|
|
| |  | Overview of our Services to CPAs and Financial Auditors As clients increasingly rely on technology for information, business processes and internal control regime, the ability to assemble and analyze endless streams of data in real-time requires specialized skills to understand, interpret and analyze. We assist small to mid-size CPA firms with IT related issues to enable them to concentrate and focus on their core consulting, tax, and attestation services. We provide them an information technology perspective, an evaluation of IT General control and also application controls. Spry Control Information Technology practice works closely with CPA firms to work on software, database, and other diverse technology systems as a component of CPA firm services.
With our IT and accounting know-how, we are best qualified to work on computerized accounting systems and the data they contains for evaluation and interpretation. We also evaluate the efficacy of input controls, processing controls, and output controls as well as information received from other systems within the network or outside the network. We can even assist CPA firms on Computer Assisted Audit Tools (CAATs) and help them to interpret the results of the procedures. Spry Control does not provide attestation and assurance services to the clients. IT General and Application Controls
Statement of Auditing Standard (SAS) 94, The Effect of Information Technology on the Auditor’s Consideration of Internal Control in a Financial Statement Audit, requires the consideration of the importance of IT processes and controls in the preparation of financial statements. In addition, an auditor must consider whether an IT specialist is required. Spry Control fills this gap with professional services targeted to small and mid-sized regional firms. Based upon the importance of IT in financial statement processes, the level of reliance on IT controls, and the IT knowledge required for the financial auditor, we provide suitable assistance to the financial auditors without having an in-house specialist.
Internal control services are a culmination of information technology and financial reporting to ensure that companies have effective internal control as part of regulatory compliance including SOX, GLBA, HIPAA, Privacy Laws, and others. We help CPA firms to test IT General and Application Controls to form an opinion on management assertions on internal control. On an as needed basis, we also provide services to evaluate IT Governance for CPA firms for regulatory compliance purposes.
General IT controls include the procedures and processes that support the overall processing of business applications of an organization. These controls include areas such as access to programs and data, data center operations, program development, program changes, IT disaster recovery plans, and the proper segregation of duties of information systems department personnel. The general controls are important because they support application processing. Computerized application controls include the controls involved in the processing and storing of business transactions. We also work on testing the effectiveness of application controls at input, processing and output levels for financial auditors to evaluate the results and form an opinion. SAS 70 Audit Support We also help service auditors to review and evaluate the extent and effectiveness of internal controls in the service organization under Type-1 and Type-2 SAS 70 audits. Spry Control does not provide any attestation services.
Security and Control Assessment With our security and control expertise, we can advise CPA firms on the state of systems security to evaluate the integrity of the data for financial reporting purposes. This may also include the enterprise wide security assessment or specific requirements on a component of security including an assessment of the network, systems, or devices. We can undertake work on both.
Digital Forensic and Investigation Support With our IT Audit and system security services CPA firms can offer forensic accounting relating to specific transactions or transaction cycle for internal or external investigations and corrective actions using our methodology and expertise of our Accounting Forensics. We follow our Fraud or Civil Investigation Methodology to identify the specific needs and carryout responsive investigation services for accounting and digital forensic evidence to meet the engagement objectives. Our service are available to CPA firms where fraud is suspected and additional efforts are needed to probe digital information to detect fraudulent transactions. Our Fraud Prevention and Detection services focus on key fraud related preventive controls, and monitor and isolate transactions as part of detection system for proper investigation.
| |