Big4GuyWelcome to Big4Guy.com. Big4Guy is an online resource where I will share with you the latest news, insights, knowledge and some experiences as a Big 4 consultant. We will discuss some of the important issues which organisations are facing today in the areas of information security, security and controls in SAP R/3, Oracle Applications, J.D.Edwards, Peoplesoft and various other ERP's. You will also find information on latest complaince regulations like Sarbanes Oxley, Basel II and so on. Big4guy will also attempt to provide valuable resources for individuals interested in examinations the CISA, CISM, CISSP, PMP and various other security certifications considered essential for entry in any Big 4 accounting, auditing and consulting firms. You are invited to post your comments and viewpoints to posts here. I sincerely hope this online journal will be useful to everyone from a budding student to a professional in the accounting, auditing, management and consultancy professions.
|
Costs involved in Sarbanes Oxley Compliance have exceeded almost all companies expectations. Since SOX is an ongoing effort rather than a one time task, companies must now try and find out how to reduce and rationalize Sarbanes Oxley costs going forward. In year two, one of our clients approached us for a solution to reduce SOX costs. Now this is not an easy task. But the project threw up certain best practices an enterprise can adopt to reduce Sarbanes Oxley costs going forward.
1. Go in for a automated Sarbanes Oxley compliance software solution which can address lifecycle management and optimization challenges. Sarbanes Oxley Software compliance solutions, do reduce the costs in the long run.
2. Take the help of internal audit department in monitoring internal controls.
3. Establish responsibility on the process owners for maintaining the documentation for their processes uptodate. Process owners should be held accountable for all processes owned by them.
4. In line with the point number 3 above, process owners should sign-off internal control documentation as part of their duties.
5. As a measure to reduce costs, a process can be established whereby quarterly sign-offs for internal control documentation can be done as part of Section 302 certification.
6. Ensure strealined communication among various forums such as internal audit, external auditors, process owners, senior management etc. Lack of proper communication is the most common cause of increased SOX costs.
7. Finally, all said and done, management's assessment is evaluated by the external auditor and a report on internal controls is issued. It maskes sense to focus on what the external auditor requires. Cause the final sign-off will be from him.
>> More Sarbanes Oxley Basics
>> Preventive Vs. Detective Controls , >> Objectives of COSO Framework
No Comments for this post yet...
| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
|---|---|---|---|---|---|---|
| << < | > >> | |||||
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | 30 | 31 | |