Continous Audit and Controls with Brainwave GRCGraeme Hein
How businesses can cut costs, improve operations, and reduce risk by adopting continuous audit and internal controls. What steps to take immediately and what to look for in an automation solution.
The Vision, Highlights and Implementation Benefits of GRC STACKGRC Stack Pvt. Ltd,
GRC Stack strives to give you the best possible user experience and benefits that really level up your business GRC. Now enjoy the benefits of integrated, interactive reports, personalized embedded dashboards and timely analytics on a software that supports all database is the cloud, mobile and on-premise ready and is highly configurable too.
An Enterprise Resource Planning (ERP) system can help you extract value from your business. A successful system can provide insight for decision making, opportunities for efficiencies, assist with controlling processes, and provide business agility.
Continous Audit and Controls with Brainwave GRCGraeme Hein
How businesses can cut costs, improve operations, and reduce risk by adopting continuous audit and internal controls. What steps to take immediately and what to look for in an automation solution.
The Vision, Highlights and Implementation Benefits of GRC STACKGRC Stack Pvt. Ltd,
GRC Stack strives to give you the best possible user experience and benefits that really level up your business GRC. Now enjoy the benefits of integrated, interactive reports, personalized embedded dashboards and timely analytics on a software that supports all database is the cloud, mobile and on-premise ready and is highly configurable too.
An Enterprise Resource Planning (ERP) system can help you extract value from your business. A successful system can provide insight for decision making, opportunities for efficiencies, assist with controlling processes, and provide business agility.
Brainwave GRC - Continuous Audit and Controls at ISACA eventBrainwave GRC
Discover Eric In's presentation, as VP of Brainwave GRC in North-America, for an ISACA Montreal event on the 13th of April 2017: how Machine learning makes continuous audit and control possible.
Many companies completely rely on computer systems to run the day to day business operation. But do they know if their technology is appropriate for their business or a cost effective solution? Generally speaking a small business can cut costs and maximize productivity by implementing an IT support solution that is tailor made for the business using the latest technological systems.
How can businesses make the smartest telecom and network choices—choices that are guided as much by the organization’s needs and demands as by cost considerations? Increasingly, companies are opting to partner with managed service providers to harness as many benefits as possible from their telecom and network services. Are they realizing these benefits? View the SlideShare to find out.
4 common headaches with sales compensation managementIBM Analytics
Gain insights and solutions to four highly common headaches that companies face in their sales performance management processes. Learn more: http://ibm.com/spm
Key Concerns in the Pharmaceutical and Healthcare Supply Chain - D.Quinn Apri...Dan Quinn
This is the output of a recent Achilles sponsored round-table on Supply Chain Risk Management at the ProcureCon Health 2013 event in Zurich - hope you find it interesting. Regards, Dan.
Get an overview of what compliance management means, the common categories of compliance in businesses as well as how software solutions can support your Organisational and Regulatory compliance journey.
To know more, visit corporater.com/compliance
How to make sure a computer decision making system will not hurt your businessLuis Carrasco-Cortes
A computer decision making system, also known as an operational decision management system (ODM) can perform between thousands to millions of operational decisions per hour. Such as system needs to have three major attributes in order to ensure it will create measurable value.
Brainwave GRC - Continuous Audit and Controls at ISACA eventBrainwave GRC
Discover Eric In's presentation, as VP of Brainwave GRC in North-America, for an ISACA Montreal event on the 13th of April 2017: how Machine learning makes continuous audit and control possible.
Many companies completely rely on computer systems to run the day to day business operation. But do they know if their technology is appropriate for their business or a cost effective solution? Generally speaking a small business can cut costs and maximize productivity by implementing an IT support solution that is tailor made for the business using the latest technological systems.
How can businesses make the smartest telecom and network choices—choices that are guided as much by the organization’s needs and demands as by cost considerations? Increasingly, companies are opting to partner with managed service providers to harness as many benefits as possible from their telecom and network services. Are they realizing these benefits? View the SlideShare to find out.
