- 0
- 0
- 约1.65万字
- 约 25页
- 2017-12-06 发布于浙江
- 举报
Continuous Monitoring
A Strategy for more Effective Controls
John Hughes
IT Audit Systems Consultant
Satori Group Australia
Continuous Controls Monitoring
• The need for continuous controls monitoring
• Conceptual model for continuous controls monitoring
• Types of controls that can be continuously monitored
through technology
• Methodology for automated continuous controls
monitoring
• Practical implementation issues
The Need for
Continuous Controls Monitoring
• Continuous monitoring and auditing
– Discussed for many years
– Progress made – but limited
• Regulatory Compliance now driving the need
– How to efficiently and cost effectively sustain controls
assessment and testing efforts?
– How to know on a timely basis when control deficiencies
occur?
– How to quantify the impact of control deficiencies?
– How to improve effectiveness of controls
– How to gain assurance over effectiveness of controls
Model for
Continuous Monitoring of Controls
• Identify the control rule for each internal control point (using
COSO framework)
• Establish tests that, using transactional data analysis,
will validate each control rule
• Establish tests that will identify suspect transactions,
using transactional profiling techniques
• Subject all transactions to a suite of tests on a regular, timely basis
• Identify all transactions that fail the tests
• Notify the appropriate personnel
• Investigate any transactions that fail and, as appropriate,
– Correct the transactions
– Correct the control problem
Continuous Monitoring Model
Data Data Data
Access transactional data from disparate sources
Transactional Data
您可能关注的文档
- (2004)A conceptual risk framework for internal auditing in e-commerce.pdf
- (2004)A continuous auditing web services model for XML-based accounting systems(Discussion).pdf
- (2004)Anatomy of computer accounting frauds.pdf
- (2004)A continuous auditing web services model for XML-based accounting systems.pdf
- (2004)Assurance Reporting for XML-Based Information Services.doc
- (2004)Audit and Review:Its Role in Information Technology.pdf
- (2004)Audit Committee and Internal Audit Function Characteristics:Impact on Internal Audit Contribution to Financial Statement Audits.pdf
- (2004)Audit Firm Tenure and Fraudulenet Financial Reporting.pdf
- (2004)Auditing in the e-commerce era.pdf
- (2004)Auditor Detected Misstatements and the Effect of Information Technology.pdf
- (2026春新版)部编版八年级语文下册《第一单元》PPT课件.pptx
- 2018电力监控系统网络安全监测装置技术规范.docx
- 2022电力监控系统安全防护方案审核要点.docx
- 2014电力电缆光伏系统EN 50618欧标.docx
- (2026春新版)人教版二年级数学下册《第三单元 万以内数的认识》教案.docx
- (2026春新版)人教版二年级数学下册《第四单元 万以内的加法和减法》教案.docx
- (2026春新版)人教版二年级数学下册《综合与实践 时间在哪里》教案.docx
- (2026春新版)苏教版二年级数学下册《综合与实践 时间有多长》教案 .pdf
- (2026春新版)部编版三年级语文下册第3单元(教案).docx
- (2026春新版)部编版三年级语文下册第8单元(教案).docx
原创力文档

文档评论(0)