The CIA certification has 4 parts. The CCSA exam and the CGAP exam are single part specialty exams.

Similar documents
TERMS OF REFERENCE FOR THE PROVISION OF OUTSOURCED INTERNAL AUDIT SERVICE

Audit and Risk Management Committee Charter

Chapter 1. Introduction and Overview of Audit & Assurance

Audit Committee Charter

EXECUTIVE SUMMARY INTERNAL AUDIT REPORT. IOM Kingston JM JULY 2017

THE CLOROX COMPANY AUDIT COMMITTEE CHARTER. [Effective May 8, 2017]

PERFORMANCE DEVELOPMENT SYSTEM. Supervisory and Management Staff Appraisal. Department: Reviewer s Name: Review Period:

Enterprise Risk Management Focusing on the Right Risks

TERMS OF REFERENCE. Audit and Risk Committee (the "Committee") of Wilmcote Holdings Plc (the "Company")

Understanding Self Managed Superannuation Funds

[AGENCY NAME] Mandate and Roles Document. (Pure Advisory Committees)

GENERAL MOTORS COMPANY AUDIT COMMITTEE CHARTER. Amended and Restated: December 13, 2017

NANOSTRING TECHNOLOGIES, INC. COMPENSATION COMMITTEE CHARTER. (Adopted as of October 16, 2012 and amended as of April 26, 2017)

Audit & Risk Committee Charter

VIVINT SOLAR, INC. COMPENSATION COMMITTEE CHARTER. (Adopted as of May 9, 2014)

Copiague Chamber of Commerce

Are you ready for the FUTURE of your Quality Management system?

CHARTER OF THE COMPENSATION COMMITTEE OF THE BOARD OF DIRECTORS OF PLURALSIGHT, INC. Adopted May 3, 2018

AUDIT & RISK COMMITTEE CHARTER

RISK MANAGEMENT AND BUSINESS CONTINUANCE A FAIS Standard. An AC Guidance Note. July 2010

AUDIT and ASSURANCE COMMITTEE TERMS OF REFERENCE

FINANCE & AUDIT COMMITTEE

County of Riverside OFFICE OF THE AUDITOR-CONTROLLER STANDARD PRACTICE MANUAL

AUDIT, RISK MANAGEMENT AND COMPLIANCE COMMITTEE CHARTER

HSBC USA INC. HSBC BANK USA, N.A. CHARTER OF THE COMPLIANCE COMMITTEE

Audit Committee Charter. St Andrew s Insurance (Australia) Pty Ltd St Andrew s Life Insurance Pty Ltd St Andrew s Australia Services Pty Ltd

Sempra Energy Environmental, Health, Safety and Technology Committee Charter

AUDIT COMMITTEE CHARGE

Huntington Bancshares Incorporated

CHARTER OF RESERVES, HEALTH, SAFETY, ENVIRONMENT AND SOCIAL RESPONSIBILITY COMMITTEE 2018

Project Lead Role Profile

CALL FOR INTELLECTUAL SERVICE PROVIDERS ( EXTERNAL CONSULTANTS ) OECD Guidelines for Multinational Enterprises National Contact Point Peer Reviews

International Standard on Review Engagements (ISRE) 2400 (Revised), Engagements to Review Historical Financial Statements

TASSAL GROUP LIMITED ABN Procedures for the Oversight and Management of Material Business Risks. (Approved by the Board 28 May 2015)

Title II, Part A Private School Principal s Consultative Meeting

AUDIT & RISK COMMITTEE (ARC)

Local Code Of Corporate Governance

List of Services that we provide:

Terms of Reference - Board of Directors (approved by the Board on 12 April 2018)

INFORMATION TECHNOLOGY SERVICES NIST COMPLIANCE AT FSU - CONTROLLED UNCLASSIFIED INFORMATION

NUMBER: BUSF 3.30 Business and Finance. Other Educational and General Program Accounts ("E" Funds) Date: October 18, 2006 I. PURPOSE OF THE POLICY

