Chapter 9 - Internal Control Flashcards

1
Q

What is Internal Control?

A

It is the process designed, implemented
and maintained by those charged with governance to achieve reasonable assurance of the objectives of organization in regards to reliability of financial reports, operating effectiveness and efficiency and compliance with laws and regulations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the components of IC?

A
  1. Control environment
  2. Risk assessment
  3. Information system
  4. Control activity
  5. Control monitor
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is control environment?

A

It is the attitude, awareness and actions

of the responsible to design, implement and monitor IC.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is risk assessment?

A

It is the procedures to identify risk to

corporate objectives. How it decides to address and results of doing so

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is information system about?

A

Procedures to record, process transections

to maintain accountability for assets, equity and liability. Related to financial reporting system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is control procedure?

Types of control procedures?

A

It can be administrative or accounting.
Administrative - management decision complied with the standards.
Accounting - accurate records to achieve accountability.

PREVENT, DETECT, CORRECT are the steps.

Types:

  1. Physical counts
  2. Segreggation of duty
  3. Authorization
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is control monitoring?

A

Ongoing and periodic assessment of IC
done by the IC department.
Checking control deficiencies and so on.

Find out what the system client uses, understand, record, assess and test it.

How do we record though?
Flowcharts
Questionnaires
Narrative notes
Checklists

Narrative notes can be flexible and easy,
but it also can be very time consuming
if the system is complex.

Flowcharts are only applicable
for a standard system usually.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is collusion?

A

Employees conspire together

to create fraud. There are motivated and competent BUT untrustworthy employees.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Limitations of IC?

A
Collusion
Authorization abuse
Staff mistakes
Cost over benefit
Management over riding controls
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Difference between ICQ and ICEQ?

Does it have equal weight?
Can it deal with unusual transactions?

A

ICQ
Does controls exists that meets
the control objectives?
YES or NO. (close ended)

ICEQ
EVALUATE controls that exist
to detect, prevent and correct SPECIFIC
errors. (Open ended) CAN we do this and why?

Both gives equal weight.
ANY of them cannot deal with unusual transactions and NARRATIVE notes must be used!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

General controls VS Application?

A

General is about overall stability of the system.

Application is about preventing, detecting and correcting errors. It is about transactions. But, remember that both are related.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Cover letter format?

A

Weakness l Consequence l Recommendation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How do we evaluate IC?

A
  1. Inquiry
  2. Observe
  3. Inspect
  4. Re performance
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Before issuing to the board IC control deficiencies?

A

Discuss with the management. There could

be more info to be gained.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

General control?

A
  1. Disaster
  2. Protection
  3. IC
How well did you know this?
1
Not at all
2
3
4
5
Perfectly