4 common headaches with sales compensation managementIBM Analytics
Gain insights and solutions to four highly common headaches that companies face in their sales performance management processes. Learn more: http://ibm.com/spm
Key Concerns in the Pharmaceutical and Healthcare Supply Chain - D.Quinn Apri...Dan Quinn
This is the output of a recent Achilles sponsored round-table on Supply Chain Risk Management at the ProcureCon Health 2013 event in Zurich - hope you find it interesting. Regards, Dan.
Get an overview of what compliance management means, the common categories of compliance in businesses as well as how software solutions can support your Organisational and Regulatory compliance journey.
To know more, visit corporater.com/compliance
How to make sure a computer decision making system will not hurt your businessLuis Carrasco-Cortes
A computer decision making system, also known as an operational decision management system (ODM) can perform between thousands to millions of operational decisions per hour. Such as system needs to have three major attributes in order to ensure it will create measurable value.
The NFI are responsible for detecting misconduct or fraud across the private and public sector. They have recovered millions of pounds of fraudulent money. This presentation from the IDEA User Groups explains how to use IDEA to catch and prevent fraud.
Well, here are some Wordles based on the automatic transcription of all the (successfully recorded) sermons in our series of New Testament 'One Anothers'. As a preacher I'm really interested in the words I use and it's really teaching me something, although I'm not completely sure what!
Continuous Controls Monitoring (CCM) is defined as applying technology to allow continuous (or at least high-frequency), automated monitoring of controls to validate the effectiveness of controls designed to mitigate risk, including maintaining an active cyber defense posture and ensuring business continuity and regulatory compliance.
CCM has many use cases across industries. It exists in Financial Services as fraud monitoring and financial transaction monitoring. It’s utilized in Manufacturing for quality and process control monitoring. Across industries, organizations are starting to deploy CCM over key control processes around network and data security.
There are a couple of different approaches to CCM implementation. It can be as simple as turning on certain settings in the source operating system and using its built-in dashboards and reports.
. In accounting and auditing, internal control is a process for assuring achievement of an organization’s objectives in operational effectiveness and efficiency, reliable financial reporting, and compliance with laws, regulations and policies.
How to Manage Internal Control systems in Your Business to Minimize Risk.pdfJose thomas
Manage all aspects of your business, including production planning and execution, quality assurance, and maintenance. Fully customizable ERP software UAE with templates suitable for the industry.
Regulatory, as well as corporate compliance requirements, demand organizations to conform to a large number of rules, laws, policies, and standards.
Corporater's compliance management software helps you in enhancing your organization's performance by empowering your organization with a unified approach that integrates all your compliance processes and linking it back to the organization strategy.
You get a continuous insight into the status of the compliance and controls, thereby enabling you to improve the compliance and business process quality.
For more information, click here - http://bit.ly/2Prvf9C
Retail Enterprise Solutions Integrates All Of Your Major Business Processes, Which Helps Ensure Consistent Data Across All Your Functional
Departments. Retail Applications Typically Consist Of Modules Such As Marketing And Sales, Point Of Sale, Inventory Control, Purchasing,
Distribution, Human Resources, Payroll, Time Attendance, Finance, And Accounting.
TakeCare An SQL Server 2005/8 Based Integrated Enterprise Information System Designed And Developed By Advanced Turnkey Systems Co,
To Meet The Requirements Of Diverse Market Segments Such As Trading Import / Export Retail / Distribution, Etc.
TakeCare Today Addresses The Critical Needs Of Large Multi Company Organizations In The Middle East.
TakeCare Supports Multi Company / Prot Centers, Multi-Department Cost-Centers Kind Of Organization Structures. TakeCare’s Flexible
Design and Extensive Parameterization Allows It to Cater to Changing Business Requirements. TakeCare’s High Scalability Ensures That the
Usage of the Application Grows with the Growth of the Business.
