Corp Gov, Int Control, ERM Flashcards
Incentives to defeat Agency Problem
- Base Salary and Profit - based on acct measures
- Stock Options - Align SH and mgmt interest in increasing share prices
COSO: Internal Control Integrated Framework
Process, effected by the entity’s BOD, mgmt, and other personnel design to provide reasonable assurance regarding the achievement of objectives relating to operations, reporting, and compliance.
5 COSO Components
- ) Control Environment
- ) Control Activities
- ) Monitoring
- ) Risk Assessment
- ) Information and Communication Systems
Control Baseline
Establishing a starting point that includes a supported understanding of existing control system
Control Identification
Identifying through monitoring changes in internal control that are either necessary because of changes in operating environment or have already taken place
Change in Management
Evaluating the design and implementation of change, and establishing new baseline
Control revalidation/update
Periodically revalidating control operation when no known changes have occurred.
Enterprise Risk Management (ERM) 8 Components
- ) Internal Environment (tone of org)
- ) Objective Setting
- ) Event Identification
- ) Risk Assessment
- ) Risk Responses
- ) Control Activities
- ) Information and communication throughout organization
- ) Monitoring
ERM LImitations
Future is uncertain No absolute Assurances -Human failure -System breakdown -Collusion across ERM -Management override
Risks of IT
- Overreliance
- Access
- Changes in programs
- Failure to change
- Manual intervention
- Loss of data
System Design Process Improvement - PADDTIM 7 Steps
- ) Planning
- ) Analysis
- ) Design
- ) Development
- ) Testing
- ) Implementation - Several strategies
- ) Maintenance