The #IIA mandates an approach that may lead you to perform the wrong audits because its #GIAS is not enterprise risk-based.
I discuss and share real-life examples in today's blog post.
What do you think?
https://t.co/Nnq7V3qGXU via @normanmarks
There are some excellent insights in a new #risk survey. It includes several related to #AI.
I think it is worth considering and discussing.
What do you think?
https://t.co/Nklpkbi0sk via @normanmarks#audit#GRC#boards#governance#IIA#ISACA
Layoffs can be a huge risk for #risk and #audit practitioners. Serious risk and #control issues may result from a RIF that cuts the wrong people.
What should practitioners do? See https://t.co/hTypC63gh3 via @normanmarks
A critical and difficult role for internal audit: providing assurance that #AI agents are doing what they should.
Idiscuss this and share some guidance on how to test an #AI at https://t.co/T8WIVmFoIJ via @normanmarks
#COSO has just issue new #ERM guidance. How good is it? I highlight some fine content and point out its missing content.
https://t.co/w2aBEd40nK via @normanmarks
Can you trust ChatGPT? I share how it made up facts based on its conformance bias. Its answer was influenced by other information and was wrong. It even admitted it.
Do you have controls to ensure your #AI is not making stuff up?
https://t.co/8JkceMk6gu via @normanmarks
The Clean Audit Report. Is it valuable or does it mean the #audit was a waste of time?
I discuss today at:
https://t.co/v6SfWRCJtX via @normanmarks#IIA#ISACA#GRC#governance
Can and should you come up with a quantification of #cyber#risk? Does that make sense? Does it help with making business decisions on how much to invest?
I discuss in today's blog post at:
https://t.co/KQ1ByHDHK5 via @normanmarks#audit#GRC#IIA#ISACA#governance#ERM
What is in the future for internal #auditing? How will we evolve as businesses, processes, and controls evolve?
As I discuss in today's blog post, it's so much more than learning to use #AI ourselves.
Don't delay.
What do you think?
https://t.co/MWgaCwqOni via @normanmarks
Does it make sense to talk about #riskappetite when it comes to #fraud? Is there such a thing as an amount of #risk that should be quantified in monetary terms?Is there a better way?
I discuss in today's blog post at https://t.co/n5JyxZEAdk
Almost everyone has too many controls in their SOX scope.
I discuss that in today's blog post and provide some ideas on how to test to see if your scope is right for the risk of a material error or omission.
https://t.co/CE171lVA3Q via @normanmarks
#Risk is everywhere. What does that mean for the risk practitioner, the internal #auditor, management, and the #board?
I discuss the value of a periodic review of a short list of risks vs making sure #decisions and informed and intelligent.
https://t.co/6rZwOAHCfl
#IIA#GRC
A great typically British take on the state of our roads.
Very funny but sadly true. Where is all of the tax money going ? Not on repairing potholes that’s for sure. Please share
What are we auditing?
A recent survey said only 5% ar auditing strategic issues.
What does that mean and is it a problem?
I discuss in today's blog post at
https://t.co/wp5P3lrzfh via @normanmarks#audit#risk#GRC#IIA#ISACA