Tag: risk management

hynotic watch

Is Internal Audit Being Distracted by Consultants Bearing Shiny New Toys?

GUEST BLOG Over the years, Big Four audit and consulting firm PwC has provided great value through their annual commentaries and reports on internal auditing. However, in their 2019 State of the Internal Audit Profession Study, they are advising internal auditors to adopt approaches and practices with which I disagree. Read More

Demystifying Risk Culture Assurance

Demystifying Risk Culture Assurance

It’s likely that most internal auditors and risk managers can appreciate the expression: “The more things change, they more they stay the same.” That’s because they see it in action all the time. At most companies, for example, the internal audit and risk management capabilities have improved considerably over the Read More

Compliance Staffing Trouble a Key Risk for Banks

Like companies in many industries, banks are having a difficult time finding and retaining qualified compliance staffers. In fact, recruiting good compliance professionals has gotten so hard that the U.S. Office of the Comptroller of Currency (OCC) says that it has become a top risk for financial firms, especially regional Read More

Report: Companies Lag on Improving Risk Management

Despite the constant drumbeat on the need for companies to improve and formalize risk management systems, most are still way behind, a new report finds. A study released this week by the American Institute of CPAs (AICPA) and North Carolina State University’s Enterprise Risk Management Initiative finds that while companies Read More

Internal Audit Must Embrace Change or Sink Like a Stone

GUEST BLOG One thing I know for certain … the times they are a-changin’ … and internal audit is no exception. I spent the last several months interviewing many chief audit executives (CAEs) from all over the world to gain a better understanding of the current state of internal audit. Read More

Three Lines of Defense Model

Should Internal Audit or Management Conduct Pre-Audits?

Internal audits are great at identifying problematic or even fraudulent transactions, whether in audits of payables to third parties, travel and expense audits, or other assessments. But when an internal audit uncovers improper transactions, it’s often too late. The funds have already been spent and reversing that process is never Read More

Google fined for GDPR

Google Hit with $57 Million Fine in First Big GDPR Case

French data protection regulator CNIL has imposed a €50 million ($57 million) fine on tech giant Google for failing to comply with the EU’s General Data Protection Regulation (GDPR). The EU privacy law, which took effect last May, is among the most strict set of data privacy regulations in the Read More

What Auditors Must Know About Zero Trust Networking

Among the many things that may keep internal auditors up at night are cybersecurity, compliance, and data security and protection, according to a recent survey by the Chartered Institute of Internal Auditors. These top three concerns significantly outrank other risk categories like human resources, regulatory change, and digitalization, although, of Read More