SlideShare ist ein Scribd-Unternehmen logo
1 von 21
Internal controls should be built “into,” not “onto” business processes
Internal auditing is an 
independent, objective 
assurance and consulting 
activity designed to add value 
and improve an organization's 
operations. It helps an 
organisation accomplish its 
objectives by bringing a 
systematic, disciplined 
approach to evaluate and 
improve the effectiveness of 
risk management, control, and 
governance processes.
WWWWhhhhaaaatttt iiiissss IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt???? 
Internal Audit is a professional activity which helps organisations to achieve their 
stated objectives by: 
 Analyzing key processes, procedures & operations 
 Identifying key controls in each such operation, procedure & process 
 Evaluating the adequacy of these controls 
 Testing compliance of sample transactions against these controls 
 Reporting results of the evaluation of controls and compliance testing of 
transactions 
 Recommending stronger controls wherever necessary 
 Suggesting methods to improve compliance with key controls 
 Follow up of action taken on recommendations made in previous reports
WWhhyy IInntteerrnnaall AAuuddiitt?? 
Legal and Statutory Requirement 
As per Companies Act 1956 : 
Internal Audit system is compulsory if, 
a. Paid-up capital and reserves exceeding Rs. 50 lakhs 
as at the commencement of the FY. or 
b. Having an average annual turnover exceeding 
Rs.5.00 crores for a period of three consecutive FY’s 
immediately preceding the FY concerned,
WWWWhhhhyyyy IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt???? CCCCoooonnnnttttiiiinnnnuuuueeeedddd………… 
Management Requirement 
To ensure error free accounting 
To support statutory audit 
To have proper control over business 
To control on the size of operations
IIAA –– CCooddee ooff EEtthhiiccss 
PPrriinncciipplleess 
Internal auditors are expected to apply & uphold the following principles: 
Integrity The integrity of internal auditors establishes trust & so provides the basis 
for reliance on their judgment 
Objectivity 
Internal auditors exhibit the highest professional objectivity in 
gathering, evaluating & communicating information. Internal auditors 
make a balanced assessment of all relevant circumstances & are not 
unduly influenced by their own interests or others in forming judgments 
Confidentiality 
Internal auditors respect the value and ownership of information they 
receive & do not disclose information without appropriate authority 
unless there is a legal or professional obligation to do so 
Competency Internal auditors apply knowledge, skills, & experience needed
WWWWhhhhaaaatttt aaaarrrreeee IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollllssss???? 
Internal Controls are important checks instituted by management to have 
reasonable assurance that: 
 Operations are carried out in an efficient & effective manner 
 Transactions are recorded accurately & completely 
 Assets are properly recorded & safeguarded 
 Laws are complied with 
 Reliable reports are generated
IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollll MMMMyyyytttthhhhssss aaaannnndddd FFFFaaaaccccttttssss 
MYTHS: FACTS: 
Internal control starts with a strong set 
of policies and procedures 
Internal control starts with a strong set 
of policies and procedures 
Internal control: That’s why we have 
internal auditors! 
While internal auditors play a key role 
in the system of control, management 
has responsibility for internal control 
Internal control is a finance thing Internal control is integral to every 
aspect of business/operations 
Internal controls are essentially 
negative, like a list of “thou-shalt-nots” 
Internal control makes the right things 
happen the first time 
Internal controls take time away from 
our core activities of implementing 
development objectives 
Internal controls should be built 
“into,” not “onto” business processes
IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollll PPPPrrrraaaaccccttttiiiicccceeeessss 
How? 
 Internal control is a process. It's a means to an end, not an end 
in itself 
 Internal control is effected by people as a team, not by 
internal auditor. It's not merely policy manuals & forms, but 
people at every level of an organization 
 Internal control can be expected to provide only reasonable 
assurance, not absolute assurance, to an entity's management 
and governing bodies/ committees 
 Uses systematic methodology for analysing business 
processes, procedures & activities 
 The cost of IA should not exceed expected benefits to be 
derived
IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollll SSSSttttrrrruuuuccccttttuuuurrrreeee 
An internal control structure is simply a different way of viewing operations – a 
perspective that focuses on doing the right things in the right way 
MONITORING 
INFORMATION INFORMATION AND 
& 
COMMUNICATION 
COMMUNICATION 
CONTROL CONTROL ACTIVITIES 
ACTIVITIES 
RISK ASSESSMENT 
CONTROL 
ENVIRONMENT 
• Monthly reviews of 
performance reports 
• Supervisory activities 
In many cases, you perform controls and interact 
with the control structure every day, perhaps 
without even realising it 
• Reporting 
• Corporate 
communications 
(e-mail, meetings) 
• Authorisation Matrix 
• Approvals/ segregations 
• Security 
