assessing control risk under AICPA standards Flashcards
What is meant by the term “monitoring” (as it relates to internal controls)?
The policies and procedures involving the ongoing assessment of the effectiveness of internal controls over time
What is meant by the term “control activities”?
The policies and procedures that help ensure that management directives are carried out, especially those related to (1) segregation of duties, (2) physical controls, (3) authorization of transactions, (4) performance reviews, and (5) information processing
Identify three risk assessment procedures that an auditor might used to obtain an understanding of the entity and its environment, including its internal control.
- )Inquiries of management and others
- )Observation and inspection
- )Analytical procedures
Define “internal control.”
A process—effected by those charged with governance, by management, and by other personnel—designed to provide reasonable assurance about the achievement of the entity’s objectives with regard to reliability of financial reporting, effectiveness and efficiency of operations, and compliance with applicable laws and regulations.
Identify the five interrelated components of internal controls.
- )Control environment
- )Risk assessment
- )Control activities
- )Information and communication systems
- )Monitoring
What is meant by the term “control environment”?
The policies and procedures that determine the overall control consciousness of the entity, sometimes called “the tone at the top”
What is meant by the term “information and communication systems”?
The policies and procedures related to the identification, capture, and exchange of information in a form and time frame that enable people to carry out their responsibilities
Define the term “risk assessment procedures.”
Procedures performed to obtain an understanding of the entity and its environment, including its internal control
What is meant by the term “risk assessment”?
The policies and procedures involving the identification, prioritization, and analysis of relevant risks as a basis for managing those risks
What are the three objectives of internal control as identified in the definition of internal control?
- )Reliability of financial reporting
- )Effectiveness and efficiency of operations
- )Compliance with applicable laws and regulations