Topic 1.5 Control In Accounting Information Systems Flashcards
Why is control needed?
So that we can avoid or try to overcome the threat and it’s financial burden
Why do threats incur?
Even if there are certain guidelines to follow people still make mistakes and errors
What is the exposure or impact of threat?
The potential dollar loss should a particular threat become a reality
Primary objective of an AIS
Is to control the organisation so the organisation can achieve its objectives
What is internal control?
Presses implemented to provide assurance that the following objectives are achieved:
- safeguard assets
- maintain sufficient records
- provide accurate and reliable information
- prepare financial reports according to established criteria
- promote and improve operational efficiency
- encourage adherence with management policies
- comply with laws and regulations
Functions of internal control
Prevention controls
- deter problems from occurring
Detective controls
- discover problems that are not prevented
Corrective controls
- identify and correct problems; correct and recover from the problems
What are the categories of internal control
General
- looking at internal control environment and does it have internal controls e.g does it have proper software
- over IC system and processes
Application
- transactions are processed correctly
- ensure accuracy that all transaction are taking place in the right way
What are the four levers of control
- belief system : what is the overall mission you want to pass down to your employees
- boundary system : get the job done however you want but still in the belief of the company
- diagnostic control system : where the firm makes a goal for each employee and then end of the year see if they meet it
- interactive control system : face to face meetings with others to listen to others ideas
What is the Serious Fraud Office (SFO)
Established in 1990 in response to the collapse of financial markets in New Zealand at the time. Only covers very serious fraud
SFO operates 3 investigative teams
- Evaluation and intelligence
- Financial Markets & Corporate Fraud
- Fraud & Corruption
What is the Financial Markets Authority (FMA)
Was established in 2011 in response to the need to address failures in the financial markets, made evident from the global financial crisis
What is Sarbanes-Oxley Acts (SOX)
Is the legislation passed in 2002 applies to publicly help companies and their auditors to
- Prevent financial statement fraud
- financial report transparent
- protect investors
- strengthen internal controls
- punish executives who perpetrate fraud
What are the control frameworks
- COBIT (control objective for information and related technology)
- framework of IT control
- COSO (committee of Sponsoring Organisation)
- framework for enterprise internal controls (control based approach)
- COSO-ERM ( enterprise risk management)
- expands COSO framework taking a risk- based approach
What is COBIT framework and its principles
It is a control framework
Current version is COBIT5
Based on the following principle:
- meeting stakeholders needs
- covering the enterprise end to end ( links all departments together e.g production to sales)
- applying a single, integrated framework
- enabling a holistic approach
- separating governance and management
What to management do in IT?
Plan
- APO
Build
-BAI
Run
-DSS
Monitor
-MEA
What do governance do in IT
Direct
Evaluate
Monitor