Integrated Approach Model of Risk, Control and Auditing of Accounting Information Systems

  • BRANDAS C
  • STIRBU D
  • DIDRAGA O
N/ACitations
Citations of this article
57Readers
Mendeley users who have this article in their library.

Abstract

The use of IT in the financial and accounting processes is growing fast and this leads to an increase in the research and professional concerns about the risks, control and audit of Ac-counting Information Systems (AIS). In this context, the risk and control of AIS approach is a central component of processes for IT audit, financial audit and IT Governance. Recent stud-ies in the literature on the concepts of risk, control and auditing of AIS outline two approach-es: (1) a professional approach in which we can fit ISA, COBIT, IT Risk, COSO and SOX, and (2) a research oriented approach in which we emphasize research on continuous auditing and fraud using information technology. Starting from the limits of existing approaches, our study is aimed to developing and testing an Integrated Approach Model of Risk, Control and Auditing of AIS on three cycles of business processes: purchases cycle, sales cycle and cash cycle in order to improve the efficiency of IT Governance, as well as ensuring integrity, reali-ty, accuracy and availability of financial statements. Introduction The high level of using the information technology in financial and accounting pro-cesses in organizations [1] results in an in-crease in research and professional concerns about the risks, control and audit of Account-ing Information Systems (AIS). The risks and vulnerabilities of Accounting Information Systems may lead to material misstatements in financial reporting. Most times these risks have negative impact on the integrity, accuracy, reality and availability of financial reports [2]; [3]; [4]. In this context, risk and AIS control approach is central to both financial and IT audit processes and IT governance processes within the organiza-tion. In this study, researching financial and IT audit process relations, and using the con-cepts of risk and control, we developed and applied an integrated approach model of risk, control and auditing of AIS. The purpose of this model is the integration approach of risk, control and AIS audit in the IT audit process-es and financial audit processes in order to improve the efficiency of IT Governance, as well as ensuring integrity, reality, accuracy and availability of financial statements. The paper is structured in four parts. In the introduction we presented the current re-search regarding the integrated approach of risk, control and auditing in the IT auditor's perception, as well as the financial auditor's perception and we showed the need to devel-op a model. In the second part, we presented the research methodology. In the third part, we presented the model development and we discussed the findings of applying the model. Finally, we presented our conclusions regard-ing the research.

Cite

CITATION STYLE

APA

BRANDAS, C., STIRBU, D., & DIDRAGA, O. (2013). Integrated Approach Model of Risk, Control and Auditing of Accounting Information Systems. Informatica Economica, 17(4/2013), 87–95. https://doi.org/10.12948/issn14531305/17.4.2013.08

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free