Internal audit effectiveness reviews

Similar documents
Internal audit effectiveness reviews. Working in partnership to help you enhance the quality and effectiveness of your internal audit function

IT Business Consulting. Driving efficiency and growth

Aviation advisory. Innovation delivered

Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function

Group Internal Audit Charter

This Internal Audit Charter is intended to define the role, responsibility and accountability of the Society s Internal Audit function.

Internal Audit Quality Analysis Evaluation against the Standards International Standards for the Professional Practice of Internal Auditing (2017)

The Sector Skills Council for the Financial Services Industry. National Occupational Standards. Risk Management for the Financial Sector

- 1 - Ethics and you. An introduction to the CIPFA Standard of Professional Practice on Ethics. July

Post: Head of Standards Governance Department/Region: Science and Standards Location: London Purpose of post:

EMBEDDING SMR IS YOUR ACCOUNTABILITY FRAMEWORK EFFECTIVE?

Transformation confidence Helping you get closer to your transformation programme

Stand out for the right reasons Getting your approach to CASS right

Risk culture. Building great organisations and growing your foundation for success CAPABILITY STATEMENT 2016

Audit Comm. ser ttee es. The benefits of assuring greenhouse gas emissions: Why it is important and how to get the most value from it

Risk Management Update ISO Overview and Implications for Managers

IMPLEMENTING THE SENIOR MANAGERS AND CERTIFICATION REGIME 1 IMPLEMENTING THE SENIOR MANAGERS AND CERTIFICATION REGIME

GROUP INTERNAL AUDIT. Internal Audit Charter 24 February 2016

AUDIT Where are we now? ONGOING MEASUREMENT Are we getting there?

Consultancy engagements

GUIDANCE NOTE FOR DEPOSIT TAKERS (Class 1(1) and Class 1(2))

BOARD CHARTER. Owner: Vector s board of directors Approved: August 2016 Review: by August 2018

Terms of reference for the risk committee

Guideline. Operational Risk Management. Category: Sound Business and Financial Practices. No: E-21 Date: June 2016

POSITION DESCRIPTION SENIOR ENGINEER

Proposed application material relating to professional scepticism and professional judgement

White Paper Well-founded Audit Planning

MKO Partners, Chartered Accountants Audit Transparency Report 2015

AUSTRALIAN ENGINEERING COMPETENCY STANDARDS STAGE 2 - EXPERIENCED PROFESSIONAL ENGINEER IN LEADERSHIP AND MANAGEMENT

The Annual Audit Letter for Avon and Wiltshire Mental Health Partnership NHS Trust

Knowledge Management

Achieve. Performance objectives

ISO whitepaper, January Inspiring Business Confidence.

AUDIT COMMITTEE ANNUAL REPORT TO TRUST BOARD 2012/13

Audit Committee Charter ISSUE DATE: 22 JUNE 2017 AUDIT COMMITTEE CHARTER. ISSUE DATE: 22 JUNE 2017 PAGE 01 OF 07

Internal Audit s role within Solvency II. 14 May 2010

Chartered Accountants Regulatory Board

AUSTRALIAN ENGINEERING COMPETENCY STANDARDS STAGE 2 - EXPERIENCED PROFESSIONAL ENGINEER

A FRAMEWORK FOR AUDIT QUALITY. KEY ELEMENTS THAT CREATE AN ENVIRONMENT FOR AUDIT QUALITY February 2014

Code of Corporate Governance

Risk consulting. Conduct risk: Aligning product, customer and value. kpmg.ie

Accounting Advisory. Financial Accounting and Advisory Services

Audit and Risk Committee Charter

Developing an Integrated Anti-Fraud, Compliance, and Ethics Program

Risk reduction? Value creation?

IIROC 2015 Financial Administrators Section Conference

Environmental, social and governance (ESG) materiality assessment

University of Birmingham Guild of Students

LABOUR RELATIONS AGENCY JOB DESCRIPTION. Job Reference (if applicable): DCS/06/16 Date: OCTOBER SALARY: NICS Grade 7, currently 46,141-51,816

Children and Families Lead Scottish Government and Social Work Scotland Salary - circa 50k

Position your business for success

01 AN INTRODUCTION THE SCIENCE AND STANDARDS DEPARTMENT

Planning to win. Deal Advisory / Australia. Driving value growth through competitive, flexible funding and supportive financing relationships.