TakeCare The Best Thing With TakeCare Is That Everything Happens Totally Automatically.
Take Care - Retail Enterprise Solution - PastryAtsc Group
Retail Enterprise Solutions Integrates All Of Your Major Business Processes, Which Helps Ensure Consistent Data Across All Your Functional
Departments. Retail Applications Typically Consist Of Modules Such As Marketing And Sales, Point Of Sale, Inventory Control, Purchasing,
Distribution, Human Resources, Payroll, Time Attendance, Finance, And Accounting.
TakeCare An SQL Server 2005/8 Based Integrated Enterprise Information System Designed And Developed By Advanced Turnkey Systems Co,
To Meet The Requirements Of Diverse Market Segments Such As Trading Import / Export Retail / Distribution, Etc.
TakeCare Today Addresses The Critical Needs Of Large Multi Company Organizations In The Middle East.
TakeCare Supports Multi Company / Prot Centers, Multi-Department Cost-Centers Kind Of Organization Structures. TakeCare’s Flexible
Design and Extensive Parameterization Allows It to Cater to Changing Business Requirements. TakeCare’s High Scalability Ensures That the
Usage of the Application Grows with the Growth of the Business.
TakeCare The Best Thing With TakeCare Is That Everything Happens Totally Automatically.
Companies connect with customers, clients, Business Partners, suppliers and other external organizations to make critical Business transactions more efficient. These connections are increasingly computerized, automatic and system to system, and they may be integrated with the Online Services and critical Processes of each company.
All these relationships form a complex network of entities, channels and functions, continuously expanding and erasing boundaries between organizations, which is called the Extended Enterprise.
Take Care - Retail Enterprise Solution BakeryAtsc Group
Retail Enterprise Solutions Integrates All Of Your Major Business Processes, Which Helps Ensure Consistent Data Across All Your Functional
Departments. Retail Applications Typically Consist Of Modules Such As Marketing And Sales, Point Of Sale, Inventory Control, Purchasing,
Distribution, Human Resources, Payroll, Time Attendance, Finance, And Accounting.
TakeCare An SQL Server 2005/8 Based Integrated Enterprise Information System Designed And Developed By Advanced Turnkey Systems Co,
To Meet The Requirements Of Diverse Market Segments Such As Trading Import / Export Retail / Distribution, Etc.
TakeCare Today Addresses The Critical Needs Of Large Multi Company Organizations In The Middle East.
TakeCare Supports Multi Company / Prot Centers, Multi-Department Cost-Centers Kind Of Organization Structures. TakeCare’s Flexible
Design and Extensive Parameterization Allows It to Cater to Changing Business Requirements. TakeCare’s High Scalability Ensures That the
Usage of the Application Grows with the Growth of the Business.
TakeCare The Best Thing With TakeCare Is That Everything Happens Totally Automatically.
Review the best ways to review accounts payable to detect duplicate payments. Whether this is done in house or externally, this presentation provides steps to follow to thoroughly review accounts payable.
Examples of procurement and payroll tests using SAP data in IDEA from a previous User Group. Recommendations are also made taken from the council's own experiences.
The Art of the Pitch: WordPress Relationships and SalesLaura Byrne
Clients don’t know what they don’t know. What web solutions are right for them? How does WordPress come into the picture? How do you make sure you understand scope and timeline? What do you do if sometime changes?
All these questions and more will be explored as we talk about matching clients’ needs with what your agency offers without pulling teeth or pulling your hair out. Practical tips, and strategies for successful relationship building that leads to closing the deal.
State of ICS and IoT Cyber Threat Landscape Report 2024 previewPrayukth K V
The IoT and OT threat landscape report has been prepared by the Threat Research Team at Sectrio using data from Sectrio, cyber threat intelligence farming facilities spread across over 85 cities around the world. In addition, Sectrio also runs AI-based advanced threat and payload engagement facilities that serve as sinks to attract and engage sophisticated threat actors, and newer malware including new variants and latent threats that are at an earlier stage of development.
