Risk-oriented Internal Audit in the ERM Framework
Yongchen Li, Yang Wen
Abstract
Yongchen Li, Yang Wen
Abstract
According to Chinese Enterprise Internal Control Basic Requirements, the listed companies in China needed to establish and operate the risk management-oriented internal control system. From the influences of the establishment of risk management framework on internal audit, this article discusses several ideas on enterprises' transition from traditional internal audit to risk-oriented internal audit. Enterprise risk management (ERM) as a risk-oriented internal audit of the main business, internal auditors are not involved in the process of the establishment and operation of ERM framework. Risk-oriented internal audit's core role in relation to ERM should be to provide assurance to management and to the board on the effectiveness of risk management. The problems that the risk-oriented internal audit should pay attention to are both responsibilities and independence.
OpenAlex reports 1 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
According to Chinese Enterprise Internal Control Basic Requirements, the listed companies in China needed to establish and operate the risk management-oriented internal control system. From the influences of the establishment of risk management framework on internal audit, this article discusses several ideas on enterprises' transition from traditional internal audit to risk-oriented internal audit. Enterprise risk management (ERM) as a risk-oriented internal audit of the main business, internal auditors are not involved in the process of the establishment and operation of ERM framework. Risk-oriented internal audit's core role in relation to ERM should be to provide assurance to management and to the board on the effectiveness of risk management. The problems that the risk-oriented internal audit should pay attention to are both responsibilities and independence.
Key concepts: Internal audit, Control environment, Business, Enterprise risk management, Accounting, Risk management, Information technology audit, Audit plan