AUD Pt I - Ethics, Resp, Prof Conduct Flashcards

(162 cards)

1
Q

Overview of creation of GAAS

A

AICPA - ASB - SAS (AU-C)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is an issuer / nonissuer?

A

Company that files/doesn’t file with SEC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the 3 preconditions of an audit engagement?

A

1) An appropriate framework chosen & applied
2) Mgmt acknowledges and accepts responsibility
3) Consider matters affecting nature, timing & scope, & objectivity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the yellow book?

A

GAGAS (Gen Acc Govt Aud Stds)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does the Single Audit Act cover?

A

A financial and compliance audit of federally granted programs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Who is the authoritative body of the Single Audit Act?

A

OMB (Office of Management and Budgeting)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the classifications & effects of an auditee under the Single Audit Act?

A

High risk (audit 40% of expenditures) and low risk (audit 20% of expenditures)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the classifications & effects of programs under the Single Audit Act?

A

Type A and Type B

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a performance audit?

A

An audit (of gov’t entities) that evaluate the entity’s efficiency and effectiveness

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the Cognizant Agency Concept, and who created it?

A

One agency represents all others when dealing with grantees in common areas

The OMB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is a compliance audit?

A

Audit to ensure gov’t entity is in compliance and measure risk of noncompliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does SSARS stand for, and who created it?

A

Statements on Standard for Accounting and Review Services

The ARSC (Accounting and Review Services Committee)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the 4 sections of SSARS and their topics?

A

Section 60 - General Principles
Section 70 - Preparation Engagements
Section 80 - Compilation Engagements
Section 90 - Review Engagements

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What all does a CPA provide under a SSARS Section 70 Engagement?

A

No report, no assurance, no opinion/conclusion

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

When does a SSARS Section 70 engagement not apply? (8)

A

(SSARS Section 70 = Preparation Engagement)
1) When also contracted for attestation engagement
2) preparing info for tax authorities
3) personal financial statements prep
4) litigation services
5) business valuation services
6) maintaining client schedules (depr, etc) / bookkeeping
7) preparing/proposing adjustments
8) drafting F/S notes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What all does a CPA provide under a SSARS Section 80 Engagement?

A

Report, no assurance, no opinion/conclusion

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What all does a CPA provide under a SSARS Section 90 Engagement?

A

Report, limited assurance, conclusion

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What are two other relevant standard for SSARS engagements?

A

AICPA Code of Professional Conduct

SQCS - Statements on Quality Control Standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

For Nonissuers, what does GAAS say about interim F/S reviews?

A

Allowed if conducted by firm’s current annual auditors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

For Issuers, what does GAAS say about interim F/S reviews?

A

Allowed, but if conducted, must submit to SEC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is an attestation engagement?

A

An engagement where a report is issued

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What are the standards for attestation engagements?

A

SSAE - Statements on Standards for Attestation Engagements

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

What are 3 attestation engagements?

A

1) Examinations
2) Reviews
3) AUP - agreed upon procedures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What are two types of examination engagements under SSAE?

