Preview

Business Risk vs Audit Risk Essay Example

Good Essays
Open Document
Open Document
1124 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Business Risk vs Audit Risk Essay Example
------------------------------------------------
Business Risk vs. Audit Risk
By Gabriel Agboola
The following article first appeared online in the IT Compliance Institute Ask The Auditor column. Used with Permission.
What’s the difference between business risk and audit risk?
Business risk relates mainly to an organization’s goals and objectives. It is essentially the potential cost incurred if the business does not achieve its strategic plans. The assessment and management of business risk has evolved into formalized enterprise risk management (ERM) in many organizations.
By contrast, audit risk relates mainly to the internal and external audit efforts to achieve its objectives; that is, provide effective, timely, and efficient assurance and consulting support to management and the board. Traditionally, audit risk has been seen as strictly the risk of incorrect audit conclusions. Contemporary views, however, include big-picture audit risks; specifically, that the internal audit function is not doing the right things or working in the best ways.
Let's look a little more closely at these two concerns…
-------------------------------------------------
Business Risk (a.k.a. Enterprise Risk)
Enterprise Risk Management (ERM) is defined by COSO as: * A process, effected by an entity’s board of directors, management, and other personal, applied in strategy setting and across the enterprise, designed to identify potential events that may affect the entity, and manage risk to be within its risk appetite, to provide reasonable assurance regarding the achievement of entity objectives. * ERM is a structured and coordinated entity-wide governance approach to identify, quantify, respond to, and monitor the consequences of potential events. When implemented by management, ERM is generally evaluated by internal auditors for effectiveness and efficiency. * Business risk is fundamentally the risk of an organization not achieving its objectives. A formal ERM

You May Also Find These Documents Helpful

  • Better Essays

    Kudler Fine Foods

    • 1110 Words
    • 5 Pages

    Next security risks, is the assurance that unauthorized personnel will not have access to vital information. For internal control measures to be effective the company must have internal controls to reduce unauthorized system access. Next are audit risks which contribute to the authenticity of the system chosen. Audit risk carries with it several subcomponents of various risks, such as inherant, control, and detection risks (Hunton, Bryant, & Bagranoff, 2004). Similar to business risk, the opportunity for fraudulant activity to occur contributes significantly to control risk. An auditors failure to uncover…

    • 1110 Words
    • 5 Pages
    Better Essays
  • Better Essays

    Its 2012 current ratio and quick ratio are 1.93 and 0.75 respectively. Its 2013 current ratio and quick ratio are 1.75 and 0.69 respectively. This suggests the company is still healthy in terms of carrying cash and cash equivalents, even though its current liabilities have increased in 2013.…

    • 1251 Words
    • 5 Pages
    Better Essays
  • Powerful Essays

    MU1 Assignment 2

    • 1726 Words
    • 6 Pages

    Practice advisory 2120.C1 states: –“During consulting engagements, internal auditors must address risk consistent with the engagement’s objectives and be alert to the existence of other significant risks.…

    • 1726 Words
    • 6 Pages
    Powerful Essays
  • Good Essays

    o Develop an e-business risk management plan for an organization in this industry and explain the key aspects of e-business risk manageme...…

    • 492 Words
    • 3 Pages
    Good Essays
  • Satisfactory Essays

    The audit risk (consisting of inherent and control risk) that the account balance or class of transactions contain misstatements that could be material to the financial statements whether individually or when aggregated with misstatements in other balances or classes.…

    • 298 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    Audit risk has to act an inseparable element with detection risk and control. The material misstatement is…

    • 408 Words
    • 2 Pages
    Good Essays
  • Good Essays

    ACCT3708 Tutorial Week 3

    • 1118 Words
    • 5 Pages

    Audit risk is the risk that the auditor gives the wrong opinion – this can either be stating errors when there are none or when there are errors stating that there are none. This risk cannot be eliminated as auditors can only provide a reasonable assurance and not absolute, but instead this can only be managed and reduced to a minimum.…

    • 1118 Words
    • 5 Pages
    Good Essays
  • Satisfactory Essays

    The acceptable audit risks, inherent risk, the preliminary judgment about materiality and performance materiality have significant impact on the whole process of the audit and therefore they should be made in the planning phase. The acceptable audit risk helps the auditor to determine the scope and how much evidence to gather during the audit. Inherent risk is the risk of material misstatement in an account before considering the effectiveness of internal control. The assessment of inherent risk in the planning phase is to help the auditor plan the audit by deciding which parts of the audit to emphasize and the extent of testing. The performance materiality and preliminary judgment about materiality determine the nature, timing and extent of further audit procedures. Therefore, to better perform further audit procedures, these should be made in the early phase of the audit.…

