Queensland Victoria

MY ACCOUNT. Terms of use. New South Wales South Australia Queensland Victoria MY ACCOUNT Terms of use New South Wales South Australia Queensland Victoria Effective August 2014 2 Origin Energy 3 Introduction These terms and conditions of use (Terms of Use) apply to the Origin My

More information

FIAT CHRYSLER AUTOMOBILES N.V. AUDIT COMMITTEE CHARTER

FIAT CHRYSLER AUTOMOBILES N.V. AUDIT COMMITTEE CHARTER FIAT CHRYSLER AUTOMOBILES N.V. AUDIT COMMITTEE CHARTER For so long as shares of Fiat Chrysler Automobiles N.V. (the Company ) are listed on the New York Stock Exchange ( NYSE ), the rules of the NYSE and

More information

CHARTER OF THE SONOMA COUNTY INTERNAL AUDIT FUNCTION JANUARY 15, 2013

CHARTER OF THE SONOMA COUNTY INTERNAL AUDIT FUNCTION JANUARY 15, 2013 I. Introduction CHARTER OF THE JANUARY 15, 2013 ATTACHMENT B Fiscal Policy IA-1 A. The Institute of Internal Auditors (IIA) defines internal auditing as "an independent objective assurance and consulting

More information

CHAPTER 15: ENTERPRISE RISK MANAGEMENT - SUPPLEMENTAL MATERIAL

CHAPTER 15: ENTERPRISE RISK MANAGEMENT - SUPPLEMENTAL MATERIAL CHAPTER 15: ENTERPRISE RISK MANAGEMENT - SUPPLEMENTAL MATERIAL Robert N. Charette From the book The Next Wave of Technologies: Opportunities in Chaos by Phil Simon ERM Frameworks Competition for Hearts

More information

2. The name of a private person bringing a civil action in the name of the U.S. is. 3. Medicare Part A pays primarily for.

2. The name of a private person bringing a civil action in the name of the U.S. is. 3. Medicare Part A pays primarily for. Intro & Basics of the Law to Antitrust Laws (Possible 12 Continuing Education Units with 75% correct) 1. Name two benefits of a Compliance Program? 2. The name of a private person bringing a civil action

More information

AUSTRALIAN GAAS 2007 AUDITING STANDARDS CHECKLISTS

AUSTRALIAN GAAS 2007 AUDITING STANDARDS CHECKLISTS AUSTRALIAN GAAS 2007 AUDITING STANDARDS CHECKLISTS COLIN PARKER B.Bus FCA MAICD Principal, GAAP Consulting www.gaap.com.au AUSTRALIAN GAAS* 2007 AUDITING STANDARDS CHECKLISTS AS AT 1 JANUARY 2007 COLIN

More information

Copyright 2017 by the UBC Real Estate Division

Copyright 2017 by the UBC Real Estate Division DISCLAIMER: This publication is intended for EDUCATIONAL purposes only. The information contained herein is subject to change with no notice, and while a great deal of care has been taken to provide accurate

More information

Oracle Production Scheduling

Oracle Production Scheduling Oracle Production Scheduling Installation Guide Release 12.2 Part No. E48798-02 August 2014 Oracle Production Scheduling Installation Guide, Release 12.2 Part No. E48798-02 Copyright 2008, 2014, Oracle

More information

LESSON #1. Spy On Your Biggest Competitors And Reveal What They re Doing Right Now

LESSON #1. Spy On Your Biggest Competitors And Reveal What They re Doing Right Now LESSON #1 Spy On Your Biggest Competitors And Reveal What They re Doing Right Now A little-known, 7-step method that reveals exactly who your biggest competitors are (This comes straight from 125,000,000+

More information

Combined Heat and Power Application

Combined Heat and Power Application Combined Heat and Power Application Baltimore Gas and Electric Company (BGE) offers incentives for qualified Combined Heat and Power (CHP) projects through the BGE Smart Energy Savers Program to help commercial,

More information

CONTENTS. Acknowledgments... iv. 1: Introduction : Why have organizations chosen to seek compliance with the Standards?...2

CONTENTS. Acknowledgments... iv. 1: Introduction : Why have organizations chosen to seek compliance with the Standards?...2 IIA STANDARD 1312 - EXTERNAL QUALITY ASSESSMENTS: RESULTS, TOOLS, TECHNIQUES AND LESSONS LEARNED THE IIA RESEARCH FOUNDATION JULY 2007 Disclosure Copyright 2007 by The Institute of Internal Auditors Research