The latest edition of the OT/ICS and IoT security Threat Landscape Report 2024 also covers:
State of global ICS asset and network exposure
Sectoral targets and attacks as well as the cost of ransom
Global APT activity, AI usage, actor and tactic profiles, and implications
Rise in volumes of AI-powered cyberattacks
Major cyber events in 2024
Malware and malicious payload trends
Cyberattack types and targets
Vulnerability exploit attempts on CVEs
Attacks on counties – USA
Expansion of bot farms – how, where, and why
In-depth analysis of the cyber threat landscape across North America, South America, Europe, APAC, and the Middle East
Why are attacks on smart factories rising?
Cyber risk predictions
Axis of attacks – Europe
Systemic attacks in the Middle East
Download the full report from here:
https://sectrio.com/resources/ot-threat-landscape-reports/sectrio-releases-ot-ics-and-iot-security-threat-landscape-report-2024/
PHP Frameworks: I want to break free (IPC Berlin 2024)Ralf Eggert
In this presentation, we examine the challenges and limitations of relying too heavily on PHP frameworks in web development. We discuss the history of PHP and its frameworks to understand how this dependence has evolved. The focus will be on providing concrete tips and strategies to reduce reliance on these frameworks, based on real-world examples and practical considerations. The goal is to equip developers with the skills and knowledge to create more flexible and future-proof web applications. We'll explore the importance of maintaining autonomy in a rapidly changing tech landscape and how to make informed decisions in PHP development.
This talk is aimed at encouraging a more independent approach to using PHP frameworks, moving towards a more flexible and future-proof approach to PHP development.
КАТЕРИНА АБЗЯТОВА «Ефективне планування тестування ключові аспекти та практ...QADay
Lviv Direction QADay 2024 (Professional Development)
КАТЕРИНА АБЗЯТОВА
«Ефективне планування тестування ключові аспекти та практичні поради»
https://linktr.ee/qadayua
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Ramesh Iyer
In today's fast-changing business world, Companies that adapt and embrace new ideas often need help to keep up with the competition. However, fostering a culture of innovation takes much work. It takes vision, leadership and willingness to take risks in the right proportion. Sachin Dev Duggal, co-founder of Builder.ai, has perfected the art of this balance, creating a company culture where creativity and growth are nurtured at each stage.
Search and Society: Reimagining Information Access for Radical FuturesBhaskar Mitra
The field of Information retrieval (IR) is currently undergoing a transformative shift, at least partly due to the emerging applications of generative AI to information access. In this talk, we will deliberate on the sociotechnical implications of generative AI for information access. We will argue that there is both a critical necessity and an exciting opportunity for the IR community to re-center our research agendas on societal needs while dismantling the artificial separation between the work on fairness, accountability, transparency, and ethics in IR and the rest of IR research. Instead of adopting a reactionary strategy of trying to mitigate potential social harms from emerging technologies, the community should aim to proactively set the research agenda for the kinds of systems we should build inspired by diverse explicitly stated sociotechnical imaginaries. The sociotechnical imaginaries that underpin the design and development of information access technologies needs to be explicitly articulated, and we need to develop theories of change in context of these diverse perspectives. Our guiding future imaginaries must be informed by other academic fields, such as democratic theory and critical theory, and should be co-developed with social science scholars, legal scholars, civil rights and social justice activists, and artists, among others.
UiPath New York Community Day in-person eventDianaGray10
UiPath Community Day is a unique gathering designed to foster collaboration, learning, and networking with automation enthusiasts. Whether you're an automation developer, business analyst, IT professional, solution architect, CoE lead, practitioner or a student/educator excited about the prospects of artificial intelligence and automation technologies in the United States, then the UiPath Community Day is definitely the place you want to be.