• Reconciliations 
• Proper operating & 
accounting procedures 
• Based on identification 
& analysis of risks to 
achievement of 
objectives 
• Corporate Policies 
• Tone at the top, ethics 
• Organisational authority 
• Skilled personnel
How are HHHooowww aaarrreee IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt &&&& EEEExxxxtttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt ddddiiiiffffffffeeeerrrreeeennnntttt???? 
Internal audit is focused at internal management support and improving 
systems, procedures and processes 
⇉ External audit (EA): normally statutory requirement, unlike internal audit (IA) 
⇉ EA reports are addressed to stakeholders: IA reports are addressed to 
Management 
⇉ EA reports express an opinion on the financial statements prepared by the 
entity for a specified period: IA reports evaluate and check compliance 
against key internal controls 
⇉ EA reports are usually public documents which are available to all 
stakeholders. IA reports are for use only by Management 
⇉ EA reports do not make recommendations, although may have a 
Management Letter: IA reports are incomplete without recommendations. 
⇉ EA is basically a review of financial statements for compliance: IA seeks to 
ensure value for money to Management
BBBBeeeennnneeeeffffiiiittttssss ooooffff IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt 
Correct financial figures 
No deviation in process 
Timely work completion 
Reduction in reconciliation 
Delegation of work 
Detection of errors and frauds 
Proper place of documents and records
Risks of not having Internal Audit 
Chances of conflict and delay in accounting 
Affects day to day activity by 
Increase in Reconciliation activity 
Documentation problem 
Delay in closing books of accounts 
Lack of track on business 
Non compliance of statutory regulation
NNNNaaaattttuuuurrrreeee ooooffff IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt AAAAccccttttiiiivvvviiiittttyyyy 
 Establish scope & activities for audit to Management 
 Describe key risks facing the business activities within scope of audit 
 Identify control procedures used to ensure each key risk is properly 
controlled & monitored 
 Develop & execute risk based sampling & testing approach to determine 
whether most important controls are operating as intended (NB: input from 
Management required – e.g. 100% vouching of Credit notes to Trade partners ) 
 Report issues/make recommendations/negotiate action plans with 
Management to address issues 
 Follow up on reported findings periodically 
 ATR ( Action Taken Report ) Submission on or before time by Respective 
Department.
CCCCoooonnnntttteeeennnnttttssss ooooffff AAAAuuuuddddiiiitttt PPPPllllaaaannnn 
 Updated annually 
 Risk based audit plan developed with input from project 
staff including Management 
 Summary of key goals, risks & corresponding major audits, to illustrate 
alignment 
 Based on risk assessment & available resources 
 Appendix materials, such as planning approach, assumptions & brief 
descriptions of all planned audits & related prioritization 
 Approved by management/ appropriate oversight Committee
CCCCoooonnnntttteeeennnnttttssss ooooffff AAAAuuuuddddiiiitttt RRRReeeeppppoooorrrrtttt 
 Observations 
 Narration/ description 
 Remedial action 
 Consequences/ fall out 
 Recommendation for improvement (prioritized between 
“high” and “normal”) 
 Response (action plan) – who, when and how
IIIIAAAA’’’’ssss PPPPrrrrooooaaaaccccttttiiiivvvveeee RRRRoooolllleeee 
 Identify Risks 
 Find Better Ways and Best Practices 
 Partner With Management to Find Solutions 
 Prevent Problems 
 Provide training 
 Respond to policy & technical accounting questions 
 Offer suggestions for improvement 
 Advisory role
IIddeeaall SSccooppee ooff IInntteerrnnaall AAuuddiitt 
Vouching 
Cash and Bank 
Income and Expenses 
Capital and Petty expenses 
Stocks & Inventory 
Verification 
Purchases and Sales Registers 
Debtors and Creditors 
Ledger & Trial Scrutiny 
Approval Matrix in routine operations
SSccooppee CCoonnttiinnuueedd…….... 
Statutory Compliances 
VAT & Service Tax 
ESI & PF 
TDS & TCS 
Excise and Customs 
Channel Management 
Performance of Channel Partners 
Report NPA Channel Partners to Management 
Revenue vs Cost Ratio of Channel Partners. 
Dispute and Grievances of Channel Partner, 
If any Long Pending Claims of Channel Partners 
Local Support to Channel Partners, if any up gradation require in 
Infrastructure then recommend to Management in Report
CCoonncclluuttiioonn 
Company can achieve its goals in a 
organised and systematic manner with 
help of Internal Audit 
More formal control structures reduce 
possibility that risks become real 
issues 
Identify areas of high risk & 
opportunities 
Validation of process documentation 
& controls 
Incorporate best Practices of Trade 
with in SOP and Review & update 
changes regularly in SOP and Credit 
Policy of Business to strengthen the 
support function to sales
Auditors believes in ………. 
“ Perception can not be reality every time” 
“ Tenure has nothing to do with Honesty “ 
“ Best has to be Acknowledged and Worst has to be reported “ 
“ Only Apple to Apple to Comparisons attitude, no Apple to Orange “ 
“Integrity and Ethics - Zero Tolerance behaviour ” 
Thank You………. 
A Honest Attempt to Describe the Core function of 
Enterprise

