Modul de formare-Managementul resurselor financiare - uefiscdi
Modul de formare-Managementul resurselor financiare - uefiscdi
Modul de formare-Managementul resurselor financiare - uefiscdi
- No tags were found...
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
3. Obtained for analysis: organizational structure, operating regulations, records of<br />
items, and written proceedings of the structure or activity audited, etc.;<br />
4. I<strong>de</strong>ntify responsibilities people;<br />
5. Study the information system of the audited structure;<br />
6. Perform analytical procedures of the audited structure or activity performance in or<strong>de</strong>r<br />
to analyze the risk and quality management (if it is one of the objectives of the mission);<br />
Procedure for i<strong>de</strong>ntification and risk analysis<br />
Purpose: The procedure aims to i<strong>de</strong>ntify specific risk structure or activity audited. Assessment<br />
of internal control within the structure or activity audited.<br />
Foundation: The quantification of risk is done for: the nature and specific activity or function<br />
audited; quality of internal control, severity of direct and indirect consequences of the risk; risk<br />
probability.<br />
Procedure: The auditors perform specific activities: 1. Make, based on the collected<br />
information, list of auditable activities, 2. For each auditable activity are i<strong>de</strong>ntified the<br />
elementary tasks 3. I<strong>de</strong>ntify risks for each elementary task 4. Specify criteria for risk assessment<br />
5. Assess the i<strong>de</strong>ntified risks; 6. Establish the audited objectives as a result of the i<strong>de</strong>ntified<br />
risks. 7. Indicate the specific <strong>de</strong>vices for each task (objectives, resources, information system),<br />
8. Prepare the Risk Analysis Table.<br />
Head of Internal Audit Department<br />
9. Organizes a meeting to review the audit objectives, risks and their assessment<br />
criteria. Where appropriate, he/she can or<strong>de</strong>r the reassessment of objectives and risks i<strong>de</strong>ntified;<br />
10. Approves the Risk Analysis Table.<br />
The Auditors<br />
11. Contain the Risk Analysis Table file in the internal audit mission.<br />
Table of risk analysis inclu<strong>de</strong> the following categories: Risk, Risk classification, Probability,<br />
impact, Consequence <strong>de</strong>scription, Existing policy, Classification of residual risk, Strategies<br />
nee<strong>de</strong>d.<br />
References<br />
Guidance on value for money (VFM) strategies and reporting, HEFCE, 1 August 2008<br />
Summary of common issues we find in our data audit work în institutions, HESES08: Higher<br />
Education Stu<strong>de</strong>nts Early Statistics Survey 2008-09 (HEFCE 2008/37), available at<br />
www.hefce.ac.uk un<strong>de</strong>r Publications. - Guidance on audit committees, october 2008.pdf<br />
HEFCE (2006), Mo<strong>de</strong>l Financial Memorandum between HEFCE and institutions.<br />
http://www.hefce.ac.uk/pubs/hefce/2006/06_24/<br />
HEFCE (2007) Funding higher education in England: How HEFCE allocates its funds.<br />
http://www.hefce.ac.uk/pubs/hefce/2007/07_20/<br />
Revised Turnbull Guidance October 2005.pdf<br />
OMFP number 946/2005 for the approval of the Internal control co<strong>de</strong>, including the<br />
management/internal control standards at public entities <strong>de</strong>veloped management control<br />
systems<br />
the Law on public internal audit number 672/2002<br />
OMFP number 38/2003 for approval of the Methodological Norms for applying the law<br />
on public internal audit<br />
OMFP number 1702/2005 for approval the Rules for the organization and pursuit of counselling<br />
activity conducted by internal auditors in public entities.<br />
58