APPLIED INDUSTRIAL TECHNOLOGIES, INC. EXECUTIVE ORGANIZATION & COMPENSATION COMMITTEE CHARTER

CITIGROUP INC. AUDIT COMMITTEE CHARTER As of January 18, 2018

CODE OF CONDUCT AND ETHICS POLICY ON CONFLICTS OF INTEREST

HUMAN RESOURCES AND COMPENSATION COMMITTEE CHARTER

Midwest Association of Housing Cooperative. Board Candidates

The Committee is specifically charged with the following duties and responsibilities:

Risk and Audit Committee charter

Windham School District Procurement Policy for Federal Funds

HIPAA Privacy Rule LINKS AND RESOURCES AFFECTED ENTITIES IMPACT ON EMPLOYERS. Provided by Brown & Brown of Louisiana, LLC

Non-Teacher Appraisal Goal-Setting Conference Guide

TERMS AND CONDITIONS FOR APPOINTMENT OF INDEPENDENT DIRECTOR

CHARTER OF THE COMPENSATION COMMITTEE OF THE BOARD OF DIRECTORS OF DROPBOX, INC.

Corporate Governance Charter

ABORIGINAL ECONOMIC PARTNERSHIPS Program Grant Application Guidelines

Internal Control Requirements for Adopting New Accounting Standards

How to Become a Delaware Public Benefit Corporation

CHARTER OF THE COMPENSATION COMMITTEE OF THE BOARD OF DIRECTORS OF ON DECK CAPITAL, INC.

Allowable Costs on Sponsored Projects: Policy & Operational Procedure

JAUPT Appraisal Criteria Centre Application. November 2016

Annex 03 - Recommendation #3: Redefining ICANN s Bylaws as Standard Bylaws and Fundamental Bylaws

ABORIGINAL ECONOMIC PARTNERSHIPS Program Application Guidelines

School Business Manager

Best Execution & Client Order Execution Policy. October P age 1 6. BE31/10/17 v1

Trustee Benefits. 1. Expense payments

June Dear Chairman Cuttita and Members of the Board of Fire Commissioners:

Managing your Risks by Managing your Process

CHARTER OF THE NOMINATING AND CORPORATE GOVERNANCE COMMITTEE OF THE BOARD OF DIRECTORS OF PLURALSIGHT, INC. Adopted May 3, 2018

OSHA INSPECTION CHECKLIST

Employee Hardship Assistance Policy

Risk Management Policy

Frequently Asked Questions: Broader Public Sector Procurement Directive

PROFICIENCY STANDARD FOR APPROVED PERSONS SELLING EXCHANGE TRADED FUNDS ( ETFs )

EXECUTIVE SUMMARY INTERNAL AUDIT REPORT. IOM Mogadishu SO November 7 December 2018

Grant Application Guidelines

TOPIC 12: PART 1 WAYS OF GATHERING AUDIT EVIDENCE

NATCHITOCHES HISTORIC DISTRICT DEVELOPMENT COMMISSION STATE OF LOUISIANA

MiFID Supervisory Briefing Suitability

Neighborhood Tool Kit. Office of Neighborhood Vitality City of Mesquite, Texas

UNITED NATIONS OFFICE FOR PROJECT SERVICES (UNOPS) IN CAMBODIA (PRINCIPAL RECIPIENT) INTERNAL AUDIT REPORT. 14 July 2017

Engineering IT Application Development Governance Workflow

INDEPENDENT ACCOUNTANTS' REPORT ON APPLYING AGREED-UPON PROCEDURES

NHCAC North Hudson Community Action Corporation

REASONS TO FORM A CAPTIVE

Scope of Services and Timeline. PHASE 1: Project Organization & Best Practices Research Week Completed

TRID Rule Purchase For Applications dated on or after 10/3/2015

Automotive Diversification Programme Round 3

3.2 Equity. An interest in a business consisting of any stock, stock option, or similar ownership interest in such business.

ESTABLISHING A BUSINESS

Privacy & Data Protection Policy

Producer Statements will be accepted only in accordance with this policy.

