SlideShare a Scribd company logo
1 of 11
Winds of Change
Internal Financial Controls - The Companies Act, 2013
Accounting | Audit | Advisory
Contents
• Background to Internal Controls
• IFC – The Companies Act, 2013
• The Roadmap
• COSO Framework
• Controls landscape
• Case studies
• Key takeaways
Accounting | Audit | Advisory
Background to Internal Controls
Strong Internal
Controls
Effective
Reporting
Ethics and
Values
Customer
Satisfaction
Profitable
Growth
Profitable growth for a business is defined by the effective existence
of customer satisfaction, enviable ethics and values, effective
management reporting and a strong internal control system.
Global Regulatory Framework on Internal Controls
The SOX Act, 2002 is an exhaustive legislation applicable to all
Securities and Exchange Commission (SEC) registrants making it
mandatory to comply with the requirements on internal controls over
financial reporting. Sarbanes Oxley was enacted as a reaction to a
number of major corporate and accounting scandals, including Enron,
and WorldCom. For more than a decade now, SOX has fortified the
corporate walls of US with a strong financial reporting framework.
Indian Scenario – The Companies Act 2013
The overall trend in the Indian legislative environment is that of aligning its laws and regulations to globally
acceptable standards. In this direction, the Companies Act of 2013 and the subsequent amendments enacted to
the Act ushers in a new era of governance and transparency for the Indian corporate sector. The recently enacted
provisions on Internal Financial Controls has made the role of an internal auditor that of an enabler of good
corporate governance.
Currently, apart from the requirement for an Internal Audit for those companies exceeding certain defined
thresholds, there is no other significant responsibility and accountability that is set on those charged with
governance. The new provisions not only set the responsibility on the board but also on the Audit Committee and
the Independent Auditors.
Accounting | Audit | Advisory
IFC - The Companies Act, 2013
Board of Directors
• Section 134
• Applicable to public listed
companies
• Directors’ report shall
include a statement on
IFC’s and its operating
effectiveness
Audit Committee
• Section 177
• Audit Committee may call
on Auditors to get a
understanding of the state
of IFC before submitting
their report to the Board
Independent
Auditors
• Section 143
• To report whether the
company has adequate
IFC system in place and
the operating effectiveness
of such controls.
The term ‘internal financial controls’ means the policies and procedures adopted by the company for
ensuring the orderly and efficient conduct of its business, including adherence to company’s policies,
the safeguarding of its assets, the prevention and detection of frauds and errors, the accuracy and
completeness of the accounting records, and the timely preparation of reliable financial information.
The Act has set increased responsibility and accountability on Board of Directors, Audit Committee,
Senior Management and Independent Auditors. The approach that should be adopted by Companies
should be that of a comprehensive risk management program – Enterprise Risk Management (ERM)
Applicability of
Internal Financial
Controls
Public listed
companies (Section
134)
Private Limited
Companies (Section
143)
The Companies Act,
2013 is silent on what
comprises Internal
Financial Control.
Therefore most
Companies look to a
established framework
such as the COSO for
guidelines.
Accounting | Audit | Advisory
The Roadmap
Assess
Develop
Implement
Monitor
Test
 Assess the current state of internal controls
 Embrace a widely acceptable framework or guidelines
 Set the right tone at the top i.e. those charged with governance
 Ascertain Organisational risks which have a financial impact
 Define the Control Objectives and Control Activities to mitigate the risk
 Ongoing continous monitoring of the functioning of controls
 Obtain independent assurance on the effectiveness of the internal controls
i.e. Independent Auditors
What is the roadmap to implementing IFC ? What should you be doing? Segregation of Duties
(SoD) requires more
than one person to
complete a task.
SoD is an internal
control aimed at
preventing fraud and
errors .
Delegation of
authority refers to
assignment of
responsibility of to
another person.
Person who delegated
however remains
accountable for the
outcome.
Accounting | Audit | Advisory
COSO Framework Principles
Control
Environment
• Demonstrates
commitment to
integrity and
ethical values
• Exercises
oversight
responsibility
• Establishes
structure,
authority and
responsibility
• Demonstrates
commitment to
competence
• Enforces
accountability
Risk Assessment
• Specifies suitable
objectives
• Identifies and
analyses risk
• Assesses fraud
risk
• Identifies and
analyses
significant
change
Control Activities
• Selects and
develops control
activities
• Selects and
develops general
controls over
technology
• Deploys through
policies and
procedures
Information and
Communication
• Uses relevant
and quality
information
• Communicates
internally
• Communicates
externally
Monitoring
Activities
• Conducts
ongoing and/or
separate
evaluations
• Evaluates and
communicates
