Implementing The COSO 2013's New 17 Principles in Audit
Implementing The COSO 2013's New 17 Principles in Audit
Background
Pilot
Moving
Implementation Forward
Actual Case
2
A. Background
• Release of the updated Internal Control—Integrated Framework
(COSO 2013 with new 17 principles)
2013
http://www.coso.org/
3
B. Implementation Cycle
Full Roll-Out
Industry
Knowledgebase
Protiviti
OAG Pilot OAG Refined
Ernst & Young ICQ ICQ
ISACA
Feedback
ADB Internal Interview/Online Survey
Attestation Team
Phase 1 Pilot Phase 2 Pilot
Peer-to-Peer Learning with Multi-laterals
2015 2016
Pilot Primary Considerations
What tool do we How to fit into the
use? existing Audit
Methodology?
1. Assessment Tool:
Why Do We Need a Questionnaire?
• The COSO Assessment Template
Principle
Points of
Focus
Assessment
6
6
Assessment Tool:
Protiviti Internal Control Questionnaire (ICQ)
7
Assessment Tool:
The Pilot ICQ
Points to
Consider
Principle
Evaluation
8
8
2. High Level Audit Process
Annual Audit Audit
Plan Engagement
PLANNING
FIELDWORK
REPORTING
2. The Current Audit Planning Process
Annual Audit Audit
Plan Engagement
TESTING
PHASE
DOCUMENT
Key Controls
to Test
2. The Proposed Audit Planning Process
Annual Audit Audit
Plan Engagement
TESTING PHASE
Gathering ICQ Planning
Risks Processes Map to Approach Memo
COSO
DOCUMENT
Principles Deficiencies
Key Controls
Assessment in Principles
to Test
3. P2P Learning Initiative with
Multi-laterals
Early adoption stages
World Bank
UN
Discussion points include:
Client involvement
AfDB OECD Tool
Audit Management System
support
ITU
ADB COSO Training Considerations
12
C. Pilot Case: Accomplishing the ICQ
Audit Engagement Pilot Case # 1
Team Effort
Past audits
Consultation with OAG Colleagues
Strategy papers, programs , operations results
shared by clients
Client Inquiry
Level of Details
Information
Risk Control Monitoring
Control and
Assessment Activity
Environment Communication
Audit subject Audit subject Audit subject
Entity-Level Audit subject specific
specific specific
specific
13
Accomplishing the ICQ
Audit Project 1 Audit Project 2
Control Activity: Principle 10
14
Accomplishing the ICQ
15
15
Accomplishing the ICQ
16
ICQ Link to Planning Memo
17
Link to Risk & Control Matrix
18
Linkages Summary
19
D. Feedback Summary
Benefits Challenges
Systematic method Level of perspective
Drives discipline
E. Pilot Take-Aways
• Assessment Tool is key
• Refine/Tailor the Questionnaire
21
Resources Link
References Used
COSO www.coso.org Internal Control—Integrated
Framework
Executive Summary
22
Knowledge
Sharing
23