Join UiPath leaders, experts from the industry, and the amazing community members and let's connect over expert sessions, demos and use cases around AI in automation as we highlight our technology with a special speaker on Document Understanding.
📌Agenda
3:00 PM Registrations
3:30 PM Welcome note and Introductions | Corina Gheonea (Senior Director of Global UiPath Community)
4:00 PM Introduction to Document Understanding
How to build and deploy Document Understanding process
Where would Document Understanding be used.
Demo
Q&A
4:45 PM Customer/Partner showcase
Accelirate
Intro to Accelirate and history with UiPath
Why are we excited about the new AI features of UiPath?
Customer highlight
a. Document Understanding – BJs Case Study
b. Document Understanding + generative AI
5.30 PM Networking
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf91mobiles
91mobiles recently conducted a Smart TV Buyer Insights Survey in which we asked over 3,000 respondents about the TV they own, aspects they look at on a new TV, and their TV buying preferences.
"Impact of front-end architecture on development cost", Viktor TurskyiFwdays
I have heard many times that architecture is not important for the front-end. Also, many times I have seen how developers implement features on the front-end just following the standard rules for a framework and think that this is enough to successfully launch the project, and then the project fails. How to prevent this and what approach to choose? I have launched dozens of complex projects and during the talk we will analyze which approaches have worked for me and which have not.
UiPath Test Automation using UiPath Test Suite series, part 3DianaGray10
Welcome to UiPath Test Automation using UiPath Test Suite series part 3. In this session, we will cover desktop automation along with UI automation.
Topics covered:
UI automation Introduction,
UI automation Sample
Desktop automation flow
Pradeep Chinnala, Senior Consultant Automation Developer @WonderBotz and UiPath MVP
Deepak Rai, Automation Practice Lead, Boundaryless Group and UiPath MVP
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Tobias Schneck
As AI technology is pushing into IT I was wondering myself, as an “infrastructure container kubernetes guy”, how get this fancy AI technology get managed from an infrastructure operational view? Is it possible to apply our lovely cloud native principals as well? What benefit’s both technologies could bring to each other?
Let me take this questions and provide you a short journey through existing deployment models and use cases for AI software. On practical examples, we discuss what cloud/on-premise strategy we may need for applying it to our own infrastructure to get it to work from an enterprise perspective. I want to give an overview about infrastructure requirements and technologies, what could be beneficial or limiting your AI use cases in an enterprise environment. An interactive Demo will give you some insides, what approaches I got already working for real.
Accelerate your Kubernetes clusters with Varnish CachingThijs Feryn
A presentation about the usage and availability of Varnish on Kubernetes. This talk explores the capabilities of Varnish caching and shows how to use the Varnish Helm chart to deploy it to Kubernetes.
This presentation was delivered at K8SUG Singapore. See https://feryn.eu/presentations/accelerate-your-kubernetes-clusters-with-varnish-caching-k8sug-singapore-28-2024 for more details.
Connector Corner: Automate dynamic content and events by pushing a buttonDianaGray10
Here is something new! In our next Connector Corner webinar, we will demonstrate how you can use a single workflow to:
Create a campaign using Mailchimp with merge tags/fields
Send an interactive Slack channel message (using buttons)
Have the message received by managers and peers along with a test email for review
But there’s more:
In a second workflow supporting the same use case, you’ll see:
Your campaign sent to target colleagues for approval
If the “Approve” button is clicked, a Jira/Zendesk ticket is created for the marketing design team
But—if the “Reject” button is pushed, colleagues will be alerted via Slack message
Join us to learn more about this new, human-in-the-loop capability, brought to you by Integration Service connectors.
And...
Speakers:
Akshay Agnihotri, Product Manager
Charlie Greenberg, Host
2. Better Controls – A Business Imperative
The Internal Control Debate is Over
In today’s rapidly changing economy,there is an increasing need
for simple and effective systems for internal control.Poor corporate
governance can destroy reputations,stock prices,revenues and
profitability.