Grant Thornton UK LLP

Consultation Paper: Going public a director s guide

Diploma in Charity Accounting INSPIRING CONFIDENCE, MAKING A DIFFERENCE

Defence Health Governance Structure

Tai Calon Board - Development and Training Programme Timetable

SMCR firm led, impacting 99% of firms population. APER regulator led, impacting 10% of firm population

Basel Committee on Banking Supervision. Consultative Document. External audits of banks. Issued for comment by 21 June 2013

ENTERPRISE RISK MANAGEMENT THE KEY TO BUSINESS SUCCESS By Phil Griffiths FCA

BSB Research Strategy

TABLE OF CONTENTS WATER SERVICES ASSOCIATION OF AUSTRALIA PROCESS BENCHMARKING AUDIT PROTOCOLS COPYRIGHT:... 3

Environmental and social sustainability services

(

Implementing and maintaining ISAE 3402

What s the cost of control? Keeping control of your business when cash is king

Beyond Compliance. Leveraging Internal Control to Build a Better Business: A Response to Sarbanes-Oxley Sections 302 and 404

East Riding of Yorkshire Council Data protection audit report. Executive summary March 2014

Code of Practice for the relationship between the external auditor and the supervisor

Model Risk Management A Southeast Asia Perspective

Audit Committee Self Assessment

AIST Investment Manager Operational Due Diligence Guidance Note February Investment Manager Operational Due Diligence Review Process

ACI s Quick Guide to Culture, Ethics, Governance, Compliance, Risk and Corporate Social Responsibility

Company Monitoring Framework Risks, Strengths and Weaknesses Statement January 2017

Report. Quality Assessment of Internal Audit at <Organisation> Draft Report / Final Report

Quality Assurance and Improvement Program

International Compliance Officer Training

JOB DESCRIPTION. Manager Department: Finance Length of contract: Permanent. Role type: National Grade: 11

SARBANES-OXLEY INTERNAL CONTROL PROVISIONS: FILE NUMBER 4-511

COMMUNICATIONS STRATEGY

Senior Supply Chain Standards Manager. Job Description

How to Create Successful Shared Services Using Northern Ireland's Enterprise Shared- Service Best Practices

3. In addition, it describes the process the Court will use to evaluate the effectiveness of the institution s internal control procedures.

Giving you clarity on your change programmes

Customer service. Chartered Institute of Internal Auditors. 26 October What is customer service? 1 Chartered Institute of Internal Auditors

MKO Partners, Chartered Accountants Audit Transparency Report 2016

CORPORATE GOVERNANCE POLICY

PROCUREMENT STRATEGY

Board committees. Role of the board

Interim Head of Internal Communications (Fixed Term)

Managing risks in the NSW public sector: risk culture and capability

CORPORATE GOVERNANCE KING III COMPLIANCE REGISTER 2017

Audit Committee, 20 March Internal Audit Report Stakeholder Communications. Executive summary and recommendations.

Enhancing Audit Quality

Information Governance Policy

Hammersmith & Fulham borough of opportunity

Transcription:

Internal audit effectiveness reviews

A changing environment In the current climate it is more important than ever for internal audit to be seen as a credible business partner, able to identify control weaknesses that may undermine business drivers or breach regulatory requirements. The regulatory environment is becoming more demanding of boards and their audit committees who need independent assurance that they can rely on internal audit. The need for the internal audit profession to be recognised as essential to the success of an organisation has been reflected by the Chartered Institute of Internal Auditors (CIIA) in their strategic vision and recommendations on effective internal audit in the financial services sector. Internal audit functions need to position themselves to enable effective delivery of these increasing expectations. Raising the standards Grant Thornton is well placed to provide you with independent assurance on the effectiveness of your internal audit function. Our extensive experience in the financial services sector, enables us to: provide you with an assessment on whether your internal audit function meets the new challenges of the CIIA s revised code, and requirements of the Central Bank of Ireland, the Prudential Regulation Authority (PRA) and the Financial Conduct Authority (FCA); help you perform a gap analysis against CIIA standards and the CIIA code, taking into account the size of your organisation, as a separate exercise or as part of a wider internal audit effectiveness review; provide a view on the appropriateness and scalability of your internal audit function; benchmark you against high performing peers across the industry and against organisations of a similar size; and work with you to develop and implement internal audit improvement plans.

