Consider Solutions

RESOURCES
Whitepapers & Points Of View
Best Practices in Detecting and Preventing T&E Abuse

 

Best Practices in Detecting and Preventing T&E Abuse

The abuse and misuse of Travel and Expense claims impacts multiple areas of a business: finance, compliance, reputation, culture and morale with damaging effects. Abusers know the system and work it to their advantage.

Advanced data analytics can be used to automatically monitor expense reports and helps to reduce the number of inappropriate claims.

This paper examines the most common tactics for rogue expenses and their impact and showcases how an exception-based approach can help to eliminate misuses and inaccuracies, enabling and enforcing the company T&E policy.

Read More
The Third Wave in Shared Services

The Third Wave in Shared Services. Driving Continuous Improvement. 

by Dan French, CEO, Consider Solutions  

Accounting Shared Services are a central plank of any finance transformation targeting a world class finance capability. They are a key finance tool for efficiency and enabler for strategic flexibility, but achieving the standardization required to drive the desired cost efficiencies in Shared Services is a difficult business in practice.

Read More
The Compliance Tool - Audit Check-list

The Compliance Tool - Audit Check-list

by Jan Hurda, Business Consultant at Consider Solutions  

A Compliance tool environment is where the fusion between rules containing one or more conditions used to identify risks in a business process and the data extracted from ERP tables to produce exception reports. In a Compliance Tool framework these exceptions allow for further corrective action. 
For the Compliance Tool framework to work as designed and for management to be able to rely upon the exceptions produced from the analyses imbedded in a Compliance Tool environment, the following controls need to be in place and need to be working effectively.
Read More
The Compliance Tool - Risk-Based Segregation of Duties Remediation

 The Compliance Tool - Risk-Based Segregation of Duties 

by Jan Hurda, Business Consultant at Consider Solutions  

Audit finding Segregation of Duties (SOD) issue in one of the major ERP systems or perhaps a case of customer data leak stored in the CRM application. The reasons to acquire a tool to control authorizations within critical enterprise wide systems may vary. The goal is always the same - manage risks. In the case of SOD issues the risk lies in the abuse of rights granted to individuals within critical enterprise systems. Why would a loyal employee want to do that? How do I prevent individuals to misuse their privileges? Where should I start with the remediation? What should be the scope of my SOD checks? What are the effective strategies how to minimise a major part of the SOD risk? Do all SOD issues have the same potential impact?
Well there are different theories answering these questions...
Read More
Closing the Loop on the Remediation Cycle - Managing your Compensating Controls

Closing the Loop on the Remediation Cycle - Managing your Compensating Controls 

by Jan Hurda, Business Consultant at Consider Solutions  

You have a Continuous Monitoring tool up and running in your environment with all critical systems connected.  Most likely a risk-based assessment of the critical authorizations has been conducted and a common understanding and agreement achieved across the business, IT, compliance functions and external audit. 

All your functional authorizations (e.g. SAP roles) now pass all risk checks and you have remediated the users with the highest violations by reorganising employee duties and segregating user access. You arrived at a point where no further reorganisation and distribution among the team is possible or feasible.

•    How can you manage and mitigate the risk of residual violations? 

•    What is a compensating control and what does it look like?

•    What are the main cost drivers behind compensating controls?

•    How to turn cost drivers into opportunities? 

Read More
Prevention is better than cure

Next generation Continuous Monitoring

Insights for the CFO and Audit committee.

By Juergen Mueller, Partner – PwC & Dan French, CEO – Consider Solutions

Assuring the organisational cardio-vascular system

Today’s standard practice in business assurance is focused on symptoms of problems, followed by diagnosis and cure. This approach has significant risks in itself. If you consider the human body, we have learned in recent decades that for many illnesses there are markers in the blood system long before a medical problem exhibits symptoms. In the same way, long before symptoms are apparent in the organization, there are markers in the information systems and processes of the business. Click read more to register for white paper download.

Read More
Continuous Audit - Technology Enabled Continuous Assurance

Continuous Audit - Technology Enabled Continuous Assurance

by Dan French, CEO Consider solutions,presented at the NACACS Conference in Las Vegas, May 2011

‘Continuous Audit’ has been discussed and written about for decades. Conferences are run and books get written on the subject. But to this day, the definition is hard to pin down and there is quite a lot of semantic debate about what it is and is not. This debate is most fierce when exploring the perceived differences between Continuous Audit and Continuous Monitoring. Continuous Audit and Continuous Monitoring require technology, but they are not technology projects, they are business change programs. This white paper provides insight, experience and best practice as well as challenging some assumptions. Click read more to register for white paper download.

Read More
Financial Times - Perspectives: Managers should behave as if they were owners

Managers should behave as if they were owners

By Alan Cane
Published: July 8 2009 16:34 | Last updated: July 8 2009 16:34
Copyright The Financial Times Limited 2009

No man is a hero to his valet, it is said, and few chief executives are heroes to their chief information officers. Here’s a reason why.
The first green shoots of recovery might be starting to appear, albeit tentatively, and with them fears that nothing has been learned and that further measures will have to be imposed on companies to prevent greed, unreasonable optimism and stupidity from hurling the global economy into another mess.

Read More
Five Ways Continuous Controls Monitoring (CCM) Is Supporting Risk-Management Programs – an article in Business Finance

Five Ways Continuous Controls Monitoring (CCM) Is Supporting Risk-Management Programs

by John Becker, Chief Executive Officer at Approva.

By providing an objective way to monitor risks on a continuous basis CCM is helping CFOs make the transition their boards are demanding: from a focus on controls to a focus on risk; from a backward-facing posture to a more strategic forward-looking approach; and from a cost-driven mentality to a performance-driven viewpoint.

Read More
Webinars
All Webinars are found under EVENTS
Resources
User Access Monitoring - Top 3 Value-Adds

User Access Monitoring - Top 3 Value-Adds 

Many of you use the Approva Continuous Monitoring platform to monitor for user access risk in your ERP system. For those who have the platform in place, how can you get more business value?

Here are the Top 3 Value-Adds:  

Read More
Top 10 Exceptions in Purchase-to-Pay

Top 10 Exceptions in Purchase-to-Pay

The use of automation to monitor risk and performance in key financial business processes is growing. The processes are executed in ERP systems such as SAP and Oracle and all the transactional data is stored within these systems, meaning it can be monitored using automated tools. But where do you start? As food for thought we have listed the top 10 P2P exceptions being monitored by our customers using the Approva Continuous Monitoring platform.

Read More
Presentations
IACON 2010 - Continuous Auditing: Technology Enabled Continuos Audit

Dan French of Consider Solutions presented at IACON 2010 'Taking the Internal Audit Profession Forward' on the topic of 'Continuous Auditing: Technology Enabled Continuous Assurance'.

Read More
Customer Case Studies
ERP System Controls - T-Mobile UK

T-Mobile UK, with a nudge from the Sarbanes-Oxley Act, found a better way to monitor and manage access controls with its ERP system.

Read More
Governance, Risk & Compliance (GRC) - Continuous Controls Monitoring (CCM) Case Study – Global Consumer Goods

Global Consumer Goods

The senior management of this client aspired to a complete, continuous, repeatable and sustainable business and IT controls monitoring strategy. Continuous Controls Monitoring (CCM), rather than periodic, sample-based reviews and reporting, was needed to achieve the efficiencies and effectiveness required for global processes and controls to provide genuine, demonstrable financial assurance to the board.

Read More
Schroders - Two hundred years of forward thinking

Two hundred years of forward thinking

In the financial sector in particular, organisations that are able to use technology to innovate and enhance their business practices will gain competitive advantage. This case study examines Schroders’s decision to develop a fresh approach to its intranet, utilising Consider Solutions’ experience of building collaborative knowledge networks.

Read More
Continuous Monitoring Perspectives
Procurement Process Assurance

Ordering what your supplier delivers – Is that right?

