The principles outlined in a popular internal control framework can help organizations manage their cybersecurity.
IT Governance, Risk & Controls
Technology plays a role in board members’ top two concerns
In a business environment where a damaging Twitter post can have disastrous effects on a company’s financials, reputational risk remains the top nonfinancial concern for corporate directors, according to a new survey report. Another risk rooted in technology—cybersecurity and information technology risk—is rising quickly among directors’ concerns, according to the
How to use COSO to assess IT controls
CPAs can assess the effectiveness of their organization’s information technology controls by using Principle 11 of the newly updated internal control framework of the Committee of Sponsoring Organizations of the Treadway Commission (COSO). See a step-by-step procedure for applying Principle 11 to IT controls.
Unstructured data: How to implement an early warning system for hidden risks
Companies rarely use technology to effectively identify risks beyond those related to business and transaction processing in financial and operating system internal controls. This article provides techniques to expand the scope of an organization’s risk management processes—in a way that may help some identify hidden risks before they emerge as full-blown crises.
Features
FROM THIS MONTH'S ISSUE
Cannabis dispensary denied ERC
The Court of Federal Claims held that Sec. 280E, which prohibits deductions and credits for businesses trafficking in controlled substances, applies to the employee retention credit (ERC), including its refundable portion, and denied a cannabis business’s claim for a refundable ERC.