Senior executives recognize that preventing fraud and revenue leakage
is not just good business–it has become essential for survival.
Profitability and Peace of Mind
Internal controls help ensure financial
information is correct, businesses are
operating optimally and assets are
safeguarded. Addressing errors and
abuses, quickly and efficiently, will
enhance profitability.
Organizations typically lose about 5%
of annual revenues to fraud, with the
average scheme going undetected for
18 months. Organizations with controls
in place, however, detect fraud sooner
and report significantly lower losses.*
A Simple, Reliable and Complete Solution
CaseWare™ Monitor is an easy to
implement and use continuous controls
monitoring software solution.Through a
single portal, all stakeholders can
independently monitor controls across
multiple businesses and systems.This
collaborative framework helps you detect
and correct errors and abuses before they
become detrimental to your success.
*Source: ACFE 2010 Global Fraud Study
3. “Continuous monitoring uses control automation to reduce
fraud and improve financial governance, typically resulting in
a substantial return on investment. It improves the reliability
of the controls, and it improves the management oversight,
policy enforcement and operational efficiency for
critical financial processes, often producing
hard-dollar savings.”
Gartner CCM Magic Quadrant 2010
4. Specify
Organizational
Objectives
Information
&Communication
Control
Activities
Risk
Assessment Control
Environment
Monitoring
“Nearly 9 in 10 rated continuous monitoring and auditing
software applications the most important technology to internal
audit over the next five years. [Use] is expected to increase from
39% to 89% within the period.”
Monitoring is Mission Critical
Implementing a system of internal
controls is important, but to realize the
long-term benefits, it must be monitored
and maintained. Monitoring closes the
loop of a properly designed controls
environment–without it, the governance
framework is incomplete and internal
control systems deteriorate over time.
With the right monitoring systems in
place, organizations can identify internal
control deficiencies quickly, take steps
to remedy the situation, and make more
informed decisions moving forward.
The CaseWare Value Proposition
The sooner control deficiencies are
detected, the greater the value to the
organization. For example, detecting
duplicated vendor invoices or insurance
claims before payment is made will save
you far more money, energy and time
than detecting them afterwards.
CaseWare Monitor delivers an effective
solution for continuous monitoring of
internal controls. By automating tasks
that are often inconsistent, inefficient and
ineffective, the solution affords you the
best opportunity for early detection
Monitoring Applied to the Internal Control Process
Closing the Governance Gap
PricewaterhouseCoopers–“Internal Audit 2012”
Source: COSO Guidance on Monitoring | Internal Control Systems, 2009
5. CaseWare Monitor
It’s Just Good Business
CaseWare Monitor is the continuous controls monitoring solution that provides secure,flexible and
immediate results to prevent fraud and revenue loss,enhance business efficiencies,and achieve control
and compliance objectives.
This complete solution allows you the freedom and peace of mind to concentrate onwhat’s
important–making critical decisions,building relationships and growing your business.
Key Benefits
Enterprise-Wide Oversight
• Effectively monitors multiple
systems across the enterprise
• Delivers a holistic view of
business processes for improved
organizational oversight
• Removes blind spots associated
with monitoring only a single
application
Loss Prevention and ROI
• Helps realize profit potential by
reducing inaccurate or malicious
reporting
• Provides opportunities to proactively
resolve issues and prevent revenue
leakage
• Achieves hard-dollar savings and a
rapid return on investment
Immediate Detection and Response
• Continuously and automatically
detects errors or abuses within
any system
• Delivers proactive alerts to
stakeholders throughout the
organization
• Improves reaction time of individuals
with ability and authority to take
action
Savings and Efficiency
• Helps improve operational efficiency
and internal controls
• Creates a sustainable process that
achieves control and compliance
objectives
• Reduces audit and compliance costs
with automated testing, reporting
and management
Ease of Implementation and Use
• Integrates easily, requiring no
changes to existing business systems
• May be implemented and maintained
without the use of expensive
consultants
6. One Solution for Any Organization
Recognized as a leader in terms of flexibility,reliability and results,
CaseWare Monitor is the perfect fit for any organization–in any
industry around theworld.Whether deploying in a single location or
across a diverse group of companies,it is ideally suited to your specific
controls and compliance needs,systems and protocols.
