Internal control systems need to be continuously monitored, Risk Management

Assignment Help:

QUESTION

(a) Internal control systems need to be continuously monitored. This is a process that assesses the quality of the performance of a system over time and is accomplished by two approaches. Describe those two approaches.

(b) The auditors of a healthcare company found that the company is in breach of the Data Protection Act following an investigation into the online application system for refund of claims. This function of online application was outsourced to an IT company a year ago. The security breach meant that the personal data of customers applying for refunds was potentially visible to others visiting the website. The IT Company was asked to immediately stop the online application facility. Further investigations revealed that the IT Company did not have any experience in developing and hosting such IT systems.

i. Identify and explain the controls that should have been in place to possibly avoid the breach.

ii. The healthcare company could have made use of indicators to provide an early warning signal that a risk is emerging to enable management to take proactive action. What is this indicator and how would it have helped the company?


Related Discussions:- Internal control systems need to be continuously monitored

Historical simulation approach, How can I calculate 10-day 99% VaR for port...

How can I calculate 10-day 99% VaR for portfolio comprising two banks by using the Historical Simulation Approach ?

Steps that a project manager include in risk management, Risk management is...

Risk management is an important aspect of managing a project in order to ensure that the project objectives are completed successfully and with the minimum of undesirable events. T

Hi, ashjadsgdjhs

ashjadsgdjhs

Importance or advantage of the working capital, Q. Importance or advantage ...

Q. Importance or advantage of the working capital? Working capital is the lifeblood and never centres of the business. Just like a blood ,that necessary , no business can run w

Objectives of risk communication, Objectives of risk communication The ...

Objectives of risk communication The fundamental goal of risk communication, as you may have realized, is to provide meaningful, relevant and accurate information, in  clear  a

Systematic risk, Systematic Risk Systematic risk is any risk which affe...

Systematic Risk Systematic risk is any risk which affects the value of a huge number of assets; therefore, each asset will have a various degree of sensitivity to the underlyin

Implementation of syringe management plan, Risk Management The major ri...

Risk Management The major risks involved in the implementation of syringe management plan include the following. Ideas to manage them are as well mentioned along with the risks

Risks covered under the policy., An insurance company is investigating offe...

An insurance company is investigating offering kidnap and ransom insurance. Policies are to be sold to multinational companies to provide cover for certain named employees who are

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd