29
Continuous Auditing Tianli Xie July 3 rd , 2011 Section 1

Continuous auditing tianli xie_20241457

Embed Size (px)

Citation preview

Page 1: Continuous auditing tianli xie_20241457

Continuous Auditing

Tianli XieJuly 3rd, 2011Section 1

Page 2: Continuous auditing tianli xie_20241457

What is Continuous Auditing (CA)?

Page 3: Continuous auditing tianli xie_20241457

ISACA: “the collection of audit evidence, by an auditor, on systems and transactions, on a continuous basis through a period”

External Auditors: electronic audit evidence gathering process to render an opinion on fair presentation of financial statements (Rezaee et al)

Internal Auditors: process to evaluate business processes and assess management’s monitoring process of the control and disclosure environment (Rezaee et al)

Page 4: Continuous auditing tianli xie_20241457
Page 5: Continuous auditing tianli xie_20241457

Continuous Monitoring (CM)A tool for management Automatic and continuous monitoring of:◦compliance of business processes and

transactions against company rules, policies and objectives

◦effectiveness of internal controlsSome techniques/procedures are similarCA and CM complement each other

Page 6: Continuous auditing tianli xie_20241457

CA’s advantages over traditional external auditing

Page 7: Continuous auditing tianli xie_20241457

CCM

•continuous control monitoring

•monitors the internal control effectiveness

•verifies the programming code of the controls retrieved in read-only format against appropriate benchmark to see whether it is actually achieving its purpose

CDA

•continuous data assurance

•attests information system data integrity

•1st level filter: transaction verification

•2nd level filter: analytical procedures on transactional level

CRMA

•continuous risk monitoring and assessment

•assesses risks to provide input for audit planning

•collects real time inputs relating to change in environment to generate a new risk profile

•change the CCM and CDA software and techniques and the audit plan accordingly

Page 8: Continuous auditing tianli xie_20241457

Traditional

Purchase Listing

Item A $5,000

Item B $5,000 DL

Programming code:

@IF( SERV_YEARS >= 5 .AND. DAYS_ABSENT_ACTUAL <= 30, 0.2* MON_SAL_DOLLAR )

CA

Page 9: Continuous auditing tianli xie_20241457

CCM

•continuous control monitoring

•monitors the internal control effectiveness

•verifies the programming code of the controls retrieved in read-only format against appropriate benchmark to see whether it is actually achieving its purpose

CDA

•continuous data assurance

•attests information system data integrity

•1st level filter: transaction verification

•2nd level filter: analytical procedures on transactional level

CRMA

•continuous risk monitoring and assessment

•assesses risks to provide input for audit planning

•collects real time inputs relating to change in environment to generate a new risk profile

•change the CCM and CDA software and techniques and the audit plan accordingly

Page 10: Continuous auditing tianli xie_20241457

Traditional audit

Manual procedures

Annual audit

Annual option

trend, regression and ratio analytics

Sample testing

Continuous Audit

Automated procedures

Frequent to real time audit

Evergreen/on demand opinion

regression, classification, association and clustering analytics

100% population

Cost reduction

Page 11: Continuous auditing tianli xie_20241457

Traditional audit

Manual procedures

Annual audit

Annual option

trend, regression and ratio analytics

Sample testing

Continuous Audit

Automated procedures

Frequent to real time audit

Evergreen/on demand opinion

regression, classification, association and clustering analytics

100% population

Cost reduction

Page 12: Continuous auditing tianli xie_20241457

Traditional audit

Manual procedures

Annual audit

Annual option

trend, regression and ratio analytics

Sample testing

Continuous Audit

Automated procedures

Frequent to real time audit

Evergreen/on demand opinion

regression, classification, association and clustering analytics

100% population

Cost reduction

Page 13: Continuous auditing tianli xie_20241457

Traditional audit

Manual procedures

Annual audit

Annual option

trend, regression and ratio analytics

Sample testing

Continuous Audit

Automated procedures

Frequent to real time audit

Evergreen/on demand opinion

regression, classification, association and clustering analytics

100% population

Cost reduction

Page 14: Continuous auditing tianli xie_20241457

Traditional audit

Manual procedures

Annual audit

Annual option

trend, regression and ratio analytics

Sample testing

Continuous Audit

Automated procedures

Frequent to real time audit

Evergreen/on demand opinion

regression, classification, association and clustering analytics

100% population

Cost reduction

Page 15: Continuous auditing tianli xie_20241457

Traditional audit

Manual procedures

Annual audit

Annual option

trend, regression and ratio analytics

Sample testing

Continuous Audit

Automated procedures

Frequent to real time audit

Evergreen/on demand opinion

regression, classification, association and clustering analytics

100% population

Cost reduction

Page 16: Continuous auditing tianli xie_20241457

Demand for CA

Page 17: Continuous auditing tianli xie_20241457

SOX

Growing complexity of business transactions

Trend towards continuous reporting (ie. MD&A, XBRL)

Wide adoption of ERP systems and data warehouses

More responsibilities for fraud detection

Demand for CA

Page 18: Continuous auditing tianli xie_20241457

CA Implementation

Page 19: Continuous auditing tianli xie_20241457

1. Business case

cost benefit analysisHard to justify using ROI aloneRecommended to develop specific cases

where CA is value adding and cost saving

Page 20: Continuous auditing tianli xie_20241457

2. Client Pre-requisiteGood control environment

Good data integrity

Understanding of company system and controls in place

Senior executive and BOD support

Page 21: Continuous auditing tianli xie_20241457

3. Adoption Strategyprioritize the risk areas under each

business process◦ROI, degree of risk and costs and benefits

start with a less complex, high return and low cost project

quick realization of benefits gain support

4. Planning scope and objectivesresources and timeline roles and responsibilities

Page 22: Continuous auditing tianli xie_20241457

5. Design and implementationestablish the business rules, controls

and analytical procedure benchmarks

frequency of testing

follow up procedures

6. Monitoring and communicationresults and benefits reported to

stakeholders

Page 23: Continuous auditing tianli xie_20241457

CA software

Page 24: Continuous auditing tianli xie_20241457

Barriers to CA

Page 25: Continuous auditing tianli xie_20241457

Barriers to CACost constraint

Hard to demonstrate benefits using ROI

Lack of system integration (decentralized)

Lack of data integrity and control environment

Staff resistance

Page 26: Continuous auditing tianli xie_20241457

Current CA adoption and future outlook

Page 27: Continuous auditing tianli xie_20241457
Page 28: Continuous auditing tianli xie_20241457
Page 29: Continuous auditing tianli xie_20241457