Weitere ähnliche Inhalte

Was ist angesagt?

Audit evidence a framework (ppt ch7[1].pdf)
Audit evidence  a framework (ppt ch7[1].pdf)Audit evidence  a framework (ppt ch7[1].pdf)
Audit evidence a framework (ppt ch7[1].pdf)bagarza
 
Chapter 1 auditing and internal control
Chapter 1 auditing and internal controlChapter 1 auditing and internal control
Chapter 1 auditing and internal controljayussuryawan
 
Internal auditing for “one & all” (second edition)
Internal auditing for “one & all” (second edition)Internal auditing for “one & all” (second edition)
Internal auditing for “one & all” (second edition)Mohammad Wahid Abdullah Khan
 
Unit 3 Internal Audit
Unit 3   Internal AuditUnit 3   Internal Audit
Unit 3 Internal AuditAjay Nazarene
 
Internal Financial Controls
Internal Financial ControlsInternal Financial Controls
Internal Financial Controlstarunmallappa
 
CONTROL AND AUDIT
CONTROL AND AUDITCONTROL AND AUDIT
CONTROL AND AUDITRos Dina
 
Chapter 2 internal control
Chapter 2 internal controlChapter 2 internal control
Chapter 2 internal controlDr Manu H Natesh
 
Assessing risks and internal controls training
Assessing  risks and internal controls   trainingAssessing  risks and internal controls   training
Assessing risks and internal controls trainingshifataraislam
 
The role of internal audit department
The role of internal audit departmentThe role of internal audit department
The role of internal audit departmentSalih Islam
 
Internal Controls
Internal ControlsInternal Controls
Internal Controlsmscuttle
 
The Role of Internal Audit
The Role of Internal AuditThe Role of Internal Audit
The Role of Internal AuditArmeniaFED
 
Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Hisyam
 
Internal audit department
Internal audit departmentInternal audit department
Internal audit departmentPopun
 

Was ist angesagt? (20)

Internal controls
Internal controlsInternal controls
Internal controls
 
Audit evidence a framework (ppt ch7[1].pdf)
Audit evidence  a framework (ppt ch7[1].pdf)Audit evidence  a framework (ppt ch7[1].pdf)
Audit evidence a framework (ppt ch7[1].pdf)
 
Internal control 1_ricc_revised
Internal control 1_ricc_revisedInternal control 1_ricc_revised
Internal control 1_ricc_revised
 