    • 327 Words
    • 1 Page
    Satisfactory Essays
  • Satisfactory Essays

    The three risks that make up audit risk are inter-related because they assist the auditor in determining the scope of auditing procedures for a particular account balance or class of transactions. The audit risk model is specified as AR=IR x CR x DR. The inherent risk and control risk is the risk that the balance or class and related assertions contain misstatements that could be material to the financial statements when aggregated with misstatements in other balances or classes. The detection risk is the risk that the auditor will not detect such misstatements. The…

    • 451 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    Enterprise risk management (ERM) has become a critical practice in organizations that are dedicated to managing uncertainty and its effect on achieving organizational objectives. ERM helps organizations focus on the most relevant risks to achieving an organization’s goals and objectives, both from an operational, as well as a strategic, perspective. How much risk an organization assumes—either knowingly or unwittingly— plays a large part in whether that uncertain future outcome actually improves or worsens the organization’s position. It is therefore crucial for an organization to define and determine its Risk tolerance levels since it will help the organization make major decisions based on what has determined to be acceptable risk.…

    • 1635 Words
    • 7 Pages
    Powerful Essays
  • Good Essays

    Audit & Assurance

    • 1033 Words
    • 5 Pages

    The purpose of Part 2 is to identify factors influencing risks and the relationship of risks to audit evidence.…

    • 1033 Words
    • 5 Pages
    Good Essays
  • Better Essays

    of internal controls, provide an overall foundation for reliance on any information produced by a system. Since the relation between ITGCs and the information produced…

    • 4302 Words
    • 21 Pages
    Better Essays
  • Better Essays

    The audit risk model is composed of four risks. The planned detection risk is a factor of inherent risk, control risk, and acceptable audit risk. Planned detection risk is the risk the auditor fails to detect misstatements and will increase or decrease dependent on the level of risk in the other three factors. If the auditor determines it is expected that misstatements is highly likely than inherent risk increases and create a higher demand for evidence. As the same with control risk, the weaker the internal controls the higher the planned detection risk will be. Acceptable audit risk on the other hand the lower the risk the lesser amount of evidence will be needed.…

    • 1087 Words
    • 5 Pages
    Better Essays
  • Good Essays

    George Eastman

    • 676 Words
    • 3 Pages

    Born to Maria Kilbourn and George Washington Eastman on July 12, 1854, young George experienced a number of hardships early on in his life which shaped and sharpened his ability to adapt and innovate – traits that would later on define his success in the field of photography. The death of his father when he was just seven, which left the family financially challenged, and his decision to “drop out of school at age 14 to support his widowed mother and two sisters, one of whom was severely handicapped” (Eastman Kodak Company), are only some of the circumstances in his life which could have made George Eastman socially, mentally, and emotionally diverse or different from other children his age. In addition to these circumstances, George Eastman’s inborn personality, such as “his ability to overcome financial adversity, his gift for organization and management, and his lively and inventive mind,” served only to strengthen his difference from others and set him apart (Eastman Kodak Company).…

    • 676 Words
    • 3 Pages
    Good Essays
  • Better Essays

    Risk Management Trends

    • 886 Words
    • 4 Pages

    There is an adage that says ‘nothing remains the same forever” and in business this is definitely true. As times evolve and the demographics of business territories change risk management involving these trends and developments become paramount to the survivability and long-term success of both organizations and individuals. An individual need be concerned with the relevance and significance of a linear nature while an organization must take into account consideration of other stakeholders and all factors involved. Trend risk management for an organization exists at the corporate, business, and project levels. At each level stakeholders are identified and encouraged to participate in the risk management process (AL-Thani & Merna, 2005). This insures that risk mitigation of trends and developments are conducive to all involved and yields a positive outlook for future challenges that may arise. The duration of this passage will focus on new trends and developments in the risk management process as they pertain to technology, culture, and government regulation, the pros and cons of each and the implications of each to the business environment.…

    • 886 Words
    • 4 Pages
    Better Essays