Big4GuyWelcome to Big4Guy.com. Big4Guy is an online resource where I will share with you the latest news, insights, knowledge and some experiences as a Big 4 consultant. We will discuss some of the important issues which organisations are facing today in the areas of information security, security and controls in SAP R/3, Oracle Applications, J.D.Edwards, Peoplesoft and various other ERP's. You will also find information on latest complaince regulations like Sarbanes Oxley, Basel II and so on. Big4guy will also attempt to provide valuable resources for individuals interested in examinations the CISA, CISM, CISSP, PMP and various other security certifications considered essential for entry in any Big 4 accounting, auditing and consulting firms. You are invited to post your comments and viewpoints to posts here. I sincerely hope this online journal will be useful to everyone from a budding student to a professional in the accounting, auditing, management and consultancy professions.
|
Over the last few months, I have written about materiality and how it is important from a SOX perpective. Since the inception of AS5, materiality questions become all the more important. Organisations which have multiple locations, subsidaries may find it beneficial to consider materiality not only at the SEC reporting level, but also use thier own judgement to consider what is material and significant to their own business. How does then one assess materiality. A simple way of doing this is to look at quantitative and qualitative aspect at the component level.
Management should look at assume that an individual component like a location or subsidiary is material and then look at how any deficiencies should be remediated. Obviously, the amount of time and effort spent by management on aggregated deficiencies will always be more, but it will help management to look at individual components more closely. Once deficiencies are identified at the component level, management can then decide how these impact the overall SOX environment and whether any remediatory measures need to be taken. One thing is clear the overall SOX game has reached a maturity level. SOX is not just complying with regulations but looking at how an organization can better their controls. The more effort management takes for enhancing controls, the more benefits it will reap in the long run.
Related Posts
Program Development Controls ITGC
Pervasive ITGC Controls
Significant Spreadsheets for SOX Scoping
How to Make an Internal Audit Plan
No Comments for this post yet...
| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
|---|---|---|---|---|---|---|
| << < | > >> | |||||
| 1 | ||||||
| 2 | 3 | 4 | 5 | 6 | 7 | 8 |
| 9 | 10 | 11 | 12 | 13 | 14 | 15 |
| 16 | 17 | 18 | 19 | 20 | 21 | 22 |
| 23 | 24 | 25 | 26 | 27 | 28 | 29 |
| 30 | ||||||