An Update of COSO s Internal Control Integrated Framework. December 2011

Similar documents
Internal Control Integrated Framework. An IAASB Overview September 2016

Internal Control Integrated Framework. An IAASB Overview September 2016

Internal Control Integrated Framework. May 2013

COSO Internal Control Integrated Framework update. INTOSAI Subcommittee on Internal Control Standards

20 Years in the Making. Meet the New ICIF: Revisions to COSO s Internal Control Integrated Framework. Dr. Sandra Richtermeyer COSO Board Member

COSO s ICIF Update. Discussion with PCAOB s Standing Advisory Group. March 24, 2011

2013 COSO Internal Control Framework Update. September 5, 2013

2013 New COSO 2013 Framework and Current Trends in Risk Management

A Discussion About Internal Controls February 2016

SOX FOR NPO S Focus on Control. Stephen L. Kuptz, CPA

Single Audit and Yellow Book / Govt. Audit Standards Update Presented by: William Blend, CPA, CFE

COSO 2013: Updated internal control framework

The Updated COSO Internal Control Framework

COSO Framework Update Webcast. May 23, 2013

Terms of Reference Governance Committee

COSO Internal Control Integrated Framework Proposed Update

In 1992, the Committee of Sponsoring Organizations of the Treadway Commission (COSO) issued a

The 2013 COSO Framework & SOX Compliance

9/17/2017. An Overview of COSO s New Framework and Implementation Guidance SPEAKER. Laura Harden, CPA History

COSO What s New, What s Changed, Why Does it Matter and Other Frequently Asked Questions

What s happening at COSO & The importance of Tone at the Top

Chatham-Kent Health Alliance. Internal Control Framework Assessment - Executive Summary

BUSINESS CPA EXAM REVIEW V 3.0. For Exams Scheduled After March 31, 2017

COSO Internal Control Integrated Framework Public Exposure Feedback Questions, December 2011

Agenda 11/26/13. Updated COSO Framework

LEVERAGING COSO ACROSS THE THREE LINES OF DEFENSE

The Bulletin. The Updated COSO Internal Control Framework: Frequently Asked Questions. Volume 5, Issue 3. What Hasn t Changed? So Why Change?

The New COSO Framework: Avoiding Deficiencies and Driving Change

International Accounting Education Standards Board

An Overview of the 2013 COSO Framework. August 2013

Financial Internal Controls Initiative. Martha Kerner Assistant Vice Chancellor for Business Services

summary summary summary summary

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance

INTERNATIONAL ACCOUNTING EDUCATION STANDARDS BOARD STRATEGY AND WORK PLAN March 2017

That Was Then, This Is Now. COSO Updates its 1992 Classic Internal Control-Integrated Framework

High Impact Internal Audit Leadership. Contents are subject to change. For the latest updates visit

Washington Metropolitan Area Transit Authority Board Action/Information Summary

December 4, Response ed to

Introductions. An Overview of the COSO 2013 Framework. Christian Peo Sharon Todd. An Overview of the 2013 COSO Framework.

Single Audit Update: Internal Control over Compliance and the GAO s Green Book. MSBO s 80 th Annual Conference April 19, 2018

Central Florida Expressway Authority

Proposed International Standard on Auditing 315 (Revised)

Diving into the 2013 COSO Framework. Presented by: Ronald A. Conrad

REPORT 2016/033 INTERNAL AUDIT DIVISION

Present and functioning: Fine-tuning your ICFR using the COSO update

Fraud Risk Management

Integrating COSO s Fraud Risk Management Guide on an Enterprise Scale

Independent Formative Evaluation of the World Health Organization

Audit Training-of-Trainers Workshop, November 2014, Vienna Components of internal control within organization

altercfo White Paper Series September 2018

B U S I N E S S R I S K M A N A G E M E N T L T D

Recalculation of Seasonal Adjustment Factors

STANDING ADVISORY GROUP MEETING

U.S. FDA CENTER FOR DEVICES AND RADIOLOGICAL HEALTH UPDATE. Jeff Shuren Director Center for Devices and Radiological Health

Corporate Governance and Financial Markets

In Control: Getting Familiar with the New COSO Guidelines. CSMFO Monterey, California February 18, 2015

Fraud Risk Management

Internal Controls and You

38 Years of Excellent Client Service New COSO Model and How Internal Controls Help to Reduce Opportunity for Fraud

IAASB Main Agenda (December 2016) Agenda Item

Heads Up. Control Integrated Framework. COSO Enhances Its Internal. In This Issue: Enhancements in the 2013 Framework