deficiencies
COSO is the most widely accepted risk framework in the world. It embodies all the
requirements of a organisational risk management principles.
Represents Entity Level Controls
Accounting | Audit | Advisory
Information Technology Controls
General IT Controls:
Are those which are designed to ensure that the financial information that is generated from a company's application systems can be relied upon. E.g.
Physical access controls, software version controls etc..,
Application Controls:
Application controls are embedded within software programs to prevent or detect unauthorized transactions and allow the authorization and processing
of transactions.
What are Internal Controls
Entity Level Objectives / Controls:
Broad level objectives defined at a organisation level which
may include the tone at the top, operating style and ethical
values. They are internal controls that help ensure that
management directives pertaining to the entire entity are
carried out. Entity-level controls have a pervasive influence
throughout an organization. If they are weak, inadequate, or
nonexistent, they can produce material weaknesses relating to
an audit of internal control and material misstatements in the
financial statements of the company
Preventive Controls:
Preventive controls are designed
to avert problems rather than
identify them. Some examples
include the use of passwords to
gain access to computer
application systems, or required
approval for all purchase orders
over a certain rupee threshold.
Detective Controls:
Detective controls are meant to
identify errors or irregularities
after the fact. These may take the
form of reviews, reconciliations,
and analyses.
Manual Controls:
Manual controls are carried out
by people, as opposed to
automated controls (i.e.,
application controls) that take
place without direct human
intervention.
E.g. Manually reconciling a bank
statement or a manager
reviewing sales based on
budgeted amounts are examples
of manual controls.
Automated Controls:
Application controls are
embedded within software
programs to prevent or detect
unauthorized transactions and
allow the authorization and
processing of transactions.
E.g. Automated controls help
ensure a customer number is
valid, all required data is entered
for a PO and debits equal credits.
Transaction Level Controls:
Represent more basic level objectives and controls which are
defined at a process or transaction level
Accounting | Audit | Advisory
Case Studies
Xerox
• Overstated equipment
revenues
• Accounting function
was just another
revenue source and
profit opportunity
• KPMG, its auditors
for 30 years were also
charged
• Fined $10 million by
the SEC
Satyam
• Overstated cash
balances
• Inflated sales by way
of recording fictitious
sales
• Internal auditors were
hand-in-glove with the
perpetrators
• PWC the statutory
auditors were
convicted of
negligence
WorldCom
• Reported operating
expenses as long-
term capital
investments
• Classified cash
reserves as sales
revenue
• Deficient controls;
autocratic
management;
inadequate
understanding of the
functioning by BOD
and AC
• Poor quality
independent audits
Enron
• Revenue recognition
• Mark-to-market
principles of
accounting was
exploited
• Off- balance sheet
items created to
misguide investors
• Lack of auditor
independence
• Unqualified audit
committee
Accounting | Audit | Advisory
Key Takeaway
Thank You
1. Clearly defined authority, responsibility and accountability ?
2. Periodical assessment of controls
3. Policies and procedures for all functions; easy to understand; updated
4. Up-skilling employees to meet evolving needs
5. Consider fraud risks; safeguarding of assets as part of the risk management
6. In sync with changes to regulatory environment and SOX, Companies Act, 2013, JOBS Act;
Changes to COSO Framework.
7. To unlock value, risk management should be seen as a comprehensive evaluation and not
driven by checklist.
Accounting | Audit | Advisory
About Merican Consultants
Diverse
Offerings
Client
Oriented
Efficient
Team
Cost
Effective
Solutions
Merican Consultants Private Limited is a firm of Chartered
Accountants based in Bangalore and provides financial,
accounting, tax and risk advisory services to small and
medium sized enterprises. With a consolidated work
experience of over 25 years, advising clients on diverse
issues, we act as a integrated service provider for all
finance, accounting, tax and audit related needs of the
clients.
Corporate Finance & Investment Banking – Fund Raise
Risk Advisory Services – Internal Audit
Business Establishment – Incorporation of Companies
CFO Assist Services – Outsourced Accounting
Assurance Services – Audit and Attestation
Taxation services
Accounting | Audit | Advisory
Team
Tarun Kumar Mallappa
Principal Consultant
Tel: +91 80 4174 0023
Mobile: +91 99169 24919
Rohan Arinaya
Principal Consultant
Tel: +91 80 4174 0023
Mobile: +91 99860 70783
Sandeep Arinaya
Principal Consultant
Tel: +91 80 4174 0023
Mobile: +91 98867 85439
Senthil Kumar
Principal Consultant
Tel: +91 80 4174 0023
Mobile: +91 88614 33999
Sunil Louis
Principal Consultant
Tel: +91 80 4174 0023
Mobile: +91 96633 94493
Merican Consultants Private Limited
12/62, Off Reservoir Street
Basavanagudi
Bangalore 560 004
Ph: 080-41740023

