Papers in this syllabus

Paper 8

FRAUD RISK MANAGEMENT

Read study notes

This paper is intended to equip the candidate with knowledge, skills and attitudes that will enable him/her to develop and implement an effective fraud risk management program.

On completion, a candidate should be able to

  • Identify, prioritise, evaluate, and treat fraud risks
  • Identify fraud related controls and evaluate their effectiveness
  • Analyse existing risk management frameworks and their application to manage fraud risk
  • Develop a fraud risk management program
  • Identify, assess, and manage fraud risks from all sources and support fraud risk management initiatives by establishing an anti-fraud culture and promoting fraud awareness throughout the organisation

Content

  1. 1

    INTRODUCTION TO RISK MANAGEMENT

    1. 1.1

      Definitions of risk

    2. 1.2

      Definition of fraud risk

    3. 1.3

      Types of fraud risks

    4. 1.4

      Definition of risk management

    5. 1.5

      Principles and aims of risk management

    6. 1.6

      Current state of risk management

    7. 1.7

      Risk management frameworks

    8. 1.8

      Risk management process

    9. 1.9

      Fraud risk management- convergence of enterprise risk management and internal control

  2. 2

    Risk Governance/Responsibility

    1. 2.1

      The Board of Directors

    2. 2.2

      Board Audit and risk committee

    3. 2.3

      Management

    4. 2.4

      Risk and compliance functions

    5. 2.5

      Internal audit

    6. 2.6

      Legal department

    7. 2.7

      Human resources

    8. 2.8

      Information Technology

    9. 2.9

      Investigation function

    10. 2.10

      Employees

    11. 2.11

      External Auditors

    12. 2.12

      Regulatory Agencies

    13. 2.13

      Anti-Corruption Agencies

    14. 2.14

      Fraud Risk management team

  3. 3

    FRAUD RISK MANAGEMENT

    1. 3.1

      Definition of fraud risk management

    2. 3.2

      The objectives of a fraud risk management program

    3. 3.3

      Fraud risk management principles

    4. 3.4

      Steps in developing a fraud risk management program - risk appetite, investment of anti-fraud controls, prevention of material fraud

    5. 3.5

      Fraud risk management program components

    6. 3.6

      Fraud risk policy components

    7. 3.7

      Risk Management Frameworks - Integrating Anti-fraud initiatives into risk management

    8. 3.8

      ISO 31000 2018

    9. 3.9

      Use of data in managing fraud risks

  4. 4

    Fraud Risk Assessment

    1. 4.1

      Definition of fraud risk assessment

    2. 4.2

      Inherent and residual fraud risks

    3. 4.3

      Factors that influence fraud risk

    4. 4.4

      Objective of a fraud risk assessment

    5. 4.5

      Why conduct a fraud risk assessment

    6. 4.6

      Effective fraud risk assessment

    7. 4.7

      Preventive and detective fraud controls

    8. 4.8

      Fraud risk assessment frameworks

    9. 4.9

      Tool for doing risk assessment - Risk register

  5. 5

    Fraud Risk Management Process

    1. 5.1

      Risk identification- Identification of pertinent fraud schemes

    2. 5.2

      Risk analysis - Establish weight of each identified fraud scheme

    3. 5.3

      Risk Evaluation - Review effectiveness of existing controls

    4. 5.4

      Risk treatment/Mitigation - Responding to residual fraud risks

    5. 5.5

      Monitoring and Communication - Reporting and monitoring key risks

    6. 5.6

      Designing a Fraud risk management plan/report

  6. 6

    Fraud Risk Register

    1. 6.1

      Definition of a risk register

    2. 6.2

      Designing a fraud risk register

    3. 6.3

      Using a fraud risk register to manage risks

    4. 6.4

      Designing a Key fraud risk register

  7. 7

    Case Study - Fraud Risk Management Based on the case study • Identify various fraud risks • Analyze the identified fraud schemes using a risk matrix (Likelihood and Impact) • Identify the existing detective and preventive controls • Evaluate the effectiveness of the preventive and detective controls • Evaluate the level of the risks • Identify various responses for identified fraud risks • Develop fraud risk frameworks (1&2)