Audit Tool Automating Risk-Based Control Assessment

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current auditing processes lack an integrated system for conducting audits and processing risk-related assessment data to determine and generate a suggested audit approach and set of procedures consistent with relevant standards, particularly in assessing internal controls and financial statement integrity.

Innovation Solution

A computer-implemented tool that performs audit planning, risk-based assessments, and generates procedures for evaluating internal controls, allowing auditors to focus on high-risk areas and optimize the audit process, integrating with existing tools like Thomson's SMART e-Practice suite.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If auditors manually conduct risk assessments and evaluate internal controls using traditional methods, then they can exercise professional judgment and adapt to specific circumstances, but the process is time-consuming, inconsistent, and lacks integration with audit planning tools

Engineering Contradiction:
ImproveProfessional judgment flexibilityVSAvoidAudit planning time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent introduces a computer-implemented tool as an intermediary between auditors and audit planning processes. This tool receives risk assessment data, processes it according to established criteria, and generates suggested audit approaches and procedures. The intermediary automates time-consuming manual processes while preserving auditor judgment flexibility through configurable parameters and professional oversight capabilities.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary risk assessment and analysis before the main audit planning process. By pre-processing risk data, identifying key control areas, and generating initial audit approaches in advance, the system reduces the time required during actual audit planning while maintaining adaptability through subsequent auditor review and adjustment.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If auditors conduct comprehensive testing of all internal control items, then they ensure thorough assessment of control effectiveness, but the cost and time requirements increase significantly

Engineering Contradiction:
ImproveControl assessment thoroughnessVSAvoidAudit efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent applies local quality by directing audit resources and testing intensity to specific high-risk areas identified through risk assessment, rather than uniformly testing all control items. The system analyzes risk data to determine which control areas require more thorough examination and which can be assessed with less intensive procedures, optimizing both reliability and productivity.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system performs partial action by focusing testing efforts on the most critical control areas identified through risk assessment rather than conducting exhaustive testing of all controls. This selective approach maintains sufficient assurance for high-risk areas while reducing overall testing burden, achieving an optimal balance between thoroughness and efficiency.

Inventive Principle:
Principle #16Partial or excessive action

3Adaptability or versatility

If auditors use multiple separate tools and resources for audit planning, risk assessment, and procedure generation, then they can address specific audit needs, but the system complexity and integration requirements increase

Engineering Contradiction:
ImproveAudit tool functionalityVSAvoidSystem integration complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges multiple separate audit tools and functions into a single integrated computer-implemented system. The integrated tool combines risk assessment capabilities, internal control evaluation functions, and audit procedure generation in one unified platform that processes data flow between components, reducing system integration complexity while maintaining comprehensive functionality.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The system achieves universality by designing a multi-functional tool that can perform various audit tasks including risk assessment, control evaluation, and procedure generation within a single platform. This universal tool reduces the need for multiple specialized tools while maintaining the adaptability to handle different audit scenarios through configurable parameters and comprehensive functionality.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8504452B2Method and system for auditing internal controls
Publication Date: 2013.08.06 THOMSON REUTERS ENTERPRISE CENTRE GMBH
  • US8504452B2 patent drawing
  • US8504452B2 patent drawing
  • US8504452B2 patent drawing

AI summary

The present invention provides a computer-implemented method and system for assessing internal controls. The method includes: presenting internal control items; processing an input set associated with at least some of the internal control items; and (c) generating a set of assessment information based on the processed input set. The method may further include one or more of: (d) prior to presenting, automatically grouping and presenting a subset of the plurality of internal financial control items based on a user input related to an assessment of risk; (e) prior to presenting, automatically presenting a previously identified risk associated with one or both of an audit area and a transaction class associated with a subset of the plurality of internal financial control items; (g) receiving a user test input designating an internal financial control item for testing and presenting a set of test procedures associated with the designated internal financial control item; (h) documenting assessments with the set of test procedures; and (i) receiving from a user a plurality of inputs representing user assessment of the effectiveness of internal financial control items and presenting a summary of the effectiveness assessments.