More Related Content

What's hot

Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...
Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...
Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...
Taufir Alam
 

What's hot (20)

Internal Audit COSO Framework
Internal Audit COSO FrameworkInternal Audit COSO Framework
Internal Audit COSO Framework
 
Internal Control Over Financing
Internal Control Over FinancingInternal Control Over Financing
Internal Control Over Financing
 
Internal Financial Controls over Financial Reporting
Internal Financial Controls over Financial ReportingInternal Financial Controls over Financial Reporting
Internal Financial Controls over Financial Reporting
 
Audit preparation
Audit preparation  Audit preparation
Audit preparation
 
Internal Audit Reporting
Internal Audit ReportingInternal Audit Reporting
Internal Audit Reporting
 
Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...
Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...
Audit of Internal Financial Control over Financial Reporting (IFCR) A complet...
 
Internal Controls over Financial Reporting in the Indian Context
Internal Controls over Financial Reporting in the Indian Context Internal Controls over Financial Reporting in the Indian Context
Internal Controls over Financial Reporting in the Indian Context
 
Chapter 11, Tests of Controls
Chapter 11, Tests of ControlsChapter 11, Tests of Controls
Chapter 11, Tests of Controls
 
SOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleySOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-Oxley
 
The Role of Internal Audit
The Role of Internal AuditThe Role of Internal Audit
The Role of Internal Audit
 
Control and audit of information System (hendri eka saputra)
Control and audit of information System (hendri eka saputra)Control and audit of information System (hendri eka saputra)
Control and audit of information System (hendri eka saputra)
 
Sox Compliance Presentation
Sox Compliance PresentationSox Compliance Presentation
Sox Compliance Presentation
 
Internal Control and Compliance.
Internal Control and Compliance.Internal Control and Compliance.
Internal Control and Compliance.
 
Public Service- Government Auditing.
Public Service- Government Auditing.Public Service- Government Auditing.
Public Service- Government Auditing.
 