A

1) Assertion-based (express opinion on party’s assertions)
2) Direct (accountant does not rely on client)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
What all does a CPA provide on AUP engagements?
A report, but no opinion or conclusion
26
What must a CPA do additionally for SSAE engagement reports for issuers?
Include city and state of accountant on report
27
What does IESBA stand for?
International Ethics Standards Board for Accountants
28
What is the layout of the AICPA Code of Professional Conduct?
Preface - Principles Part I - Public CPA's Part II - Industry CPA's Part III - all other members
29
Under the AICPA Code, what are the 6 Principles of Professional Conduct?
1) Auditor's General Responsibilities 2) Public Interest 3) Integrity 4) Objectivity 5) Independence 6) Due Care
30
What is the Conceptual Framework of the AICPA Code of Professional Conduct?
Identify and evaluate threats to noncompliance, then mitigate threats by identifying and implementing safeguards to an acceptable level
31
What are 7 threats to noncompliance with the AICPA Code of Professional Conduct?
1) Adverse Interest 2) Advocacy 3) Familiarity 4) Mgmt participation 5) Self-interest 6) Self-review 7) Undue Influence
32
What are 3 categories of Safeguards for public CPA's under Part I the AICPA Code of Professional Conduct?
1) By profession 2) By client 3) By firm
33
What are 2 categories of Safeguards for public CPA's under Part II the AICPA Code of Professional Conduct?
1) By profession 2) By employer
34
What is the standard of "acceptable level" under the AICPA Code of Professional Conduct?
An objective third party
35
Who does the Independence rules of the AICPA Code of Professional Conduct apply to?
Public Members
36
What are 5 threats to independence under the AICPA CPC?
All are financial-based Unpaid fees, direct financial interests, indirect material financial interests, employment or association with client, non-audit services.
37
What type of service is generally not included in independence threats?
Advisory services
38
Who, outside of a member, does the AICPA CPC Independence Rules apply to ?
Immediate family (and sometimes close relatives)
39
What is the General Standards Rule under the AICPA CPC? (4 stds)
While performing professional services, a member must exercise: professional competence, due professional care, proper planning and supervision, and obtain sufficient relevant data to support conclusions.
40
What is the Compliance with Standards Rule under the AICPA CPC?
A member who provides professional services must comply with relevant standards.
41
What is the Accounting Principles Rule under the AICPA CPC?
A member must follow relevant principles and standards for performing professional standards.
42
What is the Acts Discreditable Rule under the AICPA CPC?
A member shall not perform acts discreditable to the profession.
43
What are at least 4 discreditable acts under the AIPCA CPC? (not all-inclusive)
Withholding client records, inserting indemnification agreements in engagement agreements, sharing employer confidential information, false self-advertising.
44
What are the rules regarding furnishing client records?
1) Client is entitled to the records they provided, CPA-prepared schedules to F/S, and engagement deliverables. 2) They are not entitled if such records are incomplete, fees are outstanding, their is ongoing litigation with the client, etc. 3) The CPA is allowed to charge reasonable fees to produce records, and retain copies of records. 4) The records should be produced as soon as practicable, and within 45 days.
45
What is the Confidential Client Info Rule under the AICPA CPC?
Members cannot disclose confidential info without client consent.
46
What are Contingent Fees Rules under the AICPA CPC?
1) Prohibited for assurance and tax engagements (paraphrased) 2) Certain instances are allowed
47
What are the Commission and Referral Fees Rules under the AIPCA CPC?
1) Prohibited for assurance and tax engagements (paraphrased) 2) Otherwise allowed if disclosed
48
What is the Organization Form & Name Rule under the AIPCA CPC?
Don't be misleading
49
What is the Conceptual Framework under the AIPCA CPC?
Threats - safeguards must equal an acceptable level
50
What was the objective of the 1933 Securities Act?
To provide information and prohibit misrepresentation and fraud in securities sales
51
What does the 1933 Securities Act regulate?
Public offerings of securities
52
What are the requirements under the 1933 Securities Act?
A company must file a registration statement and investor prospectus.
