IIA training and events

A practical guide to evaluating risks and controls

Presented By
Stephen Maycock CFIIA CRMA Stephen Maycock is a professional trainer, writer and consultant. His broad international experience, spans a number of sectors, and this has provided him with some fascinating case studies which he uses to bring his training to life.

There are many theoretical models and frameworks that promote effective risk management and internal control processes. The challenge for assurance providers is how to put them to good use. This course will help you apply theoretical knowledge to practical situations and improve the effectiveness of your work.


Who should attend?

This course is open to all.


What will I learn?

Upon completion you will be able to:

  • apply risk and control frameworks to a range of assurance processes
  • work with management at all levels to identify and understand key risks and controls
  • define risks and controls in a manner that will help provide the correct focus for assurance
  • use risk and control models to evaluate controls/other risk mitigation strategies
  • appreciate the role of monitoring within risk and control frameworks
  • use risk and control models to design tests, interpret results, put findings in a business context and formulate useful recommendations.

Course programme

Risk management

  • key stages of risk management
  • applying risk management frameworks to internal audit processes
  • making effective use of the output from risk management systems.

Understanding risk

  • identifying, clarifying and describing risks in an effective manner
  • the difference between risks and issues
  • how to distinguish between business risks, process risks, and control risks.

Evaluating controls

  • understanding the full range of controls and their models
  • the role of monitoring controls
  • evaluating controls within the context of control models.

Testing with a clear purpose

  • the use of risk and control models in test design
  • testing within the context of risks and controls.

Analysing internal audit results

  • interpreting the results of internal audit work
  • putting findings within a business context
  • use of control models in the formulation of recommendations.

 Providing assurance

  • getting the message across
  • providing assurance within the context of risk and control frameworks.

Managing relationships

  • how to work effectively with management at each stage of the assurance process.

Consulting engagements

  • applying risk and control models in consulting assignments.

CPE competency areas covered

  • Internal audit delivery
  • Governance, risk and control

14 CPE points


Full price

Member: £1175 + VAT
Non-member: £1390 + VAT

SAVE £200 when you book this course 3 months in advance


All training courses are subject to our Fair Collection Notice and Privacy Policy

Sorry, there are no events currently scheduled, please check back again soon