Chapter 1 auditing and internal control
Chapter 1 auditing and internal controlChapter 1 auditing and internal control
Chapter 1 auditing and internal control
 
Internal auditing for “one & all” (second edition)
Internal auditing for “one & all” (second edition)Internal auditing for “one & all” (second edition)
Internal auditing for “one & all” (second edition)
 
Unit 3 Internal Audit
Unit 3   Internal AuditUnit 3   Internal Audit
Unit 3 Internal Audit
 
Internal Financial Controls
Internal Financial ControlsInternal Financial Controls
Internal Financial Controls
 
CONTROL AND AUDIT
CONTROL AND AUDITCONTROL AND AUDIT
CONTROL AND AUDIT
 
Chapter 2 internal control
Chapter 2 internal controlChapter 2 internal control
Chapter 2 internal control
 
Internal auditing
Internal auditingInternal auditing
Internal auditing
 
Assessing risks and internal controls training
Assessing  risks and internal controls   trainingAssessing  risks and internal controls   training
Assessing risks and internal controls training
 
Audit & compliance
Audit & complianceAudit & compliance
Audit & compliance
 
The role of internal audit department
The role of internal audit departmentThe role of internal audit department
The role of internal audit department
 
Internal Controls
Internal ControlsInternal Controls
Internal Controls
 
Internal Auditor Roles
Internal Auditor RolesInternal Auditor Roles
Internal Auditor Roles
 
Ch 5. assurance 5 Introduction to Internal Control
Ch 5. assurance 5 Introduction to Internal ControlCh 5. assurance 5 Introduction to Internal Control
Ch 5. assurance 5 Introduction to Internal Control
 
The Role of Internal Audit
The Role of Internal AuditThe Role of Internal Audit
The Role of Internal Audit
 
Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)
 
Internal audit department
Internal audit departmentInternal audit department
Internal audit department
 
Internal audit ppt
Internal audit pptInternal audit ppt
Internal audit ppt
 

Andere mochten auch

Treasury Finance Audit Tj Sparrow Jan 2011
Treasury Finance Audit  Tj Sparrow Jan 2011Treasury Finance Audit  Tj Sparrow Jan 2011
Treasury Finance Audit Tj Sparrow Jan 2011Trishjo
 
Internal Audit of Cable Operators
Internal Audit of Cable OperatorsInternal Audit of Cable Operators
Internal Audit of Cable Operatorssandesh mundra
 
internal audit function ans controller's role in investors relation
 internal audit function ans controller's role in investors relation internal audit function ans controller's role in investors relation
internal audit function ans controller's role in investors relationArgentinaMorata
 
Internal audit procedure
Internal audit procedureInternal audit procedure
Internal audit procedurebhavikjariwala
 
Internal Audit And Internal Control Presentation Leo Wachira
Internal Audit And Internal Control Presentation   Leo WachiraInternal Audit And Internal Control Presentation   Leo Wachira
Internal Audit And Internal Control Presentation Leo WachiraJenard Wachira
 
Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...
Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...
Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...Kevin Perry
 
Internal Audit COSO Framework
Internal Audit COSO FrameworkInternal Audit COSO Framework
Internal Audit COSO FrameworkJesús Gándara
 
Internal audit-checklist-example
Internal audit-checklist-exampleInternal audit-checklist-example
Internal audit-checklist-exampleHoang Nguyen
 
Iso 9001-internal-audit-checklist
Iso 9001-internal-audit-checklistIso 9001-internal-audit-checklist
Iso 9001-internal-audit-checklistPHILIP TEO
 

Andere mochten auch (14)

Treasury Finance Audit Tj Sparrow Jan 2011
Treasury Finance Audit  Tj Sparrow Jan 2011Treasury Finance Audit  Tj Sparrow Jan 2011
Treasury Finance Audit Tj Sparrow Jan 2011
 
Internal audit
Internal auditInternal audit
Internal audit
 
Internal Audit of Cable Operators
Internal Audit of Cable OperatorsInternal Audit of Cable Operators
Internal Audit of Cable Operators
 
Tms
TmsTms
Tms
 
internal audit function ans controller's role in investors relation
 internal audit function ans controller's role in investors relation internal audit function ans controller's role in investors relation
internal audit function ans controller's role in investors relation
 
Internal audit procedure
Internal audit procedureInternal audit procedure
Internal audit procedure
 
Internal Audit And Internal Control Presentation Leo Wachira
Internal Audit And Internal Control Presentation   Leo WachiraInternal Audit And Internal Control Presentation   Leo Wachira
Internal Audit And Internal Control Presentation Leo Wachira
 
Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...
Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...
Nick Steinke, Tellevate, 10 Tips for Implementing an Effective Audit Program,...
 
