Is your organization still struggling with manual audit processes? Do you have audit projects, past audits, and workpapers strewn about in various shared network folders (or worse, on various hard drives)? Do your auditors have to rely on email to collaborate and share documents? How about your naming convention—has your audit group standardized the way that documentation is labeled to help you to keep the information organized and easy to reference? Speaking of standardization, have audit processes been standardized across the organization or does each location or division manage their own audit program? And what would you say about your review and approval process? Is it clearly mapped, followed, and approvals communicated? Are audit findings routinely rolled up and reported?
RGP’s policyIQ addresses each of these challenges so that you can realize more effective and efficient management of your organization’s audit function. Leverage predefined Templates, Folders, Workflow, Reports, and Audit Trail for your compliance, audit, or policy management documentation. It is also simple to customize the structure to accommodate ongoing changes or characteristics that are unique to your organization, program, or team.
Configuration adjustments are at your fingertips. You do not have to reach out to a support desk or technical team to add templates for specialized workpapers, IPEs (Information Provided by Entity), or for your PBC (Provided by Client) process. Adjustments can be made directly by users authorized in your organization. If you haven’t yet incorporated those templates into the flow of your work and want some help getting them set up, we do have support and configuration specialists who are happy to walk you through the setup of your custom program.
We expect all of RGP’s policyIQ audit clients to be enjoying these benefits in your audit program:
Consistent enterprise-wide audit process
Centralized access to workpapers and IPEs
Simplified administration of PBCs and audit process
Ability to easily locate and leverage audit templates/projects and previous audits
Streamlined communication among management, auditors (internal and external), and approvers
Real-time monitoring capability and status reporting
Simplified management and audit committee reporting
We’re ready to help you reach your goals!
Whether you are an existing policyIQ user or a new one, we want to help you to improve and automate your audit program. Perhaps you are new to the administration of your site or you are not sure how to make adjustments to the configuration of your site’s templates or structure. Reach out to us and we’ll be happy to help you get started or to optimize your implementation. Support@policyIQ.com.
Is your team overwhelmed with activities that feel unnecessary?
How confident are you that the energy spent on testing is focused on the necessary controls?
Leverage policyIQ to systematically focus on the critical controls for management and testing. More efficiently analyze which Financial Statement Assertions, relative to each of your 10K line items, are adequately controlled, which are left vulnerable and which of your relevant assertions is over-controlled! See, plainly, the gaps in your coverage and leverage the evidence to justify the reduction of waste, and plan to concentrate effort on work that matters.
This process really starts with your risk assessment. If you have not leveraged policyIQ to bring automation and reliability to your risk assessment process and want to walk through the policyIQ solution (including the just-released feature that makes cumulative risk calculations possible), reach out to schedule a free working meeting with us! After completing your risk assessment, identifying significant accounts and relevant assertions, and determining which of your processes and objectives are in scope (all steps that can be managed in policyIQ), you can begin the process of rationalizing your controls.
Next, leverage policyIQ to move through these five Control Rationalization steps:
Each step is made more efficient with policyIQ. We can support you to customize templates for the attributes that are critical and unique to your organization. The import, linking, calculations, workflow, and reporting features will allow you to more quickly examine the effectiveness and priority of your procedures. Having confidence in your Control Rationalization process and your internal control environment then allows you to come full circle to look at the bank of risks that you previously identified. You might conclude that some process risks that have consumed time and attention for years are actually not in scope. This Control Rationalization process will help you to be more effective and more efficient through each testing cycle.
Would you like to see sample templates and schedule a working meeting to get the ball rolling? Contact us and reap the benefits by your next testing cycle!
Are you paying employees to inventory email responses or spend hours in update meetings to accomplish tasks that can be automated? With the application of policyIQ forms, your employees can take back time that was spent on tedious tasks and focus on work that matters.
If your team is still using Word, Excel, and email to manage 302 Certifications, Control Self Assessments and Narrative Reviews, they are engaging in the frustrating task of having to inventory the responses from their inbox and then babysit and pester people to complete their work. As responses do arrive, they evaluate who they’ve heard from, who hasn’t responded, and evaluate whether/which follow-up activities are warranted. They are likely also having to pull together routine assessments regarding the status of responses to share with management and others.
Before anyone invests another minute on the effort of pulling together the Narrative Reviews for next quarter, contact us to help your team realize these benefits right away:
Simplified roll-out of questions/certifications each quarter
Easy access to real-time information for monitoring of status
Automation of reminders going out to outstanding respondents
Automated compiling of results
Effortless reporting for management
There are lots of products out there that will set you back $50-$500k annually that promise efficiency gains in your compliance processes. For a fraction of that cost, we’ll deliver on that promise in a matter of weeks—not months or years. Work smarter. Spend smarter. Contact us today to schedule your configuration session.
“A narrative provides mid-level detail of the transactions and internal controls within a business process and includes who, how frequent, and in what location the transactions and controls are being performed…
…Narratives should be updated as changes are implemented in the organization. The updates should follow a workflow where there is a review process for significant changes.”
For many clients, automating the process of updating compliance documentation is a critical but often overlooked part of their practices. Each year, various aspects of controls may change, such as steps of the control procedure, the control description, or control ownership. As these critical bits of information are updated, it is important, as Mr. Chiang stated, that the associated narrative pages are also updated to reflect the latest information.