Our approach Grant Thornton has developed a specific methodology for performing Internal Audit Effectiveness Reviews (IAERs) which is tailored to meet individual client requirements. Our approach goes beyond the requirements of the CIIA standards and adds value by considering the bigger picture of internal audit, not just ticking boxes from a desk top file review. We believe that the components set out below are fundamental to the success of internal audit. Our approach is to provide an in-depth assessment of each of these using our Grant Thornton effectiveness assessment methodology. Plan Performance People Profile Product Plan The importance of a robust planning process sets the tone and scope of the contribution that internal audit makes towards the success of an organisation. It should be risk based, flexible and aligned to the strategic business drivers and risk appetite set by the board and the operating plan of the business. Performance A methodology should provide a structure for auditors to work within, producing a clear, repeatable audit trail of evidence to support audit observations, whilst not stifling the thought process. A sound quality assurance process needs to be in place which is risk based in its approach and drives quality throughout the function. People Fundamental to an internal audit function is the quality of its people. Auditors should be adequately trained, developed and their performance assessed to ensure that skills and experience are maximised and maintained. Profile The profile and standing of an internal audit function is one of its greatest assets. We will evaluate the role, reputation and impact of internal audit in the organisation and its independence and objectivity. Product We will assess the quality of the output from the internal audit function. Audit messages should be compelling and reported in a timely, clear and concise way. Audit issues should be evidence based as well as need to reflect a sound understanding of the business and associated risks. Recommendations need to make a real difference towards the improvement of the control environment.

Our methodology Relevant stakeholders Understand business and processes and determine criteria Assessment of components fundamental to the success of internal audit Guidance: combined code; published best practice; and CIIA standards. Grant Thornton experience and independence. Evaluation and recommendations Our approach is to perform targeted structured interviews with key stakeholders and senior internal audit staff which, together with a detailed review of documentation, enable us to provide an opinion on the quality and effectiveness of the internal audit function and its people.

What are the key benefits of an internal audit effectiveness review? As the third line in the three lines of defence model, internal audit s role is to identify any weaknesses in the first and second lines and to provide independent assurance to stakeholders on the control environment of the firm. The position of internal audit must be clear, objective and independent. It should also work in harmony with the first and second line to ensure an integrated risk management framework. an IAER will evaluate the role, reputation and impact of internal audit in the organisation, its independence and objectivity; an IAER provides an independent opinion on the current quality and value provided by the internal audit function in supporting key business drivers and firm-wide strategy; IAERs offer positive assurance and comfort for audit committees; that their internal audit opinion can be relied upon, that the function is fit for purpose and is compliant with enhanced CIIA standards and guidance; and IAERs benchmark the internal audit function against CIIA standards and industry best practice, highlighting areas for improvement, enabling internal audit to stay ahead of the game. The CIIA requires independent external assessments to be conducted at least once every five years. However, in response to the increasing challenges facing internal audit, some firms are now completing these assessments much more frequently. Why Grant Thornton? our market focus covers all aspects of the financial services sector in terms of internal audit, risk and technology, with particular emphasis on banking, securities, insurance and investment management; we regularly undertake IAERs of internal audit functions in the financial services and corporate sectors ranging across organisations of all sizes; IAERs are performed by senior, experienced people who have held senior roles in internal audit departments. Our team will draw on their internal audit and industry experience, as well as the provision of similar services to clients, to deliver a first class service; and we understand that there is no one size fits all for internal audit functions and the most important element of our review will be to consider whether internal audit is fit for purpose for the business it supports, taking into account proportionality.

How Grant Thornton can help Grant Thornton will perform a structured review of your internal audit function using our proven methodology in Ireland and globally as required. Based on our understanding of the CIIA standards and industry best practice, we can provide positive assurance where the function is fit for purpose and also recommend changes and realistic action plans that would enhance effectiveness. Using our first-hand knowledge from working with the internal audit functions of small and medium sized enterprises as well as major financial services firms, we will benchmark your internal audit function against your high performing peers. Your review will be delivered by a focused team of our most senior internal audit specialists. Their experience comes from time spent in senior management roles within the industry as well as from the provision of similar services to clients. This allows us to understand your needs and to tailor our approach in the context of your business to maximise our efforts to support you. Key management contacts for our Internal Audit Effectiveness team Sara McAllister Director, Business Risk Services T +353 (0)1 680 5716 E sara.mcallister@ie.gt.com Paul Carroll Associate Director, Business Risk Services T +353 (0)1 433 2563 E paul.carroll@ie.gt.com Rory Flanagan Manager, Business Risk Services T +353 (0)1 433 2507 E rory.flanagan@ie.gt.com Offices in Dublin, Belfast, Cork, Galway, Kildare, Limerick and Longford. www.grantthornton.ie @GrantThorntonIE Grant Thornton Ireland This briefing is provided for general information purposes only and is not a comprehensive or complete statement of the issues to which it relates. It should not be used as a substitute for advice on individual cases. Before acting or refraining from acting in particular circumstances, specialist advice should be obtained. No liability can be accepted by Grant Thornton for any loss occasioned to any person acting or refraining from acting as a result of any material in this briefing. 2017 Grant Thornton Ireland. All rights reserved. Authorised by Chartered Accountants Ireland ( CAI ) to carry on investment business.