Internal Audit
Internal AuditInternal Audit
Internal Audit
 
3a 5 Value Adding Internal Audit
3a   5   Value Adding Internal Audit3a   5   Value Adding Internal Audit
3a 5 Value Adding Internal Audit
 
Internal Audit COSO Framework
Internal Audit COSO FrameworkInternal Audit COSO Framework
Internal Audit COSO Framework
 
Internal audit-checklist-example
Internal audit-checklist-exampleInternal audit-checklist-example
Internal audit-checklist-example
 
Audit of treasury
Audit of treasuryAudit of treasury
Audit of treasury
 
Iso 9001-internal-audit-checklist
Iso 9001-internal-audit-checklistIso 9001-internal-audit-checklist
Iso 9001-internal-audit-checklist
 

Ähnlich wie Internal_audit

auditpresentation-121006061658-phpapp02.pdf
auditpresentation-121006061658-phpapp02.pdfauditpresentation-121006061658-phpapp02.pdf
auditpresentation-121006061658-phpapp02.pdfowaissayyed0041
 
SEATA by TOMMY SEAH
SEATA by TOMMY SEAHSEATA by TOMMY SEAH
SEATA by TOMMY SEAHTommy Seah
 
Mf0013 – internal audit and control
Mf0013 – internal audit and controlMf0013 – internal audit and control
Mf0013 – internal audit and controlak007420
 
Audits and Regulatory Compliance
Audits and Regulatory ComplianceAudits and Regulatory Compliance
Audits and Regulatory Compliancesomeshwar mankar
 
UBL AUDITING DUBAI
UBL AUDITING DUBAIUBL AUDITING DUBAI
UBL AUDITING DUBAIVickyRockz1
 
What are the major steps in a financial statement audit.pdf
What are the major steps in a financial statement audit.pdfWhat are the major steps in a financial statement audit.pdf
What are the major steps in a financial statement audit.pdfRathnakarReddy17
 
Introduction to cooperative auditing
Introduction to cooperative auditingIntroduction to cooperative auditing
Introduction to cooperative auditingefferson ramirez
 
Chapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docx
Chapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docxChapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docx
Chapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docxmccormicknadine86
 
24201843 studdy-note-8
24201843 studdy-note-824201843 studdy-note-8
24201843 studdy-note-8Akash Saxena
 
ISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docxISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docxpriestmanmable
 
Process Level Auditing Presentation
Process Level Auditing   PresentationProcess Level Auditing   Presentation
Process Level Auditing PresentationVernon Benjamin
 
AUDIT.pptx
AUDIT.pptxAUDIT.pptx
AUDIT.pptxbeminaja
 

Ähnlich wie Internal_audit (20)

Audit presentation
Audit presentationAudit presentation
Audit presentation
 
auditpresentation-121006061658-phpapp02.pdf
auditpresentation-121006061658-phpapp02.pdfauditpresentation-121006061658-phpapp02.pdf
auditpresentation-121006061658-phpapp02.pdf
 
SEATA by TOMMY SEAH
SEATA by TOMMY SEAHSEATA by TOMMY SEAH
SEATA by TOMMY SEAH
 
1auditconcepts
1auditconcepts1auditconcepts
1auditconcepts
 
Mf0013 – internal audit and control
Mf0013 – internal audit and controlMf0013 – internal audit and control
Mf0013 – internal audit and control
 
Audits and Regulatory Compliance
Audits and Regulatory ComplianceAudits and Regulatory Compliance
Audits and Regulatory Compliance
 
