Internal Control (B1:M1) Flashcards
components of IC. CRIME
control environment
risk assessment
information and communication
monitoring
existing control activities
what are the principles of control environment? EBOCA
Ethics and integrity. tone at top
Board independence and oversight
Organizational structure
Commitment to competence. hire, develop, retain competent employees
Accountability. establishing performance measures, incentives, and rewards
what are the principles of risk assessment? SAFR
Specify objectives
Risks (identify and analyze)
Fraud potential
Assess changes. changing external environment, business model, leadership
what are the principles of information and communication? OIE
Obtain and use info
Internal communication
External communication
what are the principles of monitoring? SOD
Separate and Ongoing evaluations. separate = periodically; ongoing = continuous
communicate Deficiencies
what are the principles of existing control activities? CAT P
Control Activities (select and develop)
Technology controls (select and develop)
Policies deployment. procedures deploy the policies
what are the “general requirements”?
to be effective, IC must be both present (design) and functioning (operating effectively)