Segregation of Duties and Sensitive Access: Leveraging System-Enforced Controls BY LARRY CARTER

Work Plan for : Enhancing Audit Quality

IESBA STRATEGIC REVIEW QUESTIONNAIRE

Enhancing Audit Quality Draft Minutes from IAASB Meeting September

Draft for Public Exposure

Enterprise Risk Management Integrated with Strategy & Performance

The Ins and Outs: Audits Under FDICIA. Jennifer Gureckis and Kaylyn Landry BerryDunn February 27, 2018

A step towards strengthening governance

Office of the Superintendent of Financial Institutions. Internal Audit Report on Supervision Sector: Deposit Taking Group - Conglomerates

Tusla Programme Management (PMO) Design and Establishment. Fergal Collins 20 th September 2018

IAASB Main Agenda (March 2016) Agenda Item. Initial Discussion on the IAASB s Future Project Related to ISA 315 (Revised) 1

Advisory Services Governance, Risk & Compliance

DECISION. mb a5 EFSA Internal Control Framework. Internal Control Framework of the European Food Safety Authority. Decision No.

Standards for Internal Control in New York State Government 2016 Update

Reliability Assurance Initiative. Sonia Mendonca, Associate General Counsel and Senior Director of Enforcement

SAMPLE BEC SuperfastCPA Review Notes

Enterprise Risk Management. Applying enterprise risk management to environmental, social and governance-related risks.

What s New In GAO s Revised Greenbook

IAASB CAG Public Session (March 2016) Agenda Item. Initial Discussion on the IAASB s Future Project Related to ISA 315 (Revised) 1

Table of Contents. Preface xi. Acknowledgments xv. Chapter 1: What We All Share 1. Need for Control Criteria 1

Proposed Work Plan for Seventh Plan Development. October 2, 2014 GRAC Tom Eckman

Performing an Effective Quality Assessment

Minnesota District Freight Plans - Work Plan

Responsible Persons MIC, Dir. of IR, Dir. of IE. President, Provost, and MIC. Budget Office, MIC, Director of IR

Paper 8: IATI Governing Board paper on Long-term Institutional Arrangements

Parking Permit Administration June 2016

Statement on Internal Control and initiatives to strengthen control and accountability. Finance seminar 16 May 2012

Why global businesses need global audit networks October 2012

REVISED CORPORATE GOVERNANCE PRINCIPLES FOR BANKS (CONSULTATION PAPER) ISSUED BY THE BASEL COMMITTEE ON BANKING SUPERVISION

TITLE: IES 7, Continuing Professional Development Project PROJECT PROPOSAL I. SUBJECT BACKGROUND

Can your customers trust your services? Third Party Assurance

IIA 2015 Worldwide survey of 15,000 internal auditors

High Impact Internal Audit Leadership. Contents are subject to change. For the latest updates visit

Asia Pacific Economic Co-operation (APEC) Principles for voluntary codes of business ethics

INTERNAL CONTROL SYSTEMS

Racial Equity Work Plan. Equity Advisory Committee June 20, 2017

Professional Competence for Engagement Partners Responsible for Audits of Financial Statements (Revised)

Quality Impact Assessment Procedure. July 2012

AGA Gulf Region PDT COSO and the Green Book: An Enhanced Internal Control Framework

Transcription:

An Update of COSO s Internal Control Integrated Framework December 2011 1

Internal Control-Integrated Framework First published in 1992 Gained wide acceptance following financial control failures of early 2000 s Most widely used framework in the US Also widely used around the world Original COSO Cube 2

Key Concepts Timeless A process Effected by people Provides reasonable assurance Geared to achievement of objectives related to (1)operations, (2)compliance and (3)financial reporting Five components: Control Environment Risk Assessment Control Activities Information and Communication Monitoring 3

Why Update What Works ICIF works well today COSO s Internal Control Integrated Framework (1992 Edition) Refresh objectives Address significant changes to the business environment and associated risks Codify criteria to use in the development and assessment of systems of internal control Increase focus on operations, compliance and non-financial reporting objectives Enhancements Updated, enhanced and clarified Framework Principles Attributes Expanded internal and non-financial reporting guidance ICIF will work better tomorrow COSO s Internal Control Integrated Framework (Draft, 2012 Edition) 4

Project Plan & Timetable 2010 2011 2012 Sept - Jan Feb - Oct Dec - Mar Apr - Dec Assess & Survey Stakeholders Design & Build Public Exposure Finalize 5