UBL AUDITING DUBAI
UBL AUDITING DUBAIUBL AUDITING DUBAI
UBL AUDITING DUBAI
 
Audit PPT.pdf
Audit PPT.pdfAudit PPT.pdf
Audit PPT.pdf
 
What are the major steps in a financial statement audit.pdf
What are the major steps in a financial statement audit.pdfWhat are the major steps in a financial statement audit.pdf
What are the major steps in a financial statement audit.pdf
 
Audit Risk Assessment Chapter 9
Audit Risk Assessment Chapter 9Audit Risk Assessment Chapter 9
Audit Risk Assessment Chapter 9
 
Introduction to cooperative auditing
Introduction to cooperative auditingIntroduction to cooperative auditing
Introduction to cooperative auditing
 
Chapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docx
Chapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docxChapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docx
Chapter 9Audit Risk AssessmentPrepared by Dr Phil Saj1.docx
 
24201843 studdy-note-8
24201843 studdy-note-824201843 studdy-note-8
24201843 studdy-note-8
 
ISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docxISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docx
 
Process Level Auditing Presentation
Process Level Auditing   PresentationProcess Level Auditing   Presentation
Process Level Auditing Presentation
 
AUDIT.pptx
AUDIT.pptxAUDIT.pptx
AUDIT.pptx
 
T8 Notes
T8 NotesT8 Notes
T8 Notes
 
Chapter 7
Chapter 7Chapter 7
Chapter 7
 
Chapter 7
Chapter 7Chapter 7
Chapter 7
 
Fice Of Internal Audit
Fice Of Internal AuditFice Of Internal Audit
Fice Of Internal Audit
 

Mehr von Vishal Joshi

Sales and Distribution Management
Sales and Distribution ManagementSales and Distribution Management
Sales and Distribution ManagementVishal Joshi
 
Statutory requirement
Statutory requirementStatutory requirement
Statutory requirementVishal Joshi
 
Factories Act 1948
Factories Act 1948Factories Act 1948
Factories Act 1948Vishal Joshi
 
Ecommerce Business in India
Ecommerce Business in IndiaEcommerce Business in India
Ecommerce Business in IndiaVishal Joshi
 
Inventory Management
Inventory ManagementInventory Management
Inventory ManagementVishal Joshi
 
Sarbanes-Oxley Presentation
Sarbanes-Oxley PresentationSarbanes-Oxley Presentation
Sarbanes-Oxley PresentationVishal Joshi
 

Mehr von Vishal Joshi (9)

Working Capital
Working CapitalWorking Capital
Working Capital
 
Sales and Distribution Management
Sales and Distribution ManagementSales and Distribution Management
Sales and Distribution Management
 
Ttransfer_pricing
Ttransfer_pricingTtransfer_pricing
Ttransfer_pricing
 
Statutory requirement
Statutory requirementStatutory requirement
Statutory requirement
 
Factories Act 1948
Factories Act 1948Factories Act 1948
Factories Act 1948
 
Importance of MIS
Importance of MISImportance of MIS
Importance of MIS
 
Ecommerce Business in India
Ecommerce Business in IndiaEcommerce Business in India
Ecommerce Business in India
 
Inventory Management
Inventory ManagementInventory Management
Inventory Management
 
Sarbanes-Oxley Presentation
Sarbanes-Oxley PresentationSarbanes-Oxley Presentation
Sarbanes-Oxley Presentation
 