Internal Audit And Internal Control Presentation Leo Wachira
Internal Audit And Internal Control Presentation   Leo WachiraInternal Audit And Internal Control Presentation   Leo Wachira
Internal Audit And Internal Control Presentation Leo Wachira
 
Internal audit ppt
Internal audit pptInternal audit ppt
Internal audit ppt
 
Internal audit ppt
Internal audit  pptInternal audit  ppt
Internal audit ppt
 
Financial Statements Audit
Financial Statements AuditFinancial Statements Audit
Financial Statements Audit
 
Auditing In Computer Environment Presentation
Auditing In Computer Environment PresentationAuditing In Computer Environment Presentation
Auditing In Computer Environment Presentation
 
Internal control & compliance of bank
Internal control & compliance of bankInternal control & compliance of bank
Internal control & compliance of bank
 

Similar to Internal Financial Controls

Spire Brief - Risk Consulting
Spire Brief - Risk ConsultingSpire Brief - Risk Consulting
Spire Brief - Risk Consulting
Prashant Jain
 
IFC Knowldge Sharing 23.02.20 (1).pptx
IFC Knowldge Sharing 23.02.20 (1).pptxIFC Knowldge Sharing 23.02.20 (1).pptx
IFC Knowldge Sharing 23.02.20 (1).pptx
SejalJain178980
 
Designing Effective Financial Controls
Designing Effective Financial ControlsDesigning Effective Financial Controls
Designing Effective Financial Controls
Stephen G. Lynch
 
Designing Effective Financial Controls - Leveraging the Internal Control Fram...
Designing Effective Financial Controls - Leveraging the Internal Control Fram...Designing Effective Financial Controls - Leveraging the Internal Control Fram...
Designing Effective Financial Controls - Leveraging the Internal Control Fram...
Stephen G. Lynch
 
Internal control system
Internal control systemInternal control system
Internal control system
Madiha Hassan
 
Internal Audit Of The California Department Of Public...
Internal Audit Of The California Department Of Public...Internal Audit Of The California Department Of Public...
Internal Audit Of The California Department Of Public...
Tina Jordan
 
Assessing risks and internal controls training
Assessing  risks and internal controls   trainingAssessing  risks and internal controls   training
Assessing risks and internal controls training
shifataraislam
 
ISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docxISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docx
priestmanmable
 

Similar to Internal Financial Controls (20)

Spire Brief - Risk Consulting
Spire Brief - Risk ConsultingSpire Brief - Risk Consulting
Spire Brief - Risk Consulting
 
IFC Knowldge Sharing 23.02.20 (1).pptx
IFC Knowldge Sharing 23.02.20 (1).pptxIFC Knowldge Sharing 23.02.20 (1).pptx
IFC Knowldge Sharing 23.02.20 (1).pptx
 
Designing Effective Financial Controls
Designing Effective Financial ControlsDesigning Effective Financial Controls
Designing Effective Financial Controls
 
Lecture 17 sas framework internal control - james a. hall book chapter 3
Lecture 17  sas framework internal control - james a. hall book chapter 3Lecture 17  sas framework internal control - james a. hall book chapter 3
Lecture 17 sas framework internal control - james a. hall book chapter 3
 
Introduction to COSO 2013 - Corporate Compliance Seminars
Introduction to COSO 2013 - Corporate Compliance SeminarsIntroduction to COSO 2013 - Corporate Compliance Seminars
Introduction to COSO 2013 - Corporate Compliance Seminars
 
IFC Dr SkGupta pptx NIRC Internal financial control
IFC Dr SkGupta pptx NIRC Internal financial controlIFC Dr SkGupta pptx NIRC Internal financial control
IFC Dr SkGupta pptx NIRC Internal financial control
 
Designing Effective Financial Controls - Leveraging the Internal Control Fram...
Designing Effective Financial Controls - Leveraging the Internal Control Fram...Designing Effective Financial Controls - Leveraging the Internal Control Fram...
Designing Effective Financial Controls - Leveraging the Internal Control Fram...
 
Internal auditing for “one & all” (second edition)
Internal auditing for “one & all” (second edition)Internal auditing for “one & all” (second edition)
Internal auditing for “one & all” (second edition)
 
Internal control system
Internal control systemInternal control system
Internal control system
 
Internal control system
Internal control systemInternal control system
Internal control system
 
Information system control and audit
Information system control and auditInformation system control and audit
Information system control and audit
 
WIRC-IFC.pdf
WIRC-IFC.pdfWIRC-IFC.pdf
WIRC-IFC.pdf
 
Internal Audit Of The California Department Of Public...
Internal Audit Of The California Department Of Public...Internal Audit Of The California Department Of Public...
Internal Audit Of The California Department Of Public...
 
