Unit 2 Flashcards
CSA Responsibilities
Senior management
oversee the establishment, administration, and evaluation of the processes of risk management and control.
CSA Responsibilities
Operating managers
assessment of the risks and controls in their units.
CSA Responsibilities
nternal and external auditors
varying degrees of assurance about the state of effectiveness of the risk management and control processes of the organization
CSA key features and goals
Identifying risks and exposures,
Assessing the control processes that mitigate or manage those risks,
Developing action plans to reduce risks to acceptable levels, and
Determining the likelihood of achieving the business objectives.
CSA Approaches
(1) facilitation, (2) survey (questionnaire), and (3) self-certification
Facilitation Approach
objective-based format
risk-based format
control-based format
process-based format
risk-based format
focuses on listing the risks to achieving an objective
control-based format
focuses on how well the controls in place are working
process-based format
focuses on selected activities that are elements of a chain of processes