Internal_audit

  • 1. Internal controls should be built “into,” not “onto” business processes
  • 2. Internal auditing is an independent, objective assurance and consulting activity designed to add value and improve an organization's operations. It helps an organisation accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes.
  • 3. WWWWhhhhaaaatttt iiiissss IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt???? Internal Audit is a professional activity which helps organisations to achieve their stated objectives by:  Analyzing key processes, procedures & operations  Identifying key controls in each such operation, procedure & process  Evaluating the adequacy of these controls  Testing compliance of sample transactions against these controls  Reporting results of the evaluation of controls and compliance testing of transactions  Recommending stronger controls wherever necessary  Suggesting methods to improve compliance with key controls  Follow up of action taken on recommendations made in previous reports
  • 4. WWhhyy IInntteerrnnaall AAuuddiitt?? Legal and Statutory Requirement As per Companies Act 1956 : Internal Audit system is compulsory if, a. Paid-up capital and reserves exceeding Rs. 50 lakhs as at the commencement of the FY. or b. Having an average annual turnover exceeding Rs.5.00 crores for a period of three consecutive FY’s immediately preceding the FY concerned,
  • 5. WWWWhhhhyyyy IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt???? CCCCoooonnnnttttiiiinnnnuuuueeeedddd………… Management Requirement To ensure error free accounting To support statutory audit To have proper control over business To control on the size of operations
  • 6. IIAA –– CCooddee ooff EEtthhiiccss PPrriinncciipplleess Internal auditors are expected to apply & uphold the following principles: Integrity The integrity of internal auditors establishes trust & so provides the basis for reliance on their judgment Objectivity Internal auditors exhibit the highest professional objectivity in gathering, evaluating & communicating information. Internal auditors make a balanced assessment of all relevant circumstances & are not unduly influenced by their own interests or others in forming judgments Confidentiality Internal auditors respect the value and ownership of information they receive & do not disclose information without appropriate authority unless there is a legal or professional obligation to do so Competency Internal auditors apply knowledge, skills, & experience needed
  • 7. WWWWhhhhaaaatttt aaaarrrreeee IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollllssss???? Internal Controls are important checks instituted by management to have reasonable assurance that:  Operations are carried out in an efficient & effective manner  Transactions are recorded accurately & completely  Assets are properly recorded & safeguarded  Laws are complied with  Reliable reports are generated
  • 8. IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollll MMMMyyyytttthhhhssss aaaannnndddd FFFFaaaaccccttttssss MYTHS: FACTS: Internal control starts with a strong set of policies and procedures Internal control starts with a strong set of policies and procedures Internal control: That’s why we have internal auditors! While internal auditors play a key role in the system of control, management has responsibility for internal control Internal control is a finance thing Internal control is integral to every aspect of business/operations Internal controls are essentially negative, like a list of “thou-shalt-nots” Internal control makes the right things happen the first time Internal controls take time away from our core activities of implementing development objectives Internal controls should be built “into,” not “onto” business processes
  • 9. IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollll PPPPrrrraaaaccccttttiiiicccceeeessss How?  Internal control is a process. It's a means to an end, not an end in itself  Internal control is effected by people as a team, not by internal auditor. It's not merely policy manuals & forms, but people at every level of an organization  Internal control can be expected to provide only reasonable assurance, not absolute assurance, to an entity's management and governing bodies/ committees  Uses systematic methodology for analysing business processes, procedures & activities  The cost of IA should not exceed expected benefits to be derived
  • 10. IIIInnnntttteeeerrrrnnnnaaaallll CCCCoooonnnnttttrrrroooollll SSSSttttrrrruuuuccccttttuuuurrrreeee An internal control structure is simply a different way of viewing operations – a perspective that focuses on doing the right things in the right way MONITORING INFORMATION INFORMATION AND & COMMUNICATION COMMUNICATION CONTROL CONTROL ACTIVITIES ACTIVITIES RISK ASSESSMENT CONTROL ENVIRONMENT • Monthly reviews of performance reports • Supervisory activities In many cases, you perform controls and interact with the control structure every day, perhaps without even realising it • Reporting • Corporate communications (e-mail, meetings) • Authorisation Matrix • Approvals/ segregations • Security • Reconciliations • Proper operating & accounting procedures • Based on identification & analysis of risks to achievement of objectives • Corporate Policies • Tone at the top, ethics • Organisational authority • Skilled personnel
