12.07.2015 Views

acfe fraud prevention check-up - BKD

acfe fraud prevention check-up - BKD

acfe fraud prevention check-up - BKD

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

APPENDIX G: FRAUD DETECTION SCORECARDTo assess the strength of the organization’s <strong>fraud</strong> detection system, carefully assess each area below and score thearea, factor, or consideration as:Red: indicating that the area, factor, or consideration needs substantial strengthening andimprovement to bring <strong>fraud</strong> risk down to an acceptable level.Yellow: indicating that the area, factor, or consideration needs some strengthening andimprovement to bring <strong>fraud</strong> risk down to an acceptable level.Green: indicating that the area, factor, or consideration is strong and <strong>fraud</strong> risk has beenreduced — at least — to a minimally acceptable level.Each area, factor, or consideration that scores either red or yellow should have a note associated with it thatdescribes the action plan for bringing it to green on the next scorecard.Fraud Prevention Area, Factor, or Consideration Score NotesWe have integrated our <strong>fraud</strong> detection system with our <strong>fraud</strong> <strong>prevention</strong> system in acost-effective manner.Our <strong>fraud</strong> detection processes and techniques pervade all levels of responsibilitywithin our organization, from the board of directors and audit committee, tomanagers at all levels, to employees in all areas of operation.Our <strong>fraud</strong> detection policies include communicating to employees, vendors,and stakeholders that a strong <strong>fraud</strong> detection system is in place, but certaincritical aspects of these systems are not disclosed to maintain the effectivenessof hidden controls.We use mandatory vacation periods or job rotation assignments for employees in keyfinance and accounting control positions.We periodically reassess our risk assessment criteria as our organization grows andchanges to make sure we are aware of all possible types of <strong>fraud</strong> that may occur.Our <strong>fraud</strong> detection mechanisms place increased focus on areas in which we haveconcluded that preventive controls are weak or are not cost-effective.We focus our data analysis and continuous auditing efforts based on our assessmentof the types of <strong>fraud</strong> schemes to which organizations like ours (in our industry, orwith our lines of business) are susceptible.65

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!