CaseWare Monitor improves compliance and controls through customizable business
rules and automated alerts. Additionally, it grows and evolves with your business,
delivering enterprise-wide monitoring and the ability to identify and remedy issues
systematically as you go.
Key Capabilities
One Single Controls Portal
• Simple, easy to use interface provides
enterprise-wide definition and
monitoring of controls
• Dashboard views of controls are
displayed according to variables such
as enterprise, process and users
• Key Performance Indicators available
showing business success and return
on investment
Supports Existing Systems
• Supports any business process on
any system and data from any source,
without additional infrastructure
• Integrates easily with existing
scripting tools such as IDEA®, ACL™
and Arbutus™
• Allows access to and monitoring
of data from ERPs, bespoke apps,
systems logs, telecom switches,
external databases, legacy systems,
data collection agents, and more
Parameter Management
• Business rules and controls are
customizable and new logic can be
built by users
• Analytics can be easily modified,
automated, and repeated as needed
Total Exception Management
• Leverages existing exception
reports by integrating them into the
framework
• Enables you to implement existing
CaseWare applications or create
your own
Built-In Workflow and Notification
• Fully customizable workflows
• Facilitates assignment, approval
and escalation
• Notification delivered via SMS
and e-mail
• Provides seamless management
of false positives
7. Enterprise-wide Management of Exceptions
Executives
Finance
Exception
Management
Deadlines
Escalation
Automatic detection
of resolved issues
Business Logic
Elimination of false
positives
Fine tuning of results
and parameters
Enterprise View
Organizational view
of risks and controls
Comparative
analysis
Alert Systems
SMS and e-mail
For info, action or
oversight
Audit and
Compliance Sales and
Marketing IT
Board of
Directors
Business
Units
Engineering
IT D
esSalee
nd Board o
GENERATE EXCEPTIONS
Control breaches and
suspicious transactions
CONTROL AND BUSINESS RULES
Applied using parameters
and scripts
CONSOLIDATED VIEW
Extract, transform and load
using established tools
ERPS BESPOKE
APPS
SYSTEM
LOGS
TELECOM
SWITCHES
EXTERNAL
DATABASES
LEGACY
SYSTEMS
Data From any Source
The Monitor Concept
8. The Case for CaseWare
The Scenario
• While her supervisor is on vacation, a cashier is
given permission to approve higher discounts than
normally permitted.
• Her supervisor returns, and IT reassigns her to a
Cashier role, but fails to remove the Supervisor
permissions.
• Normal discounts are below 5% and amounts are
below $100, but she is now able to both enter and
approve excessive discounts at the point of sale.
“It takes an average of
342 days to detect a
fraud, at which point
89% of all proceeds are
unrecoverable.”
KPMG Fraud Survey
9. Alert # 1 Store Manager
Segregation of
Duties violated.
No Action
Taken
Alert # 2 Escalation:Loss Prevention Officer
System Abuse–same user
creating and approving discount.
Time and money saved
Detect
Correct
Protect
I.T. ALERTED.