More information

Enterprise Risk Management Handbook. June, 2010

Enterprise Risk Management Handbook. June, 2010 Enterprise Risk Management Handbook June, 2010 Table of Contents Overview... 4 What is Enterprise Risk Management?... 5 Why Undertake Enterprise Risk Management?... 6 Draft UW System ERM Vision, Mission,

More information

Assessment of the Design Effectiveness of Entity Level Controls. Office of the Chief Audit Executive

Assessment of the Design Effectiveness of Entity Level Controls. Office of the Chief Audit Executive Assessment of the Design Effectiveness of Entity Level Controls Office of the Chief Audit Executive February 2017 Cette publication est également disponible en français. This publication is available in

More information

Using Microsoft Dynamics AX 2012

Using Microsoft Dynamics AX 2012 Using Microsoft Dynamics AX 2012 Andreas Luszczak Using Microsoft Dynamics AX 2012 Updated for Version R2 3rd Edition Dr. Andreas Luszczak Vienna, Austria ISBN 978-3-658-01708-8 DOI 10.1007/978-3-658-01709-5

More information

Fraud Risk Management

Fraud Risk Management Fraud Risk Management Introduction Bethmara Kessler, CFE, CISA Campbell Soup Company 2017 Association of Certified Fraud Examiners, Inc. CPE Information 2017 Association of Certified Fraud Examiners, Inc.

More information

Assurance Services. thinking strategically to your best advantage

Assurance Services. thinking strategically to your best advantage Assurance Services thinking strategically to your best advantage Behind BNKJ s assurance services are many years of experience, which cut across varied industries and business Assurance services mean far

More information

Specification for Quality Programs for the Petroleum, Petrochemical and Natural Gas Industry (Draft 10)

Specification for Quality Programs for the Petroleum, Petrochemical and Natural Gas Industry (Draft 10) Specification for Quality Programs for the Petroleum, Petrochemical and Natural Gas Industry (Draft 10) ANSI/API SPECIFICATION Q1 NINTH EDITION, XXXX 2012 EFFECTIVE DATE: XXXX 2012 + 6 Months \iii Contents

More information

PROFESSIONAL SCRUM WITH TEAM FOUNDATION SERVER 2010

PROFESSIONAL SCRUM WITH TEAM FOUNDATION SERVER 2010 PROFESSIONAL SCRUM WITH TEAM FOUNDATION SERVER 2010 FOREWORD............................................................... xxiii INTRODUCTION............................................................

More information

Investment Professionals, Inc. Business Continuity Plan (BCP)

Investment Professionals, Inc. Business Continuity Plan (BCP) Investment Professionals, Inc. Business Continuity Plan (BCP) I. Emergency Contact Persons Our firm s emergency contact persons are: Suzanne Fancher, suzanne.fancher@invpro.com 210-859-0452 Brian Surovik,

More information

SOX FOR NPO S Focus on Control. Stephen L. Kuptz, CPA

SOX FOR NPO S Focus on Control. Stephen L. Kuptz, CPA SOX FOR NPO S Focus on Control Stephen L. Kuptz, CPA Personal Background and Perspective SOX for NPO s Focus on Control 2 Introduction to SOX The Sarbanes Oxley Act of 2002 commonly called Sarbanes Oxley,

More information

IIA 2015 Worldwide survey of 15,000 internal auditors

IIA 2015 Worldwide survey of 15,000 internal auditors IIA 2015 Worldwide survey of 15,000 internal auditors Michael P. Cangemi CPA, retired CISA, CGMA retired Former CFO, CEO & Director; Audit Com Chair Senior Fellow Rutgers CA Lab Senior Advisor/Investor

More information

Data Reliability - Internet

Data Reliability - Internet Data Reliability - Internet Wikipedia https://en.wikipedia.org/wiki/reliability_of_wikipedia Others http://www.dailymail.co.uk/health/article- 2639910/Do-NOT-try-diagnose-Wikipedia-90-medicalentries-inaccurate-say-expertsDo.html

More information

Southwest Airlines Co. Code of Ethics

Southwest Airlines Co. Code of Ethics Southwest Airlines Co. Code of Ethics Introduction Southwest Airlines Co. is committed to maintaining the highest standards of ethical business practices and legal and regulatory compliance. We place a

More information