Project Participants COSO Board of Directors PwC Author and Project Leader COSO Advisory Council AICPA AAA IIA FEI IMA Regulatory Observers Public Accounting Firms Others (IFAC, GAVI Alliance, ISACA) Stakeholder Input Survey of over 700 stakeholders and users of the 1992 Internal Control Integrated Framework 6

Obtaining Input: Survey of Stakeholders January 4th to September 1st of 2011 Over 700 responses Responses came from wide range of organizations and individuals Large, small and non-profit organizations well represented 1 in 4 respondents were international (27%) The majority of respondents has been using the 1992 Framework for over 5 years Overall, a large majority of respondents support updating, but not a major overhaul of the 1992 Framework 7

Summary of Updates What s changed The experienced reader will find much familiar in the updated Framework, which builds on what has proven effective in the original version. What is not changing... 1. Definition of internal control 2. Five components of internal control 3. The fundamental criteria used to assess effectiveness of systems of internal control 4. Use of judgment in evaluating the effectiveness of systems of internal control What is changing... 1. Codification of principles with universal application for use in developing and evaluating the effectiveness of systems of internal control 2. Expanded financial reporting objective to address internal and external, financial and non-financial reporting objectives 3. Increased focus on operations, compliance and non-financial reporting objectives based on user input 8

Summary of Updates A changing business environment... Drives updates to the Framework... Expectations for governance oversight Globalization of markets and operations Changes in business models Demands and complexity of rules, regulations and standards Expectations for competencies and accountabilities Use and reliance on evolving technology Expectations for preventing and detecting fraud Updated COSO Cube 9

Summary of Updates Codification of 17 principles embedded in the original Framework Control Environment Risk Assessment 1. Demonstrates commitment to integrity and ethical values 2. Exercises oversight responsibility 3. Establishes structure, authority and responsibility 4. Demonstrates commitment to competence 5. Enforces accountability 6. Specifies relevant objectives 7. Identifies and analyzes risk 8. Assesses fraud risk 9. Identifies and analyzes significant change Control Activities Information & Communication Monitoring Activities 10. Selects and develops control activities 11. Selects and develops general controls over technology 12. Deploys through policies and procedures 13. Uses relevant information 14. Communicates internally 15. Communicates externally 16. Conducts ongoing and/or separate evaluations 17. Evaluates and communicates deficiencies 10

Value Proposition Enhance performance with greater agility, confidence and clarity The updated Framework better supports efforts to design and adapt systems of internal control: Agility Adapt to increasing complexity and pace of change Confidence - Mitigate risks to achieve important objectives Clarity Provide reliable information to support sound decision making 11

Benefits of the Updated Framework Improve governance Management and Board of Directors Expand use beyond financial reporting Improve quality of risk assessment Strengthen anti-fraud efforts Adapt controls to changing business needs Performance Greater applicability for various business models External Parties Confidence Other Users 12

Public Exposure Process Primary objective Obtain feedback about whether the updated Framework will have a positive impact on achieving effective internal control over operations, reporting and compliance objectives When to Comment December 19, 2011 to March 31, 2012 How to access Who can respond www.ic.coso.org Any interested party wishing to express a point of view relevant to the updated Framework How to Respond Answer the questions and/or Provide additional feedback as you see appropriate at www.ic.coso.org Access to public written comments Available online to December 31, 2012 13

Public Exposure Process Specific areas to provide feedback and to assist respondents in developing view points Topical Areas Specific Areas to Provide or Consider in Your Commentary 1. General Background Information 2. Overall Impression of the updated Framework (Survey format scale of 1 5) 3. Specific areas of interest (Survey format scale of 1 5) Please provide information about your company or organization Internal consistency and logic of the updated Framework Understandability and ease of use Applicability to various types of organizations Impact or burden on regulatory reporting Completeness and appropriateness of the 17 Principles and associated Attributes The requirement for all 17 Principles to be present and functioning to have effective internal control Appropriateness of expanding the reporting objective category beyond financial reporting 4. Summary General comments on any topic of interest relevant to the updated Framework 14

Guidance on Internal Control over External Financial Reporting (ICEFR) Published Financial Statements A supplemental document to the updated Framework Currently scheduled for public exposure in the spring of 2012 Provides guidance in applying the updated Framework to this sub-category of the Reporting objective Includes approaches and examples to assist management in designing and implementing internal control over external financial reporting A draft of the guidance will be accessible for information and reference to respondents during the public exposure of the updated Framework at www.ic.coso.org Guidance will not replace or modify the updated Framework 15

Questions? Please contact icif@us.pwc.com 16