{"product_id":"how-to-comply-with-sarbanesoxley-section-404-9780470169308","title":"How to Comply with SarbanesOxley Section 404","description":"\u003cb\u003eBook Synopsis\u003c\/b\u003e\u003cbr\u003eNow fully revised and updated, the \u003ci\u003eThird Edition\u003c\/i\u003e of \u003ci\u003eHow to Comply with Sarbanes-Oxley Section 404: Assessing the Effectiveness of Internal Control\u003c\/i\u003e is the perfect starting point for companies with no previous SOX experience. Packed with practice aids including forms, checklists, illustrations, diagrams, and tables, the new edition leads auditing professionals through every step of the audit processes associated with Section 404 compliance.\u003cbr\u003e\u003cbr\u003e\u003cb\u003eTable of Contents\u003c\/b\u003e\u003cbr\u003ePreface.  \u003cp\u003eAcknowledgments.\u003c\/p\u003e \u003cp\u003eChapter 1. The Evaluation Approach.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eManagement’s Evaluation of Internal Control.\u003c\/p\u003e \u003cp\u003eOverview of the Evaluation Process.\u003c\/p\u003e \u003cp\u003eRisk-Based Judgments.\u003c\/p\u003e \u003cp\u003eWhy Understanding Risk is Important.\u003c\/p\u003e \u003cp\u003eA Risk-Based, Top-Down Evaluation Approach.\u003c\/p\u003e \u003cp\u003eIdentification of Misstatement Risk.\u003c\/p\u003e \u003cp\u003eAssessment of Misstatement Risk.\u003c\/p\u003e \u003cp\u003eThe Likelihood of Control Failure.\u003c\/p\u003e \u003cp\u003eA \"Top-Down\" Approach to Identifying Relevant Controls.\u003c\/p\u003e \u003cp\u003eThe Independent Auditor's Reporting Responsibilities.\u003c\/p\u003e \u003cp\u003eOverall Objective of the Auditor's Engagement.\u003c\/p\u003e \u003cp\u003eUse of Work of Internal Auditors and Others.\u003c\/p\u003e \u003cp\u003eWorking with the Independent Auditors.\u003c\/p\u003e \u003cp\u003eChapter 2. Internal Control Criteria.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eThe Need for Control Criteria.\u003c\/p\u003e \u003cp\u003eThe COSO Internal Control Integrated Framework.\u003c\/p\u003e \u003cp\u003eKey Characteristics of the COSO Framework.\u003c\/p\u003e \u003cp\u003eBy Way of Analogy.\u003c\/p\u003e \u003cp\u003eFive Components of Internal Control.\u003c\/p\u003e \u003cp\u003eThe Control Environment.\u003c\/p\u003e \u003cp\u003eRisk Assessment.\u003c\/p\u003e \u003cp\u003eControl Activities.\u003c\/p\u003e \u003cp\u003eInformation and Communication.\u003c\/p\u003e \u003cp\u003eMonitoring.\u003c\/p\u003e \u003cp\u003eInternal Control for Small Businesses.\u003c\/p\u003e \u003cp\u003eControls Over Information Technology Systems.\u003c\/p\u003e \u003cp\u003eCOSO Guidance.\u003c\/p\u003e \u003cp\u003eThe COBIT Framework.\u003c\/p\u003e \u003cp\u003eChapter 3. Project Scoping.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eIntroduction.\u003c\/p\u003e \u003cp\u003eOne Size Does Not Fit All.\u003c\/p\u003e \u003cp\u003eEntity-Level Controls.\u003c\/p\u003e \u003cp\u003eApplying the Top-Down, Risk Based Approach.\u003c\/p\u003e \u003cp\u003eCorporate Culture.\u003c\/p\u003e \u003cp\u003ePersonnel Policies.\u003c\/p\u003e \u003cp\u003eIT General Controls.\u003c\/p\u003e \u003cp\u003eRisk Identification.\u003c\/p\u003e \u003cp\u003eMonitoring.\u003c\/p\u003e \u003cp\u003eAnti-Fraud Programs and Controls.\u003c\/p\u003e \u003cp\u003ePeriod-End Financial Reporting Processes.\u003c\/p\u003e \u003cp\u003eIdentifying Significant Activity-Level Control Objectives.\u003c\/p\u003e \u003cp\u003eAppendix A. Action Plan: Identifying Significant Control Objectives.\u003c\/p\u003e \u003cp\u003eAppendix B.Example Control Objectives.\u003c\/p\u003e \u003cp\u003eChapter 4. Project Planning.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eThe Objective Of Planning.\u003c\/p\u003e \u003cp\u003eInformation Gathering For Decision Making.