Author: Steve Rooney

The standard procurement process in large companies typically follows the sequence:

 The party requiring the goods raise a requisition detailing what is needed. The procurement department sources the goods, identifying candidate suppliers and negotiating the optimum deal. As part of supplier selection the procurement professional takes into account approved suppliers, ability to deliver, existing business with the supplier, price and available discounts. After the supplier selection the Purchase Order is placed and some time later the goods are delivered, the supplier sends an invoice and payment is made.

Read More
Keeping an eye on Payment Terms

 … the revenue perspective

By: Steve Rooney

For most companies the effectiveness of how cash flow is managed is a key factor in the overall financial management of the business and, for some companies, can make the difference between success and failure. Getting paid and getting paid as soon as possible means your company has the cash it is due and can make that cash work to sustain and work for the business.

Similarly, discounting policy can have a major impact on revenues … not all business may be good business. If you end up discounting too far and eroding your margins you may be maintaining revenues at the expense of profit.

Read More
CONSIDER THIS!
No, not the R.E.M. lyrics, but the Consider Solutions Newsletter offering news, comment, events and observations from across the spectrum of Performance, Risk & Compliance in business.
Contact us if you are interested in signing up for the newsletter.
12 July 2012: A Deeper Dive in CCM, Risk Blindness & Culture
8 June 2012: CFO Perspective, Copaco N.V., Continuous Monitoring, Compliance Week
19th December 2011: May we live in interesting times, a review of 2011
3rd November 2011: GRC Success Stories: BMW – Continuous Monitoring
13th September 2011: Continuous Assurance, Fraud, compliance – Glass half full or empty?
5th September 2011: Continuous Assurance, Fraud, compliance – WEBCAST & REPORTS
4th August 2011: Continuous Assurance, Monitoring, Audit
20th July 2011: Continuous Monitoring & Audit: The Next Frontier
28th June 2011: Webcast - 3 out of 4 Finance Executives make the case for Continuous Monitoring, plus Risk and Audit Surveys
1st June 2011: Getting ready for Continuous Monitoring – Simpler Certification
5th May 2011: Kicking Off Your Continuous Controls Monitoring & Continuous Auditing Initiative
6th April 2011: New insights show impact of Continuous Monitoring on process change and transformation
28th March 2011: Measuring the ROI of Your GRC Programs and next chapter in Finance Transfomation
9th March 2011: Finance Transformation: The Next Chapter - Continuous Monitoring for Financial Performance & Control
17th February 2011: GARTNER’s ITScore and Anti bribery and corruption webcast.
13th Jan 2011: Gartner's Paul Proctor, on the new realities of Governance and Risk, and more..
21st December 2010: Thoughts on Performance, Risk and Compliance in 2010
24th November 2010: A risk-based approach to Access and Process Control
22nd October 2010: Better monitoring, fewer surprise or a New era of Compliance
29th October 2010: Where Access and Process Controls Converge – Automated Mitigating Controls Webcast
27th September 2010: Controls Transformation and Continuous Monitoring
2nd September 2010: Fraud - the tip of the iceberg
6th August 2010: The Evolving Finance Function, Risk, Regulation and Controls
16th July 2010: Risk Perspectives
28th May 2010: Enhancing Risk Management and Monitoring
5th May 2010: Insider Threats, Risk Monitoring & Fraud Prevention - the CCM Imperative
9th April 2010: Gartner's Magic Quadrant for Continuous Controls Monitoring
24th March 2010: Compliance Week Web Presentation – Building the Finance & Audit relationship
3rd March 2010: What is the business case and value of Continuous Controls Monitoring (CCM)?
13th January 2010: De-Mystifying the GRC Puzzle with Continuous Controls Monitoring (CCM)
17th November 2009: GRC Success Stories – Philip Morris International
28th October 2009: Compliance Week: 2010 GRC Forecast & Trends
13th October 2009: How to kick off a CCM initiative, Fraud Survey and more . . .
17th September 2009: The top 5 requirements for GRC, and more ...
1st September 2009: Gartner Group - The next frontier in GRC and more
17th July 2009: Risk & Controls - Financial Times, the Swiss role, Working Capital, Controls
You are here  : Home RESOURCES