Corporate governance good-see
Corporate governance good-seeCorporate governance good-see
Corporate governance good-see
 
Assessing risks and internal controls training
Assessing  risks and internal controls   trainingAssessing  risks and internal controls   training
Assessing risks and internal controls training
 
Corporate Governance Rating-UNIT5.pptx
Corporate Governance Rating-UNIT5.pptxCorporate Governance Rating-UNIT5.pptx
Corporate Governance Rating-UNIT5.pptx
 
Chapter 1 auditing and internal control
Chapter 1 auditing and internal controlChapter 1 auditing and internal control
Chapter 1 auditing and internal control
 
Chapter 1 auditing and internal control
Chapter 1 auditing and internal controlChapter 1 auditing and internal control
Chapter 1 auditing and internal control
 
Internal controls maturity and SME corporate governanance
Internal controls maturity and SME corporate governananceInternal controls maturity and SME corporate governanance
Internal controls maturity and SME corporate governanance
 
ISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docxISO 19001ISO 19001Student’s NameUniversity Name.docx
ISO 19001ISO 19001Student’s NameUniversity Name.docx
 

Recently uploaded

FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
dollysharma2066
 
0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf
Renandantas16
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
amitlee9823
 
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
lizamodels9
 
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
dollysharma2066
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Dipal Arora
 

Recently uploaded (20)

RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
 
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
 
0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf0183760ssssssssssssssssssssssssssss00101011 (27).pdf
0183760ssssssssssssssssssssssssssss00101011 (27).pdf
 
M.C Lodges -- Guest House in Jhang.
M.C Lodges --  Guest House in Jhang.M.C Lodges --  Guest House in Jhang.
M.C Lodges -- Guest House in Jhang.
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
 
Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...
 
Pharma Works Profile of Karan Communications
Pharma Works Profile of Karan CommunicationsPharma Works Profile of Karan Communications
Pharma Works Profile of Karan Communications
 
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfDr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
 
Call Girls in Gomti Nagar - 7388211116 - With room Service
Call Girls in Gomti Nagar - 7388211116  - With room ServiceCall Girls in Gomti Nagar - 7388211116  - With room Service
Call Girls in Gomti Nagar - 7388211116 - With room Service
 
John Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfJohn Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdf
 
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
 
A DAY IN THE LIFE OF A SALESMAN / WOMAN
A DAY IN THE LIFE OF A  SALESMAN / WOMANA DAY IN THE LIFE OF A  SALESMAN / WOMAN
A DAY IN THE LIFE OF A SALESMAN / WOMAN
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Century
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
 
Call Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine ServiceCall Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine Service
 
Cracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxCracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptx
 
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptxB.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
 
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Majnu Ka Tilla, Delhi Contact Us 8377877756
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
 

Internal Financial Controls

  • 1. Winds of Change Internal Financial Controls - The Companies Act, 2013
  • 2. Accounting | Audit | Advisory Contents • Background to Internal Controls • IFC – The Companies Act, 2013 • The Roadmap • COSO Framework • Controls landscape • Case studies • Key takeaways
  • 3. Accounting | Audit | Advisory Background to Internal Controls Strong Internal Controls Effective Reporting Ethics and Values Customer Satisfaction Profitable Growth Profitable growth for a business is defined by the effective existence of customer satisfaction, enviable ethics and values, effective management reporting and a strong internal control system. Global Regulatory Framework on Internal Controls The SOX Act, 2002 is an exhaustive legislation applicable to all Securities and Exchange Commission (SEC) registrants making it mandatory to comply with the requirements on internal controls over financial reporting. Sarbanes Oxley was enacted as a reaction to a number of major corporate and accounting scandals, including Enron, and WorldCom. For more than a decade now, SOX has fortified the corporate walls of US with a strong financial reporting framework. Indian Scenario – The Companies Act 2013 The overall trend in the Indian legislative environment is that of aligning its laws and regulations to globally acceptable standards. In this direction, the Companies Act of 2013 and the subsequent amendments enacted to the Act ushers in a new era of governance and transparency for the Indian corporate sector. The recently enacted provisions on Internal Financial Controls has made the role of an internal auditor that of an enabler of good corporate governance. Currently, apart from the requirement for an Internal Audit for those companies exceeding certain defined thresholds, there is no other significant responsibility and accountability that is set on those charged with governance. The new provisions not only set the responsibility on the board but also on the Audit Committee and the Independent Auditors.
  • 4. Accounting | Audit | Advisory IFC - The Companies Act, 2013 Board of Directors • Section 134 • Applicable to public listed companies • Directors’ report shall include a statement on IFC’s and its operating effectiveness Audit Committee • Section 177 • Audit Committee may call on Auditors to get a understanding of the state of IFC before submitting their report to the Board Independent Auditors • Section 143 • To report whether the company has adequate IFC system in place and the operating effectiveness of such controls. The term ‘internal financial controls’ means the policies and procedures adopted by the company for ensuring the orderly and efficient conduct of its business, including adherence to company’s policies, the safeguarding of its assets, the prevention and detection of frauds and errors, the accuracy and completeness of the accounting records, and the timely preparation of reliable financial information. The Act has set increased responsibility and accountability on Board of Directors, Audit Committee, Senior Management and Independent Auditors. The approach that should be adopted by Companies should be that of a comprehensive risk management program – Enterprise Risk Management (ERM) Applicability of Internal Financial Controls Public listed companies (Section 134) Private Limited Companies (Section 143) The Companies Act, 2013 is silent on what comprises Internal Financial Control. Therefore most Companies look to a established framework such as the COSO for guidelines.
  • 5. Accounting | Audit | Advisory The Roadmap Assess Develop Implement Monitor Test  Assess the current state of internal controls  Embrace a widely acceptable framework or guidelines  Set the right tone at the top i.e. those charged with governance  Ascertain Organisational risks which have a financial impact  Define the Control Objectives and Control Activities to mitigate the risk  Ongoing continous monitoring of the functioning of controls  Obtain independent assurance on the effectiveness of the internal controls i.e. Independent Auditors What is the roadmap to implementing IFC ? What should you be doing? Segregation of Duties (SoD) requires more than one person to complete a task. SoD is an internal control aimed at preventing fraud and errors . Delegation of authority refers to assignment of responsibility of to another person. Person who delegated however remains accountable for the outcome.
  • 6. Accounting | Audit | Advisory COSO Framework Principles Control Environment • Demonstrates commitment to integrity and ethical values • Exercises oversight responsibility • Establishes structure, authority and responsibility • Demonstrates commitment to competence • Enforces accountability Risk Assessment • Specifies suitable objectives • Identifies and analyses risk • Assesses fraud risk • Identifies and analyses significant change Control Activities • Selects and develops control activities • Selects and develops general controls over technology • Deploys through policies and procedures Information and Communication • Uses relevant and quality information • Communicates internally • Communicates externally Monitoring Activities • Conducts ongoing and/or separate evaluations • Evaluates and communicates deficiencies COSO is the most widely accepted risk framework in the world. It embodies all the requirements of a organisational risk management principles. Represents Entity Level Controls