\u003c\/p\u003e \u003cp\u003eOrganize Your Project According to Business Process Activities.\u003c\/p\u003e \u003cp\u003eAreas of Focus.\u003c\/p\u003e \u003cp\u003eDefining Internal Control Deficiencies.\u003c\/p\u003e \u003cp\u003eProject Scope and Existing Efforts to Assess Internal Control Effectiveness.\u003c\/p\u003e \u003cp\u003eOther Scope Considerations.\u003c\/p\u003e \u003cp\u003eInformation Sources.\u003c\/p\u003e \u003cp\u003eSEC Form 10K.\u003c\/p\u003e \u003cp\u003eOther Information Sources.\u003c\/p\u003e \u003cp\u003eInquiries.\u003c\/p\u003e \u003cp\u003eAdditional Guidance.\u003c\/p\u003e \u003cp\u003eStructuring The Project Team.\u003c\/p\u003e \u003cp\u003eEstablishing Responsibilities and Lines of Reporting.\u003c\/p\u003e \u003cp\u003eProject Team Members.\u003c\/p\u003e \u003cp\u003eCoordinating With The Independent Auditors.\u003c\/p\u003e \u003cp\u003eReach Consensus on Planning Matters.\u003c\/p\u003e \u003cp\u003eDocumenting Your Planning Decisions.\u003c\/p\u003e \u003cp\u003eAppendix 4A. Action Plan: Project Planning.\u003c\/p\u003e \u003cp\u003eAppendix 4B. Summary of Planning Questions.\u003c\/p\u003e \u003cp\u003eChapter 5. Documentation of Internal Controls.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eThe Importance of Documentation.\u003c\/p\u003e \u003cp\u003eAssessing The Adequacy Of Existing Documentation.\u003c\/p\u003e \u003cp\u003eWhat Should Be Documented.\u003c\/p\u003e \u003cp\u003eHow Much to Document.\u003c\/p\u003e \u003cp\u003eDocumentation Of Entity-Level Control Policies And Procedures.\u003c\/p\u003e \u003cp\u003eCorporate Governance Documents.\u003c\/p\u003e \u003cp\u003eCode of Conduct.\u003c\/p\u003e \u003cp\u003eOther Documentation.\u003c\/p\u003e \u003cp\u003eDocumenting Activity-Level Controls.\u003c\/p\u003e \u003cp\u003eDetermine the Controls to Be Documented.\u003c\/p\u003e \u003cp\u003eHow to Design Internal Control Documentation.\u003c\/p\u003e \u003cp\u003eFlowcharting.\u003c\/p\u003e \u003cp\u003eNarratives.\u003c\/p\u003e \u003cp\u003eMatrixes.\u003c\/p\u003e \u003cp\u003eSarbanes-Oxley Automated Compliance Tools.\u003c\/p\u003e \u003cp\u003eFunctions of an Automated Sarbanes-Oxley Tool.\u003c\/p\u003e \u003cp\u003eImplementation Is Critical.\u003c\/p\u003e \u003cp\u003eAssessing the Control Warehouse Function.\u003c\/p\u003e \u003cp\u003eManaging the Testing of Controls.\u003c\/p\u003e \u003cp\u003eAutomated Control Procedures.\u003c\/p\u003e \u003cp\u003eThe Value of an Automated Compliance Tool.\u003c\/p\u003e \u003cp\u003eCoordinating With The Independent Auditors.\u003c\/p\u003e \u003cp\u003eAppendix 5A. Action Plan: Documentation.\u003c\/p\u003e \u003cp\u003eAppendix 5B. Linkage of Significant Control Objectives to Example Control Policies and Procedures.\u003c\/p\u003e \u003cp\u003eNote.\u003c\/p\u003e \u003cp\u003eChapter 6. Testing and Evaluating Entity-Level Controls.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eOverall Objective Of Testing Entity-Level Controls.\u003c\/p\u003e \u003cp\u003eRelationship between Entity-Level and Application-Level Controls.\u003c\/p\u003e \u003cp\u003eDesign Effectiveness versus Operational Effectiveness.\u003c\/p\u003e \u003cp\u003eTesting Techniques.\u003c\/p\u003e \u003cp\u003eThe Nature of Available Evidence.\u003c\/p\u003e \u003cp\u003eSurvey and Inquiries of Employees.\u003c\/p\u003e \u003cp\u003eInquiries of Management.\u003c\/p\u003e \u003cp\u003eIT General Controls.\u003c\/p\u003e \u003cp\u003eReading and Assessment of Key Documents.\u003c\/p\u003e \u003cp\u003eObservation of Processes.\u003c\/p\u003e \u003cp\u003eMonitoring.\u003c\/p\u003e \u003cp\u003eEvaluating The Effectiveness Of Entity-Level Controls.\u003c\/p\u003e \u003cp\u003eMaking the Assessment.\u003c\/p\u003e \u003cp\u003eFive Levels of Reliability.\u003c\/p\u003e \u003cp\u003eResponding to Identified Weaknesses.\u003c\/p\u003e \u003cp\u003eDocumenting Test Results.\u003c\/p\u003e \u003cp\u003eCoordinating With The Independent Auditors.\u003c\/p\u003e \u003cp\u003eAppendix 6A. Action Plan: Testing and Evaluating Entity-Level Controls.\u003c\/p\u003e \u003cp\u003eAppendix 6B. Survey Tools.\u003c\/p\u003e \u003cp\u003eExample Letter To Employees In Advance Of Employee Survey.\u003c\/p\u003e \u003cp\u003eNotes.\u003c\/p\u003e \u003cp\u003eExample Employee Survey Of Corporate Culture And Personnel Policies.\u003c\/p\u003e \u003cp\u003ePurpose of the Survey.\u003c\/p\u003e \u003cp\u003eConfidentiality.\u003c\/p\u003e \u003cp\u003eInstructions.\u003c\/p\u003e \u003cp\u003eNotes.\u003c\/p\u003e \u003cp\u003eEvaluation Of Employee Survey Results.\u003c\/p\u003e \u003cp\u003eEvaluating Results.\u003c\/p\u003e \u003cp\u003eAppendix 6C. Example Inquiries of Management Regarding Entity-Level Controls.\u003c\/p\u003e \u003cp\u003eInstructions For Use.\u003c\/p\u003e \u003cp\u003eChapter 7. Testing and Evaluating Activity-Level Controls.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eIntroduction.\u003c\/p\u003e \u003cp\u003eConfirm Your Understanding Of The Design Of Controls.\u003c\/p\u003e \u003cp\u003eWhat’s a Walkthrough?\u003c\/p\u003e \u003cp\u003eSuggestions for Performing a Walkthrough.\u003c\/p\u003e \u003cp\u003eAssessing The Effectiveness Of Design.\u003c\/p\u003e \u003cp\u003eFinancial Statement Assertions and Controls.\u003c\/p\u003e \u003cp\u003eInformation-Processing Streams.\u003c\/p\u003e \u003cp\u003eOperating Effectiveness.\u003c\/p\u003e \u003cp\u003eTest Design Considerations.\u003c\/p\u003e \u003cp\u003eA Risk-Based Approach to Designing Tests.\u003c\/p\u003e \u003cp\u003eSample Sizes and Extent of Tests.\u003c\/p\u003e \u003cp\u003eTypes of Tests.\u003c\/p\u003e \u003cp\u003eEvaluating Test Results.\u003c\/p\u003e \u003cp\u003eDocumentation Of Test Procedures And Results.\u003c\/p\u003e \u003cp\u003eCoordinating With The Independent Auditors.\u003c\/p\u003e \u003cp\u003eAppendix 7A. Action Plan: Documentation.\u003c\/p\u003e \u003cp\u003eAppendix 7B. Example Inquiries.\u003c\/p\u003e \u003cp\u003eChapter 8. Evaluating Control Deficiencies and Reporting on Internal Control Effectiveness.\u003c\/p\u003e \u003cp\u003eChapter Summary.\u003c\/p\u003e \u003cp\u003eControl Deficiencies.\u003c\/p\u003e \u003cp\u003eEvaluating Control Deficiencies.\u003c\/p\u003e \u003cp\u003eAssessing the Likelihood and Significance of Misstatement.\u003c\/p\u003e \u003cp\u003eDeficiencies that May be Material Weaknesses.\u003c\/p\u003e \u003cp\u003eCompensating Controls.\u003c\/p\u003e \u003cp\u003eThe \"Prudent Official Test\".\u003c\/p\u003e \u003cp\u003eAnnual and Quarterly Reporting Requirements.\u003c\/p\u003e \u003cp\u003eManagement's Report When a Material Weakness Exists at Year-End.\u003c\/p\u003e \u003cp\u003e\"As Of\" Reporting Implications.\u003c\/p\u003e \u003cp\u003eExpanded Reporting On Management's Responsibilities For Internal Control.\u003c\/p\u003e \u003cp\u003eResponsibility for Financial Reporting.\u003c\/p\u003e \u003cp\u003eCoordinating With The Independent Auditors And Legal Counsel.\u003c\/p\u003e \u003cp\u003eIndependent Auditors.\u003c\/p\u003e \u003cp\u003eLegal Counsel.\u003c\/p\u003e \u003cp\u003eAppendix 8A. Action Plan: Reporting.\u003c\/p\u003e \u003cp\u003e2. Prepare Required Report.\u003c\/p\u003e \u003cp\u003eIndex.\u003c\/p\u003e","brand":"John Wiley \u0026 Sons Inc","offers":[{"title":"Default Title","offer_id":49402297778519,"sku":"9780470169308","price":76.5,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0817\/1739\/5799\/files\/9780470169308.jpg?v=1730479985","url":"https:\/\/bookcurl.com\/products\/how-to-comply-with-sarbanesoxley-section-404-9780470169308","provider":"Book Curl","version":"1.0","type":"link"}