53
What are 5 exemptions of registration for security sales under the 1933 Securities Act?
1) Regulation D Rule 504 (private sales under $5 million) 2) Regulation D Rule 506 (restricted securities to accredited investors) 3) Bank, government, and charity stocks 4) In-state stock sales 5) Letter stock (private insiders)
54
What does Section 11(A) of the Securities Act of 1933 say in regard to litigation liability?
CPA is liable to any THIRD PARTY investor WITHOUT REGARD TO PRIVITY for FALSE MATERIAL statements or omissions in INITIAL REGISTRATION FILINGS due to fraud or SIMPLE NEGLIGENCE All BURDEN OF PROOF ON CPA to establish innocence
55
What is the phrase that summarizes CPA responsibilities according to Section 11(A) of the Securities Act of 1933?
A CPA owes third parties a due diligence standard of care
56
Who does the burden of proof fall upon for litigations under the Securities Act of 1933 Section 11(A)?
CPA: burden to prove innocence
57
What are a CPA's defenses (7) to a lawsuit under the Securities Act of 1933 Section 11(A)?
1) F/S true and not misleading 2) Misstatement is immaterial 3) Registration records were not relied upon (other records) 4) CPA used due diligence 5) plaintiff knew falsity 6) damages are unrelated to records 7) 3-year statute of limitations has passed
58
What did the Securities Exchange Act of 1934 create?
1) The SEC 2) Requirement for additional filings to SEC
59
What is the purpose of the SEC?
To regulate public securities
60
What are the additional filings required under the Securities Exchange Act of 1934?
10-K annual audited reports 10-Q quarterly reports 8-K current report Proxy statements
61
What is required in an 8-K current report?
A disclosure of major subsequent events within 15 days of occurrence
62
What does Rule 10b-5 of the Securities Exchange Act of 1934 say?
Fraud and deceit of securities purchases is prohibited Scienter must be proven to reach a CPA in litigation
63
What does Section 18 of the Securities Exchange Act of 1934 say in regard to litigation liability?
A CPA is liable to THIRD PARTIES for FALSE/MISLEADING statements in ALL REQUIRED SEC FILINGS SCIENTER must be proven to reach CPA Third party must establish RELIANCE, PRICE of security AFFECTED by false statement, and DAMAGES
64
When was the Dodd-Frank Act established?
2010
65
How does the Dodd-Frank Act affect auditors?
No specific rules for auditors, but amends prior regulation applicable to their work
66
What 6 areas did Dodd-Frank Act of 2010 affect & reform?
SEC & PCAOB Investor protections Asset securitization process Credit rating agencies Corporate governance Municipal Securities
67
How did the Dodd Frank Act of 2010 affect the SEC? (5)
Increased size, offices, authority and powers of SEC Added whistleblower protections Allowed ability to charge and collect fees Allowed foreign auditor reach by SEC and PCAOB Increased Congressional oversight of SEC with annual reports (of I/C and exams performed) and tri-annual review of employees by US Comptroller General
68
How did the Dodd Frank Act of 2010 regulate credit rating agencies?
It recognized the power of agencies and enforced them to public oversight and accountability It also established Credit Rating Analyst professional qualifications
69
How did the Dodd-Frank Act of 2010 reform corporate governance? (3)
Requires shareholder approval of executive compensation every 3 years Required independent compensation committees and more disclosures Required reasonings for BOD nominations and allowed shareholders to vote by proxy
70
What are two major goals that the Sarbanes-Oxley Act of 2002 accomplished?
Improved accuracy and reliability of corporate disclosures Established regulation and accountability for issues and their auditors
71
What do the first four out of eleven titles for the SOX Act of 2002 cover?
Title I - PCAOB Title II - Auditor Independence Title III - Corporate Responsibilities Title IV - Enhanced Financial Disclosures
72
What did Title I of the SOX Act of 2002 establish?
The PCAOB
73
What are five facts about the PCAOB as laid out in Title I of SOX?
1) It's a nonprofit corporation (directors appointed by SEC) 2) SEC directly oversees PCAOB operations 3) Established public CPA registration and annual requirements 4) PCAOB operates off annual fees (penalties fund ACTG scholarships) 5) PCAOB audits issuer auditors - annually if >100 issuer clients - every 3 yrs if <= 100 issuer client
74
What are four new auditor independence requirements under Title II of SOX?
1) all non-audit services prohibited (limited exceptions) 2) audit partners must rotate every 5 years 3) additional auditor communications to audit committee 4) 1 year disassociation from actg firm before becoming client executive
75
What are the two exceptions to issuer non-audit services restrictions, and which Title of SOX does it fall under?
1) Approved by audit committee 2) Total non-audit fees < 5% total client fees 3) Title II - Auditor independence Note: All non audit services must be disclosed
76
What are four required communications of the auditor to the audit committee under SOX?
1) Critical accounting policies of practices 2) Management's alternative treatments within GAAP, ramifications, and auditor preferences 3) Material communications between management and auditor 4) Document and discuss auditor independence
77
What does Title III of SOX prohibit?
Client manipulation/influence over auditor; enforced by SEC
78
How does Title IV of SOX enhance financial disclosures?
1) Annual I/C report alongside F/S 2) Enhanced required filing disclosures 3) Disclosures about management and board (CoE, AC Fin Exp., tx w/ SH, etc) 4) SEC reviewal of disclosures every 3 years
79
What is unique about the PCAOB board?
There are 5 appointed members by SEC who are "of high integrity."
80
What does PCAOB Release No. 2015-008 require?
Form AP in filings - discloses audit partners
81
What does PCAOB Form AP disclose?
Engagement partner name Details of other accounting firms who have contributed to audit
82
What is the GAO's independence requirement?
Independent of mind and in appearance
83
What are seven various DoL labor laws?
1) FSLA 2) Workers Compensation 3) OSHA 4) ERISA 5) FMLA 6) COBRA 7) HIPAA
84
What did FLSA establish?
Fair Labor Standards Act - established minimum wage and overtime rates
85
What general rules do Department of Labor (DoL) Workers Comp laws establish?
1) DoL Office of Workers Compensation Program 2) Employees accept payments in lieu of court lawsuit 3) States require employers to have W/C insurance
86
How does OSHA enforce their laws?
OSHA - Occupational Safety and Health Act Inspections and Investigations Note: also establish whistleblower protections with criminal and civil penalties
87
What are two requirements under ERISA?
1) IRS Form 5500 filed with DoL 2) Annual audits required for plans with 100 or more participants
88
What is the rule to FMLA?
FMLA - Family and Medical Leave Act Companies with more than 50 employees must give 12 weeks unpaid leave if serious illness or birth/adoption of immediate family (self, spouse, parent, child)
89
What is the EBSA and what two laws do they oversee?
Employee Benefits Security Administration; COBRA and HIPAA
90
What does COBRA do?
COBRA Employees keep health insurance after leaving
91
What does HIPAA do?
HIPAA - Health Insurance Portability and Accountability Act Protects individual's health-related information
92
What are three special DoL independence rules to EBP audits?
1) all auditors performing on audit must be independent (vs just AICPA members), extending to all the firm's partners & shareholders, and all employees in the main audit office 2) independence extends to plan sponsors 3) impairment exists with direct or immaterial direct financial interest in plan OR plan sponsor - or auditor maintains records
93
What is the statement relating to auditors and professional skepticism and judgement?
Auditors must apply ethical requirements, professional skepticism, and professional judgement during planning, performing, and evaluation stages of an engagement.
94
Describe professional skepticism.
A questioning mind, alertness, and critical assessments.
95
What does PCAOB SAPA 10 stand for?
SAPA - Staff Audit Practice Alert)
96
What are three areas of evaluation that require professional skepticism, according to SAPA 10?
1) Uncorrected mistakes 2) Management bias 3) Presentation of F/S
97
What are four impediments to professional skepticism according to SAPA 10?
1) Inherent audit pressures 2) Inappropriate levels of trust in management 3) Personal bias 4) Lack of training, expertise, and experience
98
What is a way to limit impediments to professional skepticism? (SAPA 10)
Firm Quality Control policies and procedures
99
What is professional judgement?
Experience and training to make objective, critical judgements
100
What is the CAQ?
Center for Audit Quality
101
What are four things that professional judgements should be?
1) Based on relevant facts/circumstances 2) Made after consideration reasonable alternatives 3) Sensitive to the degree of inherent uncertainty 4) In compliance with professional standards
102
What are four biases against professional judgement?
1) Confirmation - info confirming initial expectations seem more valid 2) Overconfidence 3) Anchoring - relying improperly on initial #'s and F/S in making assessments by not adjusting properly 4) Availability - preferring available info over relevant
103
What 3 things should an auditor do before accepting an engagement?
1) Consider client integrity 2) Ensure 3 audit preconditions are satisfied 3) Communications with predecessor auditors
104
What must the auditor do if the client's integrity is questioned?
Scope of audit must increase
105
What are the required rules regarding communications with predecessor auditors for new engagements?
Before acceptance: 1) Cannot accept client until able to communicate with predecessor 2) Cannot communicate with predecessor unless client allows After acceptance: 1) Specific inquiries or review of predecessor WP's
106
What are reporting rules regarding interactions with predecessors?
No reference to prior auditors are allowed as basis for current opinion
107
What are three reasons an accountant should NOT accept a SSARS 21 engagement?
1) Ethical requirements are not satisfied 2) Info for audit likely unavailable or unreliable 3) Lack of client integrity may affect audit performance
108
What are the requirements before an accountant accepts a SSARS 21 engagement?
1) Determine if framework is acceptable 2) Ethical requirements regarding professional competence are satisfied 3) Management accepts wide responsibilities
109
Which SSARS 21 engagements require successor accountants to communicate with the predecessor?
None
110
What are two prerequisites to acceptance of an attestation engagement?
1) Accountant receiving written acknowledgement by responsible parties 2) Subject matter appropriate (identifiable and consistently evaluatable)
111
What are the 9 general engagement letter requirements? (5 groupings)
1) List ENGAGEMENT itself & OBJECTIVE (and scope if assurance) 2) Identify FRAMEWORK for presentation (gaap, tax, etc) and CRITERIA for professional service (gaas, gagas, etc) 3) List RESPONSIBILITIES, PROMISES (deliverables, REP, etc), and SIGNATURES of both parties 4) List LIMITATIONS of engagements (express or inherent) 5) Describe any SPECIAL AGREEMENTS (deliverables format, lack of assurance, etc) note: fees & billing structure are not required to be agreed upon in the engagement letter
112
When should an accountant change engagement terms?
When reasonably justifiable
113
What should an accountant consider before changing to lower level engagements?
1) Reasons for request 2) Additional effort/costs required to finish original engagement
114
What are stated preclusions for lowering engagement levels?
1) Cannot issue review in place of audit if management imposes scope restriction 2) Cannot issue compilation report in place of audit/review if client won't sign REP
115
Why do accountants form documentation?
Evidences opinion/conclusion Evidences compliance with planning/performance regulations
116
What is the statement for assurance engagements as to the required level of documentation by accountant?
"Documentation should be SUFFICIENT for an EXPERIENCED ACCOUNTANT with NO CONNECTION to the engagement to understand NATURE, TIMING, & EXTENT of PROCEDURES PERFORMED; the RESULTS of procedures; Any SIGNIFICANT FINDINGS/issues, their CONCLUSIONS, and any significant PROFESSIONAL JUDGMENT APPLIED."
117
When must audit documentation be locked down and retained for how long? (For issuers and nonissuers)
Within 60 days of report release and retained for 5 years Issuers: within 45 days of report release and retained for 7 years
118
What are 4 (broad) things that should be included in documentation? (Stmt +2)
1) Document NTE (+WHO) & RESULTS of PROCEDURES performed sufficient for team and reviewer to understand; 2) SIGNIFICANT FINDINGS & RESOLUTIONS 3) Justification for DEPARTURES from presumptively mandatory requirements 4) REPORT DATE & copies of DELIVERABLES (of both parties)
119
How and why should auditors communicate planned scope and timing of audits?
Disclose without compromising effectiveness of procedures It helps management with oversight responsibilities
120
According to AU-C 265, auditors must communicate what in writing in regard to I/C?
Any significant deficiencies (bad) and material weaknesses (worse) affecting the CY.
121
What four things should written auditor communications regarding I/C contain?
1) Reminder of auditor responsibilities to F/S and not I/C 2) Identification and definition of deficiencies and their consequences 3) Note that findings are not all-inclusive 4) Restrict use of communication to management and those in charge of governance
122
What are 8 matters to communicate to governance regarding significant findings? (4 groups)
1) any SIGNIFICANT findings/issues/disagreements discussed with management, auditor viewpoint, management consultation with other auditors 2) Significant difficulties during audit (including with management) 3) All uncorrected mistakes + implications, and material corrected misstatements 4) All representations required from management
123
What are three categories of misstatements? (from auditor view)
Factual - known misstatements Judgmental - likely misstatements from disagreements in policies Projected - likely misstatements due to sampling
124
What type of fraud must be communicated to the appropriate level of management?
ANY
125
Why are QC (quality control) systems required for accounting firms?
They ensure compliance where needed
126
Statements on Quality Control Standards #8 (SQCS 8) states firm QC systems should encompass what 6 areas?
1) Leadership responsibilities for quality 2) Relevant ethical standards 3) Acceptance and continuance of engagements 4) HR 5) Engagement performance, documentation, and reporting 6) Monitoring
127
What are GAGAS audits requirements relating to peer reviews?
Peer reviews must occur every 3 years Auditor must provide client with most recent peer review
128
What are CPE requirement for auditors working on GAGAS engagements?
1) Any auditor: 20 hrs CPE every 2 yrs 2) Auditors allocating more than 20% time annually to CPE: 80 hours CPE every 2 yrs
129
To whom might the auditor direct fraud-related inquiries to? (4)
1) Authoritative employees 2) Operating personnel, not directly involved in financial reporting process 3) Employees involved with complex transactions 4) In house legal counsel
130
What are 5 possible PCAOB sanctions?
Temporary suspension Permanent revocation Limit allowable engagement activities Civil penalties Forced training Note: there are stricter sanctions or intentional or reckless behavior
131
What is the focus of a PCAOB audit?
Quality control and performance
132
What are 5 of the PCAOB responsibilities?
Oversee actg firm registration Establish relevant standards Inspect registered firms Investigate & discipline registered firms Enforce SOX compliance
133
What do ERISA audits cover?
Only F/S within IRS 5500. No compliance.
134
What two things are included in IRS Form 5500?
GAAP-based F/S Supplemental schedules
135
What are limited scope ERISA audits?
On qualified plans, an auditor can forego certain detailed audit procedures for underlying information on certified investments. The certificate is a qualified custodian or trustee who warrants complete and accurate information for investment.
136
When is GAGAS an acceptable framework?
When the auditee is a program that receives federal funding.
137
What are six functions of the GAO?
1) Support Congress in meeting constitutional responsibilities 2) Evaluate if funds are spent efficient and effectively 3) Evaluate if government programs are meeting objectives 4) Investigate allegations of illegal and improper activities 5) Issue legal decisions and opinions 6) Issue GAGAS
138
Under GAGAS-based engagements, 1) What standards must and auditor follow? 2) What does an auditor report on? 3) What are auditor responsibilities regarding client compliance?
1) Auditor must follow GAGAS AND GAAS (primarily GAGAS) 2) Auditor reports on F/S according to the acceptable framework, understanding of I/C and risk of material noncompliance, and direct & material noncompliance with regulation 3) Auditor must appropriately plan to ensure material compliance, but opinion is still solely to F/S
139
What are two threats unique to government audits, and who do they apply to?
1) Bias (convictions resulting in nonobjective position) 2) Structural (audit organization placement within government entity) - internal auditors
140
What is planning an audit, and when does it occur?
Developing an overall strategy for audit (determines nature and scope of engagement, and determines audit focus (nature, timing, and extent)) It begins with acceptance and continues through the audit Leads into detailed audit plan
141
What drives the detailed audit plan?
The risk assessment procedures that identified RMM
142
What are two types of internal control deficiencies?
Design deficiency (control unable to meet objective) Operational deficiency (control not working as designed)
143
What are two internal control deficiency categories and their definitions?
Material weakness - reasonable possibility of material misstatement to F/S will not be prevented or detected-and-corrected on timely basis Significant deficiency - issue les severe than M/W, but important enough to merit governance’s attention.
144
What are an auditors 4 responses to inadequate communication from governance?
Modify opinion for scope limitation Consult auditor’s legal counsel Communicate to appropriate third parties or government agencies Withdraw from engagement
145
The SQCS require an accounting firm to establish QC systems that provide what two things?
Provide reasonable assurance of compliance w/ legal and ethical requirements Provide reasonable assurance that reports share proper opinions
146
What acronym contains the 6 required elements of QC, and what are they?
HEAL ME QC Human Resources (proper staffing of capabilities and competencies) Ethical requirements (compliance with) Acceptance & continuance (engaging with clients with integrity) Leadership (quality “tone at the top”) Monitoring (sufficient monitoring) Engagement performance (proper supervision, review, and performance)
147
The PCAOB enforces SOX Title III Section 303 by which type of proceedings?
Civil proceedings
148
PCAOB Rule 3523 permits a CPA to provide tax services to a person with oversight responsibility of an issuer audit client in what 3 exception circumstances?
1) Person is only a board director 2) Audit client is an affiliate to consolidated F/S whose own F/S is immaterial to consol. F/S 3) Person is in that role due to recent employment change (hire, promote, etc)
149
When a new audit manager comes from an audit client mgmt, when can the new audit manager participate in audit engagement involving old company under SAS?
The audit manager can participate on audits that are ACCEPTED and whose AUDIT PERIOD both occur AFTER completed DISASSOCIATION from the client (AICPA CPC prohibits simultaneous employment)
150
What are 4 sections and their content of SOX Title IV “Enhanced Conflict of Interest Provisions?”
Section 402 - Issuers cannot extend personal loans to executives or directors Section 403 - Disclosures from principal stockholders (>10%) required Section 404 - Annual report on I/C required Section 406 - Disclosure about senior mgmt Code of Ethics policy
151
What types of engagements are independence of CPA required to be assessed?
Attestation engagements (compilation and up)
152
Suppose during a new audit engagement the successor auditor discovers need for substantial revisions to PY F/S. How should the successor resolve these issues?
Talk to mgmt and request a meeting between all three parties (successor, mgmt, predecessor) to come to understanding and resolve issues
153
QC policies and procedures for Engagement Performance (and supervision) is assumed to include what procedure?
Critical review of judgements exercised at every level of supervision
154
What are the 9 specifically completely prohibited non-audit services under SOX?
1) Bookkeeping 2) Financial information system design and implementation 3) Appraisal and valuation services 4) Actuarial services 5) Internal Audit outsourcing 6) Mgmt and HR functions 7) Investment related services 8) Legal and expert services unrelated to audit 9) Anything prohibit later by PCAOB
155
Who initiates communications with predecessor auditors?
The successor auditor (with client approval)
156
What methods are allowable for an auditor to communicate with management about fraud or noncompliance?
Oral or written If oral, must document in WP’s
157
What is the timing requirement for auditor communications with governance?
When it is timely / as soon as practical
158
What is one basic required communication of auditors to management & governance?
Auditor responsibilities (opinion to financial statements)
159
According to GAAS, when can an auditor review interim F/S? (3 requirements)
1) When the latest annual F/S have been audited 2) Auditor was engaged for either the latest F/S or CY F/S 3) Interim F/S use same framework as annual F/S
160
The AICPA CPC defines attest engagements as what?
An engagement that require independence to be assessed
161
What is a firm restricted from doing when in violation of the PCAOB or SEC?
Auditor cannot issue the audit report
162
What are 5 ethical principles under GAGAS?
Public interest Integrity Objectivity Proper use of gov't info and resources Professional behavior