THE COMMUNITY NEEDS ASSESSMENT REQUIREMENT FOR THE COMMUNITY DEVELOPMENT BLOCK GRANT (CDBG) PROGRAM

Lecture # 22 Cost-Benefit Analysis

Policy Coversheet. Link Tutors: appointment and responsibilities

POSITION DESCRIPTION

Overview of Statements of Investment Policies and Procedures (SIPP) Requirements

Subject Access Requests

Board Committee Charters

Telephone: Fax: Web: Job Description

Agenda item Data Quality Group. Terms of Reference and Operating Arrangements

Transcription:

Abut this bk The CIA certificatin has 4 parts. The CCSA exam and the CGAP exam are single part specialty exams. The CIA exam parts are: PART 1 THE INTERNAL AUDIT ACTIVITY S ROLE PART 2 CONDUCTING THE INTERNAL AUDIT ENGAGEMENT PART 3 BUSINESS ANALYSIS AND INFORMATION TECHNOLOGY PART 4 BUSINESS MANAGEMENT SKILLS D nte that many f the CIA/CCSA/CGAP knwledge areas are verlapped (even thugh they are differently labeled). My suggestin is that yu g thrugh ALL TOPICS befre taking any f the individual exam mdules. D NOT study n a per mdule basis. Instead, treat all f them as a whle - this will guarantee that yu dn t get tripped up when similar questins shw up n different exam parts. And knw the IPPF inside and ut. Many crrect answers cme ut frm the IPPF. The IPPF NOW we are dealing with the Internatinal Prfessinal Practices Framewrk (IPPF), which is the cnceptual framewrk that rganizes authritative guidance prmulgated by the IIA. Yu just need t memrize it. The entire cntent can be viewed nline via this lcatin (we cannt reprint the IPPF dcuments here due t cpyright restrictins): http://www.theiia.rg/guidance/standards-and-guidance/ Study Psychlgy & Exam Tactics Always plan ahead! Always maintain a psitive attitude. Prepare systematically using ExamReview Pr materials. Ensure yu have enugh sleep! Health is essential fr maintaining a fighting spirit. 8

Arrive at the test center in time t have a margin f safety. Dress yurself in a manner with emphasis n cmfrt. Always have a cat ready just in case the A/C is way t pwerful. Read the exam instructins carefully befre answering the first questin. The Internal Auditing Prcess Yu need t knw the fundamentals f internal auditing. Mst CIA PART ONE study text bks in the market fail t give a cmplete and clear picture f the auditing prcess as a whle. We will fill this gap here. What is auditing? What abut Internal Auditing? An audit is a management instrument which can identify the imprvement ptential f business prcesses (prcess audit) r f the management system as a whle (system audit). At the same time, audits allw the supervisin f already started measures. Audits therefre help t imprve the effectiveness f management systems and cnsequently the whle cmpany rganizatin 1. An audit: cmpares yu actual prcess against yur dcumented prcess reprts t what extent yu are fllwing yur dcument prcess. acts as a verificatin exercise - if yu think yu are fllwing yur dcumented prcess but yu d nt verify this with an audit, there is a very gd chance that yu are nt actually fllwing yur wn prcesses. the audit prcess is nt a prcess f criticizing anyne r anything in any way in fact ne may find it beneficial t request fr an audit. Fr example, an audit can review administrative prcedures t assess whether internal cntrls in a business unit are adequate. It is als beneficial t assess the system cntrls and mdified ffice prcedures when new systems are put in place. The gal f Internal Auditing is t supprt executive management and the bard f directrs in carrying ut crprate gvernance. In a brader sense, the bjective f internal auditing can be seen as assisting members f the rganizatin in the effective discharge f their respnsibilities. T achieve such purpse, internal auditing furnishes them with analyses, appraisals, recmmendatins, cunsel, and infrmatin cncerning the activities reviewed. 1 http://www.experteam.de/starte/leistungen/themen/swqualitaetsmanagement/auditierung.html 9

The typical gals f Internal Auditing may include: Evaluating the sundness and adequacy f the internal cntrl structure. Assessing cmpliance with plicies, plans, prcedures, laws, and regulatins. Verifying the existence f assets and ensuring that they are prperly accunted fr and safeguarded frm lsses f all kinds. Cnducting special examinatins and reviews requested by management including investigating reprted ccurrences f fraud, embezzlement, theft, waste, etc., and recmmending cntrls t prevent r detect such ccurrences. Evaluating the ecnmy and efficiency with which resurces are emplyed, and recmmending imprvements in peratins. Evaluating the reliability and integrity f management data by reviewing general cntrls and cmputer security prcedures ver data prcessing. Determining the extent t which established bjectives and gals fr peratins r prgrams are being accmplished. Internal cntrl audit bjectives are ften related t management s plans, methds, and prcedures expected t meet its missin, gals, and bjectives. Internal cntrl includes and nt limits t thse prcesses and prcedures fr planning, rganizing, directing, and cntrlling prgram peratins, and the system that has been put in place fr measuring, reprting, and mnitring prgram perfrmance. Sme examples f these audit bjectives include: Organizatinal gals, and bjectives are achieved effectively and efficiently Resurces are used in cmpliance with laws, regulatins, r ther requirements, and are safeguarded against unauthrized acquisitin, use, r dispsitin Management infrmatin and reprts that are prduced are cmplete, accurate, and cnsistent t supprt perfrmance and decisin-making Security ver cmputerized infrmatin systems can truly prevent r detect unauthrized access Cntingency planning can prevent unwarranted disruptin f activities Internal Audit functin in the mdern days Internal Audit's primary activity shuld be the cnduct f a prgram f regular audits f the rganizatin's business peratins. Hwever, as the business envirnment has evlved ver time, it is quite cmmn fr the audit functin t be expanded t include certain additinal activities: 10

Internal Audit may need t cnduct investigatins int suspected financial irregularities whether reprted by whistleblwers, uncvered in the curse f regular audits, r based upn cncerns cnveyed by management. Internal Audit may need t prvide advisry services, which encmpasses a brad array f activities beynd regular audits. These additinal activities are ften practive r preventive in nature and are ften fcused n: Internal Cntrl & Accuntability Special Prjects and Cnsultatins Systems Develpment and Reengineering Other needs The internal audit department shuld have a prject management system in place which captures the fllwing infrmatin: Type f audit prject Line f business invlved Hurs budgeted Actual hurs expended Draft reprt issuance date Final reprt issuance date Types f Internal Audit Auditable activities may include and may nt be limited t the fllwing: Plicies, prcedures and practices Cst centers, prfit centers and investment centers General ledger accunt balances Infrmatin systems 11

Cntracts and prgrams Organizatinal units Essential business functins and prcesses Transactin systems Financial statements Laws and regulatins The general categries f internal audit reviews may include: FINANCIAL AUDITS, which address questins f accunting, recrding, and reprting f financial transactins. COMPLIANCE AUDITS, which seek t determine if departments are adhering t Federal, State, and rganizatin rules, regulatins, plicies, and prcedures. OPERATIONAL AUDITS, which examine the use f resurces t determine whether thse resurces are being utilized in the mst efficient and effective way. This kind f audit may include elements f a cmpliance audit, a financial audit, and an infrmatin systems audit. INVESTIGATIVE AUDITS, which are perfrmed as needed, with a fcus n alleged vilatins f federal and state laws and f rganizatin plicies and regulatins. This kind f audit may result in prsecutin r disciplinary actin. INFORMATION SYSTEMS AUDITS, which address the internal cntrl envirnment f autmated infrmatin prcessing systems and hw these systems are being used. NOTE: An peratinal audit is a full analysis f every prcess r task that drives, impacts and r influences yur business. Yu may want t have a full peratinal audit dne at least nce every five years, althugh usually it wuld be the easiest t maintain if the interim audits fcus n a business unit r specific task area that will impact results. Financial audits are cncerned with prviding reasnable assurance n whether financial statements are presented fairly in all material respects in cnfrmity with the generally accepted accunting principles (GAAP) assuming the audits take place in the US. Sme ther bjectives f financial audits may include prviding special reprts fr specified elements, accunts, r items f a financial statement; reviewing interim financial infrmatin; reprting n the prcessing f different transactins; auditing cmpliance with regulatins relating t federal award expenditures and ther gvernmental financial assistance etc. Attestatin engagements deal primarily with examining, reviewing, r perfrming agreed upn prcedures n a subject matter and reprting n the results. The subject matter can take many frms, such as histrical r prspective perfrmance r 12