Cashier’s privileges
revoked
Lost $0 Lost $0 Lost $0 Lost $0 Lost $0
IT reassigns
Cashier role
She realizes
that she can
approve
discounts
Continues to
approve small
legitimate
discounts (2-5%)
Business as usual Business as usual Business as usual
Day 0 Day 1 Day 2 Day 3 Day 4 Day 5
Day 0 Day 1 Day 2 Day 3 Day 4 Day 5
IT reassigns
Cashier role
She realizes
that she can
approve discounts
Lost $0 Lost $0 Lost $800 Lost $2,400 Lost $7,300
Continues to
approve small
legitimate
discounts (2-5%)
Approves a
40% discount
for a friend
Approves a
50% discount
for her brother
Approves a
70% discount
for her brother
Month 6 Lost over $300,000
Without Continuous Monitoring
How could this go undetected?
There is nothing overtly suspicious about her activities
• The security guard at the door cannot check prices
• She is only abusing a tiny fraction of her transactions
• Her till consistently reconciles at the end of day
With CaseWare Monitor
Timely action prevents losses
• Continuous monitoring detects control breakdowns
• Automatic alerts are sent to Store Manager
• If unresolved, Loss Prevention Officer alerted
• Both are able to intervene and prevent huge losses
10. An Open Framework
The Choice isYours
CaseWare Monitor’s open design allows you to implement our
solutions,or create your own customized monitors using established
scripting tools.With these tools and CaseWare’s open framework,
organizations can monitor any controlwithin any business process.
Flexibility and Freedom
This approach gives organizations the
freedom and structure to script the basic
logic according to specific organizational
needs, while the framework handles
everything else. For example, to monitor
the creation of overtime claims in excess
of the number of work hours in the period,
the script writer can apply a simple logic
of OvertimeClaim HoursInPeriod.
We Do the Rest
After simple logic is scripted, CaseWare
Monitor handles the remaining stages,
including:
• When and how often the data is to
be monitored
• Who is to be notified and how
• The risk level associated with the
control exception
• Who is responsible for resolving the
issue and in what timeframe
• Who the exception is to be escalated
to, if unresolved
11. Receive
Issues and
Alerts
Schedule
Tasks
Process
Configuration
Design
Tests
Identify Key
Controls
Data to be
Monitored
Monitor
all Issues to
Enhance
Controls
CaseWare Monitor can monitor
data from any source
including ERPs, legacy apps,
system logs, telecom switches,
data collection agents, etc.
Design tests
using any data
query service or
easily implement
pre-configured
tests via CaseWare
Monitor Apps.
Schedule Task Management,
automation of data analysis
and process configuration.
Set scheduling and
issues distribution.
Receive issues via dashboards, notifications
and alerts (SMS and e-mail).
Monitor resolution
of all issues.
Use the workflow
management and
dashboards to manage
and document issue
resolution, report to
appropriate levels of
management and enhance
control systems.
STEP 1
STEP 5
STEP 4
STEP 3
STEP 2
Open Framework
12. Innovation,Vision and Value
About CaseWare
Foundedin1988,CaseWareisanindustryleaderinprovidingtechnology
solutionsforfinanceandaccounting,governance,andriskandaudit
professionals.Withover250,000usersin130countriesand16languages,
CaseWareproductsdelivertremendousvalueacrossindustriesandcontinents.
Proven Success
Our customers include Big Four and
other major accounting firms, as well as
Fortune 500 and Global 500 companies
–with an overall renewal rate exceeding
90%. Governments with 9 of the 15
largest economies use our technologies
to provide assurance on spending and
taxation compliance.
A Leader in Continuous Controls Monitoring
CaseWare continues to redefine the
continuous controls monitoring space with
its flagship product, CaseWare Monitor,
providing a simple, reliable solution for
organizations around the world.
Leaders In:
Paperless Engagements
Smarter Auditing
Next-Level Reporting
Data Analysis
Continuous Monitoring
Practice Management
Value-Added Services
The Old Sawmills, Nevill Estate Yard
Eridge Road, Eridge Green
Tunbridge Wells, Kent, TN3 9JR
Tel: 01892 512348
Fax: 01892 512342
www.auditware.co.uk
AuditWare Systems Limited
CaseWare Monitor is distributed in the U.K. and Ireland under an exclusive licence by: