Shared Flashcard Set

Details

Corporate Governance
Gleim SU 1
19
Accounting
Professional
07/03/2011

Additional Accounting Flashcards

 


 

Cards

Term

Enterprise Risk Management

(ERM)

Definition
A process, effected by an entity's board of directors, management, and other personnel, applied in strategy setting and across the enterprise, designed to identify potential events that may affect the entity, and manage risk to be within its risk appetite, to provide reasonable assurance regarding the achievement of entity objectives.
Term
Risk
Definition
The possiblity that an event will occur and adversely affect the achievement of objectives.
Term
Risk Management
Definition
Consists of: (1) Identifying potential events that may affect the entity, and (2) Managing the associated risk to be within the entity's risk appetite.
Term
ERM Responsible Parties
Definition

Senior Management

Board of Directors

Risk Committee & Chief Risk Officer

Internal Auditors

Term
ERM Capabilities
Definition
Allows management to optimize stakeholder value by coping effectively with uncertainty and the risks and opportunities it presents; helps management to: (1) reach objectives, (2) prevent loss of reputation and resources, (3) report effectively, and (4) compy with laws and regulations.
Term
Capabilities of ERM (6)
Definition

1. Consideration of risk appetite and strategy

2. Risk response decisions

3. Reduction of operational surprises and losses via enhanced contingency planning.

4. Encompasses Multiple/Cross Enterprise Risks

5. Quick response to opportunities

6. Better deployment of capital

Term
Risk Appetite
Definition
The degree of willingness of senior management to accept risk. Should be assessed when, (1) evaluating strategic options, (2) setting objectives, (3) developing risk management techniques
Term
ERM Events
Definition

Risks (negative)

Opportunities (positive)

Term
ERM Components (8)
Definition

Mnemonic:  CRIM RISE

  1. Control Activities
  2. Risk Assessment
  3. Information & Communication
  4. Monitoring
  5. Risk response consistency w/ tolerance & appetite
  6. Identification of events
  7. Set objectives before considering events
  8. Environment (internal) sets the tone of the entity
Term
ERM Limitations (5)
Definition
  1. Faulty human judgment
  2. Cost-benefit considerations
  3. Simple errors or mistakes
  4. Collusion
  5. Management overrides
Term
Risk Management Process
Definition

Mnemonic: I Ate Pie For Money

  1. Identify risks
  2. Assess risks
  3. Prioritize risks
  4. Formulate risk responses
  5. Monitor risk responses
Term
SOX Sec. 302
Definition
Requires CEO & CFO certification of fair representation in quarterly & annual reports to the SEC.
Term
Risk Response Strategies (5)
Definition
  1. Risk Avoidance (cease activity)
  2. Risk Retention (self insurance)
  3. Risk Reduction (antivirus software)
  4. Risk Sharing (hedging, joint venture)
  5. Risk Exploitation (for high return)
Term
Two Most Significant Requirements of SOX Section 404
Definition
  1. Management must establish and document a system of internal control.
  2. Management must include in the annual report a report on the adequacy & functioning of the system of internal control over financial reporting.
Term
Management's report on internal control must include what five statements?
Definition
  1. Acknowledgement that the system of internal control is management's responsibility.
  2. Management's assessment of the effectiveness of internal control
  3. Identification of the framework used to assess the effectiveness
  4. Disclosure of material weaknesses and statement of changes in controls after assessment
  5. Statement that an external auditor has issued an attestation report on management's assessment.
Term
Inherent Limitations of Internal Control
Definition
  1. Human error
  2. Employee misunderstanding, carelessness, fatigue
  3. Collusion
  4. Management override
  5. Cost in excess of benefit
Term
7 Areas of COSO Framework's Control Environment
Definition

Mnemonic: HIS CPA Responsibilty

  1. HR policies
  2. Integrity and ethics
  3. Structure of the organization
  4. Competence
  5. Philosphy and operating style
  6. Audit committee/board of directors
  7. Responsibility and authority
Term
5 Components of Internal Control
Definition

Mnemonic: CRIME

  1. Control Activities
  2. Risk Assessment
  3. Information and communication
  4. Monitoring
  5. Control Environment
Term
3 Objectives of Internal Control
Definition

Mnemonic: Everything Really Counts

  1. Effective/efficient operations
  2. Reliability of FAR
  3. Compliance w/ laws & regulations
Supporting users have an ad free experience!