1 / 9

Entity Level Controls - General

Entity Level Controls - General. Tone from the top Risk appetite Organizational environment/atmosphere Usually soft in nature

lorin
Télécharger la présentation

Entity Level Controls - General

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Entity Level Controls - General • Tone from the top • Risk appetite • Organizational environment/atmosphere • Usually soft in nature • Soft control: influence how people think/act, but do not directly result in evidence of risk mitigation (e.g. ethical climate, active BOD/Audit Committee, employee handbook, etc.)

  2. Entity Level Control - Defined • Per Institute of Internal Auditors Research Foundation: “Control activities that operate pervasively across and throughout the organization to mitigate risk threatening the organization as a whole and to provide assurance that organizational objectives are achieved.”

  3. Entity Level Controls - Overview Mitigate risks that exist at company-wide level Both internally and externally Pervasive effect Impact how effective control activities at the process and transaction levels can operate Work in unison with process/transaction controls against risks that threaten the achievement of strategic and business objectives

  4. Entity Level Controls – Specific examples Code of ethics Risk management policies/procedures Fraud prevention/detection program HR Hiring policies/procedures Management control deficiency process Variance analysis IT general controls

  5. Entity Level Controls - example Weakness: Management not committed to attracting, training and developing competent employees Impact: Less reliance can be placed on control activities performed by employees requiring complex or highly judgmental tasks

  6. SHR Corporation Case – Entity Level Controls Question: What are strengths of ELC over SHR’s ethics program? Where there any ELC weaknesses in SHR’s ethics program? If weakness, recommendation to strengthen? Overall conclusion?

  7. ELC Strengths:

  8. ELC weaknesses: Recommendations:

  9. What do you think about SHR’s overall ELC?

More Related