Who wants to avoid redundant effort and rework?!
If you haven’t already implemented policyIQ or you have policyIQ and you haven’t taken advantage of this feature, this is a good time to tune in and make a note: policyIQ has a “linked field” option that allows you to update control language (or other documentation) in one place and present the updated language in related documents—here’s the key: without redundant effort or rework!
Displaying all related Controls in the Narrative is probably the most common request, but you can also display Risk language in Controls, Control language in Tests, and the contract review conclusions in a management summary page, among a seemingly infinite number of options! No more hunting down related documents to make small tweaks–it’s already done!
To learn more about how reduce redundant effort and rework, contact our team at Support@policyIQ.com.
Are your employees still manually managing Risk Assessments using spreadsheets?
If you answered yes, they are likely struggling to work with others efficiently, they are frustrated by version control issues, and they are wasting time trying to figure out who has given input and who still needs to provide information.
The data in spreadsheets is difficult to aggregate. Performing analyses within a spreadsheet is limited, and across multiple spreadsheets it is nearly impossible. There are nearly always issues with data entry and, therefore, data integrity. So, your employees are likely also spending time having to validate and track down information and they’re likely performing rework to shore up assessments and findings. For all of these reasons, spreadsheets prolong the time and expense of audits.
RGP’s policyIQ team has developed features that help you to automate questionnaires, inventories, risk ratings, capability measures, track gaps and roll-up findings. Your management and audit teams can begin collaborating on their finance, operational, fraud and enterprise risk assessments right away. Contributors from your locations can work together in one flexible and easy to use tool with confidence in the security and accuracy of their information and analyses. Templates for various risk assessments are easy to customize. Notes and assumptions from previous assessments can be easily referenced and considered in current risk calculations.
Your auditors can remotely review the content that you choose to make available to them and only after it has completed the review process that you enforce using policyIQ.
Reach out to us to request your free trial site and to learn more about how your team can end their reliance on spreadsheets. Work smarter.
When deploying a technology platform for any GRC process, many questions are considered during the procurement process.
“How long will this take to get up and running?”
“Is it customizable?”
“Is this software affordable – and what if we choose to expand the scope of our deployment?”
Within the scope of GRC, policyIQ can be used to implement nearly any type of risk assessment – and can be done quickly (with custom tailored content), all at an affordable price. It’s a system that grows as you grow. But as you likely know, risk assessments are an area that has a seemingly infinite number of options on how to get from A to Z. Fraud Risk? Financial Risk? Third Party Risk? And the various methodologies to achieve each can be staggering.
Can I implement my own methodology, or am I forced to use the software’s built-in items?
You’d be surprised to find that for many software platforms, the response to this doesn’t always yield positive answers. One of the benefits of utilizing policyIQ is that the keys are in your hand for making this decision. We have clients from all corners of the globe that choose to use their own methodologies when leveraging our software – and are able to do so with excellent results. Likewise, many organizations have sought subject matter expertise, looking for a proven methodology and guidance to help them get the ball rolling.
Regardless of the approach, policyIQ’s flexible platform is fine-tuned by the client to become the go-to place for establishing a consistent and reliable risk assessment environment, year after year.
RGP is hearing from Public and Private companies who are working to get a handle on their Revenue Recognition compliance efforts. As with many new initiatives, most of those tasked with the responsibility of rolling out a contract review process began with authoring the process in Excel. This particular process, more than some, requires a number of people with varying technical skills and technical accounting expertise to work through a long checklist or multiple spreadsheets full of questions and considerations. And, like many others, these teams are racked with frustration over the common ills of spreadsheet-based processes:
Almost as soon as the tool is put to use, the version is out of date and the data does not reconcile with other versions.
It is difficult to track and understand which version is the latest or the “best”.
Often, spreadsheets are not properly secured and suffer unintended changes.
Changes to data attributes in the spreadsheets can have significant impact on conclusions.
Sharing and communicating lessons and conclusions is a massive and disjointed effort.
It is difficult to roll-up the results from multiple spreadsheets for analysis and reporting to management and auditors.
If multiple people must work in and make adjustments to the spreadsheet, it can be remarkably challenging to trace the changes back to the appropriate party.
It is virtually impossible to dictate order of responsibilities and to consistently communicate and enforce an approval process.
RGP has a few remedies that can help you to treat or avoid these ills.
Private Companies – RGP has a proven Revenue Recognition solution that can help companies from your early assessment through planning how you will fill gaps in policies and systems and can aid your team with the implementation of agreed upon solutions, controls, policies and associate training and communication.
Public Companies – Those who worked to tackle ASC 606 compliance on your own in year one can certainly still call on us to evaluate your program and to identify and guide you to address and close gaps.
All Companies can take advantage of RGP’s proprietary tool, policyIQ, to remedy the ills associated with spreadsheet based processes. Companies have the option of
leveraging the flexible and configurable policyIQ to automate your own checklist or questionnaire or
you can adopt the RGP solution with pre-built templates that guide the reviewers through the contract review process.
In either case, you can put your spreadsheet worries to rest and bring centralized access, version control, workflow, reporting for analysis and management review to your Revenue Recognition program.
Contact us to learn more about our technical accounting expertise, project support, and proprietary technology: support@policyIQ.com.