COSO Flashcards
(8 cards)
3 Framework Objectives of COSO and Definitions
Operations - Effectiveness & efficiency of operations/Adequately safeguard against potential losses
Reporting - Reliability, timeliness, transparency
Compliance - Following laws & regulation
Components of Internal Control and Definitions
CRIME
Control Environment - Tone at top (ethics)
Risk Assessment - F/S misstated or fraud
Information and Communication - Fair, Accurate, Complete, Timely
Monitoring - Efficiencies of IC, report deficiencies
(Existing) Control Activities - to mitigate risk
*All 5 components and and 17 principles must be PRESENT and FUNCTIONING
Control Environment (CRIME)
EBOCA
- Ethics
- Board Independence
- Organizational Structure
- Competence (Hire, train, develop)
- Accountability
Risk Assessment (CRIME)
EAR
- Event ID
- Assess Risk
- Respond to risk
Information and Communication (CRIME)
FACT - Fair, Accurate, Complete, Timely
Between Internal and External
Axes of the COSO Cube
X-axis: ORC
Y-axis: CRIME
Z-axis: Entity, Division, Operating Unit, Function
*All 5 components and and 17 principles must be PRESENT and FUNCTIONING
Objectives of ERM
Strategic - High level goals designed to achieve mission
O
R
C
Components of ERM
IS EAR AIM (Has CRIME in it)
Internal Environment Setting Objectives Event ID Assessment of Risk Risk Response Activities (Control) Information and Communication Monitoring