Part 2 project

Turn in Part 2 of the project.

The second part of the project, due at the end of this unit, requires you to identify and describe internal controls in the business process that you documented for Part 1 of the project.

  1. Start with the document turned in for Part 1. Review each stage of the process and identify where an internal control SHOULD exist. Then, determine if a control actually DOES exist. Extend your document by creating a new section at the end that explains the nature of the internal controls currently working and that identifies controls that should be put in place. As this exercise involves a single business process, include only manual (i.e., human) and application-level IT (i.e., system) controls. Use the guidelines below for your documentation and make sure to reference your system flowchart.

    Documentation Guidelines of Existing Controls:

    • Identify the risk the control mitigates.

    • Detail if the control is manual or an application-level control.

    • If manual, identify the person(s) involved and explain what they do.

    • If an application control, classify the control as an input, processing, or output control and explain how the control works.

    Documentation Guidelines of Missing Controls:

    • Identify the risk not covered by existing controls.

    • Propose an internal control that would mitigate the risk. Make sure to include the same information from the guidelines for existing controls documentation.

  2. Discuss general IT controls with a member of the organization you chose who is knowledgeable in this area. Identify and document five general IT controls important to the organization.

    Documentation Guidelines of Existing General IT Controls:

    • Identify the risk the control mitigates.

    • Classify the control as one of the five types listed within your textbook: 1) personnel policies, 2) file security controls, 3) business continuity planning, 4) computer facility controls, or 5) access to computer file.

    • Explain how the control works.

After adding the requirements from Part 2 of the project to the original document submitted in Part 1, the amended document should be 8–10 double-spaced pages and will be evaluated for content and professionalism. Make sure to proofread, and then proofread again. Even ask a friend or relative to read for ease of reading and proper use of grammar/spelling. Submit via course Dropbox by the final day of the unit.


the book you can find