How audits fail in Certain Assets
The recurring ways firms fell short. Click any one to read the real inspection findings.
- Estimate assumptions not evaluated38
The firm didn't sufficiently evaluate the reasonableness of the significant assumptions behind an estimate.
16 significant risk - Little or no substantive testing35
The firm performed little or no substantive testing over the account, disclosure, or assertion.
2 significant risk - Estimate method, model, or data not evaluated14
The firm didn't evaluate the method, model, or underlying data the issuer used to develop an estimate or fair value.
1 significant risk - Accounting or disclosure treatment not evaluated11
The firm didn't evaluate whether the accounting or disclosures conformed with GAAP, or didn't identify departures from GAAP or omitted disclosures.
1 significant risk - Reliance on a specialist or pricing service9
The firm relied on a specialist, pricing service, or third party without sufficiently evaluating that work.
2 significant risk - Controls not identified or tested9
The firm didn't identify and/or test controls it needed to rely on for the account or assertion.
1 significant risk - Accuracy/completeness of client data not tested8
The firm used issuer-prepared schedules, reports, or system data without testing that they were accurate and complete.
2 significant risk - Management review controls not fully evaluated6
The firm tested a management review control but didn't evaluate the specific procedures the reviewer performed, or the control's precision.
2 significant risk - Other testing deficiency6
A deficiency that doesn't fall into one of the more specific patterns above.
- Sample too small or unsupported2
The sample the firm tested was too small, or the basis for the sample size didn't support the conclusion.
- Confirmations / alternative procedures1
The firm didn't obtain confirmations, or didn't perform sufficient alternative procedures when confirmations weren't returned.
- IT general controls not tested1
The firm relied on automated or IT-dependent controls but didn't adequately test the underlying IT general controls (e.g. change management).