  • 11. How are HHHooowww aaarrreee IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt &&&& EEEExxxxtttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt ddddiiiiffffffffeeeerrrreeeennnntttt???? Internal audit is focused at internal management support and improving systems, procedures and processes ⇉ External audit (EA): normally statutory requirement, unlike internal audit (IA) ⇉ EA reports are addressed to stakeholders: IA reports are addressed to Management ⇉ EA reports express an opinion on the financial statements prepared by the entity for a specified period: IA reports evaluate and check compliance against key internal controls ⇉ EA reports are usually public documents which are available to all stakeholders. IA reports are for use only by Management ⇉ EA reports do not make recommendations, although may have a Management Letter: IA reports are incomplete without recommendations. ⇉ EA is basically a review of financial statements for compliance: IA seeks to ensure value for money to Management
  • 12. BBBBeeeennnneeeeffffiiiittttssss ooooffff IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt Correct financial figures No deviation in process Timely work completion Reduction in reconciliation Delegation of work Detection of errors and frauds Proper place of documents and records
  • 13. Risks of not having Internal Audit Chances of conflict and delay in accounting Affects day to day activity by Increase in Reconciliation activity Documentation problem Delay in closing books of accounts Lack of track on business Non compliance of statutory regulation
  • 14. NNNNaaaattttuuuurrrreeee ooooffff IIIInnnntttteeeerrrrnnnnaaaallll AAAAuuuuddddiiiitttt AAAAccccttttiiiivvvviiiittttyyyy  Establish scope & activities for audit to Management  Describe key risks facing the business activities within scope of audit  Identify control procedures used to ensure each key risk is properly controlled & monitored  Develop & execute risk based sampling & testing approach to determine whether most important controls are operating as intended (NB: input from Management required – e.g. 100% vouching of Credit notes to Trade partners )  Report issues/make recommendations/negotiate action plans with Management to address issues  Follow up on reported findings periodically  ATR ( Action Taken Report ) Submission on or before time by Respective Department.
  • 15. CCCCoooonnnntttteeeennnnttttssss ooooffff AAAAuuuuddddiiiitttt PPPPllllaaaannnn  Updated annually  Risk based audit plan developed with input from project staff including Management  Summary of key goals, risks & corresponding major audits, to illustrate alignment  Based on risk assessment & available resources  Appendix materials, such as planning approach, assumptions & brief descriptions of all planned audits & related prioritization  Approved by management/ appropriate oversight Committee
  • 16. CCCCoooonnnntttteeeennnnttttssss ooooffff AAAAuuuuddddiiiitttt RRRReeeeppppoooorrrrtttt  Observations  Narration/ description  Remedial action  Consequences/ fall out  Recommendation for improvement (prioritized between “high” and “normal”)  Response (action plan) – who, when and how
  • 17. IIIIAAAA’’’’ssss PPPPrrrrooooaaaaccccttttiiiivvvveeee RRRRoooolllleeee  Identify Risks  Find Better Ways and Best Practices  Partner With Management to Find Solutions  Prevent Problems  Provide training  Respond to policy & technical accounting questions  Offer suggestions for improvement  Advisory role
  • 18. IIddeeaall SSccooppee ooff IInntteerrnnaall AAuuddiitt Vouching Cash and Bank Income and Expenses Capital and Petty expenses Stocks & Inventory Verification Purchases and Sales Registers Debtors and Creditors Ledger & Trial Scrutiny Approval Matrix in routine operations
  • 19. SSccooppee CCoonnttiinnuueedd…….... Statutory Compliances VAT & Service Tax ESI & PF TDS & TCS Excise and Customs Channel Management Performance of Channel Partners Report NPA Channel Partners to Management Revenue vs Cost Ratio of Channel Partners. Dispute and Grievances of Channel Partner, If any Long Pending Claims of Channel Partners Local Support to Channel Partners, if any up gradation require in Infrastructure then recommend to Management in Report
  • 20. CCoonncclluuttiioonn Company can achieve its goals in a organised and systematic manner with help of Internal Audit More formal control structures reduce possibility that risks become real issues Identify areas of high risk & opportunities Validation of process documentation & controls Incorporate best Practices of Trade with in SOP and Review & update changes regularly in SOP and Credit Policy of Business to strengthen the support function to sales
  • 21. Auditors believes in ………. “ Perception can not be reality every time” “ Tenure has nothing to do with Honesty “ “ Best has to be Acknowledged and Worst has to be reported “ “ Only Apple to Apple to Comparisons attitude, no Apple to Orange “ “Integrity and Ethics - Zero Tolerance behaviour ” Thank You………. A Honest Attempt to Describe the Core function of Enterprise