Chapter 5 - Introduction to internal control Flashcards
Define internal control.
The process designed, implemented and maintained by those charged with governance, management, and other personnel to provide reasonable assurance about the achievement of an entity’s objectives with regard to reliability of financial reporting, effectiveness and efficiency of operations and compliance with applicable laws and regulations.
The term ‘controls’ refers to any aspects of one or more of the components of internal control.
What are three reasons for internal controls?
minimising the company’s business risks
ensuring the continuing effective functioning of the company
ensuring the company complies with relevant laws and regulations
What are the limitations of internal controls?
Define the control environment.
The control environment includes the governance and management functions and the attitudes, awareness and actions of those charged with governance and management concerning the entity’s internal control and its importance in the entity. The control environment sets the tone of an organisation, influencing the control consciousness of its people.
It is essentially the environemnt in which the internal controls exist within the business
How does the control environemnt influence auditors regarding the internal controls of a business?
The control environment is therefore very important to the auditors and they will evaluate it as part of their risk assessment process. If the control environment is strong, then auditors will be more inclined to rely on the controls system in the entity than if it is weak.
What is the audit committee?
The audit committee is an important aspect of the control environment of the company. It is a sub-committee of the board of directors responsible for overseeing an entity’s internal control structure, financial reporting and compliance with relevant laws and regulations.
What is the audit committee comprised of?
The audit committee is comprised of non-executive directors. It is a requirement in UK listed companies under the rules of the UK Corporate Governance Code.
What are the five components of internal control?
The control environment
The entity’s risk assessment process
The information system
Control activities
Control systems
Outline the responsibilities of the audit comitee
To review the integrity of the financial statements of the company and formal announcements relating to the company’s performance.
To review the company’s internal financial controls and the company’s risk management systems
To monitor and review the effectiveness of the company’s internal audit function (if relevant)
To make recommendations to the board in relation to the external auditor.
To monitor the independence of the external auditor.
To implement policy on the provision of non-audit services by the external auditor.
Define the entity’s risk management process.
A component of internal control that is the entity’s process for identifying business risks relevant to financial reporting objectives and deciding about actions to address those risks, and the results thereof.
Define business risk.
Risk resulting from significant conditions, events, circumstances, actions or inactions that could adversely affect an entity’s ability to achieve its objectives and execute its strategies, or from the setting of inappropriate objectives and strategies.
Internal controls are implemented to minimise business risk.
Define Information system relevant to financial reporting.
A component of internal control that includes the financial reporting system, and consists of the procedures and records established to initiate, record, process and report entity transactions (as well as events and conditions) and to maintain accountability for the related assets, liabilities and equity.
What aspects of the information system will auditors be interested in?
the classes of transactions that are significant to the entity’s financial statements
the procedures by which transactions are initiated, recorded, processed, corrected and reported
the related accounting records and supporting information
how the information system captures events other than transactions that are significant to the financial statements
the process of preparing the financial statements
Define control activities.
They are the policies and procedures that help ensure that management directives are carried out.
What are the two main catagories of control activities?
Preventative: prevent an error occuring
Detective: identify that an error has occurred and correct it