  • 7. Accounting | Audit | Advisory Information Technology Controls General IT Controls: Are those which are designed to ensure that the financial information that is generated from a company's application systems can be relied upon. E.g. Physical access controls, software version controls etc.., Application Controls: Application controls are embedded within software programs to prevent or detect unauthorized transactions and allow the authorization and processing of transactions. What are Internal Controls Entity Level Objectives / Controls: Broad level objectives defined at a organisation level which may include the tone at the top, operating style and ethical values. They are internal controls that help ensure that management directives pertaining to the entire entity are carried out. Entity-level controls have a pervasive influence throughout an organization. If they are weak, inadequate, or nonexistent, they can produce material weaknesses relating to an audit of internal control and material misstatements in the financial statements of the company Preventive Controls: Preventive controls are designed to avert problems rather than identify them. Some examples include the use of passwords to gain access to computer application systems, or required approval for all purchase orders over a certain rupee threshold. Detective Controls: Detective controls are meant to identify errors or irregularities after the fact. These may take the form of reviews, reconciliations, and analyses. Manual Controls: Manual controls are carried out by people, as opposed to automated controls (i.e., application controls) that take place without direct human intervention. E.g. Manually reconciling a bank statement or a manager reviewing sales based on budgeted amounts are examples of manual controls. Automated Controls: Application controls are embedded within software programs to prevent or detect unauthorized transactions and allow the authorization and processing of transactions. E.g. Automated controls help ensure a customer number is valid, all required data is entered for a PO and debits equal credits. Transaction Level Controls: Represent more basic level objectives and controls which are defined at a process or transaction level
  • 8. Accounting | Audit | Advisory Case Studies Xerox • Overstated equipment revenues • Accounting function was just another revenue source and profit opportunity • KPMG, its auditors for 30 years were also charged • Fined $10 million by the SEC Satyam • Overstated cash balances • Inflated sales by way of recording fictitious sales • Internal auditors were hand-in-glove with the perpetrators • PWC the statutory auditors were convicted of negligence WorldCom • Reported operating expenses as long- term capital investments • Classified cash reserves as sales revenue • Deficient controls; autocratic management; inadequate understanding of the functioning by BOD and AC • Poor quality independent audits Enron • Revenue recognition • Mark-to-market principles of accounting was exploited • Off- balance sheet items created to misguide investors • Lack of auditor independence • Unqualified audit committee
  • 9. Accounting | Audit | Advisory Key Takeaway Thank You 1. Clearly defined authority, responsibility and accountability ? 2. Periodical assessment of controls 3. Policies and procedures for all functions; easy to understand; updated 4. Up-skilling employees to meet evolving needs 5. Consider fraud risks; safeguarding of assets as part of the risk management 6. In sync with changes to regulatory environment and SOX, Companies Act, 2013, JOBS Act; Changes to COSO Framework. 7. To unlock value, risk management should be seen as a comprehensive evaluation and not driven by checklist.
  • 10. Accounting | Audit | Advisory About Merican Consultants Diverse Offerings Client Oriented Efficient Team Cost Effective Solutions Merican Consultants Private Limited is a firm of Chartered Accountants based in Bangalore and provides financial, accounting, tax and risk advisory services to small and medium sized enterprises. With a consolidated work experience of over 25 years, advising clients on diverse issues, we act as a integrated service provider for all finance, accounting, tax and audit related needs of the clients. Corporate Finance & Investment Banking – Fund Raise Risk Advisory Services – Internal Audit Business Establishment – Incorporation of Companies CFO Assist Services – Outsourced Accounting Assurance Services – Audit and Attestation Taxation services
  • 11. Accounting | Audit | Advisory Team Tarun Kumar Mallappa Principal Consultant Tel: +91 80 4174 0023 Mobile: +91 99169 24919 Rohan Arinaya Principal Consultant Tel: +91 80 4174 0023 Mobile: +91 99860 70783 Sandeep Arinaya Principal Consultant Tel: +91 80 4174 0023 Mobile: +91 98867 85439 Senthil Kumar Principal Consultant Tel: +91 80 4174 0023 Mobile: +91 88614 33999 Sunil Louis Principal Consultant Tel: +91 80 4174 0023 Mobile: +91 96633 94493 Merican Consultants Private Limited 12/62, Off Reservoir Street Basavanagudi Bangalore 560 004 Ph: 080-41740023