Term
|
Definition
| Probability of a threat occurrence |
|
|
Term
|
Definition
| Potential dollar loss from the risk |
|
|
Term
| How to calculate expected loss: |
|
Definition
|
|
Term
| Define Information and Communication: |
|
Definition
| Methods and records used to record, process, and summarize a company's transactions |
|
|
Term
| Information and communication are: |
|
Definition
| Document accounting procedures in accounting procedure manuals to promote uniformity, and then also communicate the roles of employees in the company. |
|
|
Term
| Define monitoring performance: |
|
Definition
| assessing the quality of internal controls, and taking corrective measures. |
|
|
Term
| What are key methods of monitoring performance? |
|
Definition
| Effective supervision, responsibility reporting, internal and external audits. |
|
|
Term
| What does the 2004 COSO focus on? |
|
Definition
| Enterprise Risk Management |
|
|
Term
| What are all the parts of the 2004 COSO? |
|
Definition
| All the 5 1994 COSO and Objective setting, Event Identification, Risk response |
|
|
Term
second part of the 2004 COSO is?
And what does it do. |
|
Definition
Event Identification
Deals with uncertainties, some things are beyond the control of management.
External Factors: economic business, environment, political social.
Internal Factors: Management choices, like infrastructure, personnel, process, and technology |
|
|
Term
| 3rd 2004 COSO and explain it. |
|
Definition
| Risk response: risk avoidance, reduction of risk. Management identifies external risks and does there part to try and reduce the internal and external factors associated. |
|
|
Term
| What are the three control procedures? |
|
Definition
| Preventive controls, detective controls, corrective controls |
|
|
Term
| Define preventive controls: |
|
Definition
Prevent errors and problems before they happen.
Through: Authentication/Authorization controls (passwords), Employee training, Physical address controls (locks) |
|
|
Term
|
Definition
| Needed to discover errors and problems as soon as they arise |
|
|
Term
| Define corrective controls: |
|
Definition
| Remedy the problems discovered through detective controls. |
|
|