CRISC Certified in Risk and Information Systems Control – Question178

According to the Section-302 of the Sarbanes-Oxley Act of 2002, what does certification of reports implies? Each correct answer represents a complete solution. Choose three.

A.
The signing officer has evaluated the effectiveness of the issuer's internal controls as of a date at the time to report.
B. The financial statement does not contain any materially untrue or misleading information.
C. The signing officer has reviewed the report.
D. The signing officer has presented in the report their conclusions about the effectiveness of their internal controls based on their evaluation as of that date.

Correct Answer: BCD

Explanation:

Explanation:
Section 302 of Sarbanes-Oxley act has the tremendous impact on the risk management solution adopted by corporations. This section specifies that the reports must be certified by the CEO, CFO, or other senior officer performing similar functions.
Certification of reports establishes:

  • The signing officer has reviewed the report.
  • The financial statement does not contain, to the knowledge of signing officer, any materially untrue or misleading information and represent fairly all financial conditions and results of the enterprise’s operations.
  • The signing officers:
      [li]-are responsible for establishing and maintaining internal controls
    • -have designed such internal controls to ensure that material information relating to the issuer and its consolidated subsidiaries is made – known to such officers by others within those entities, particularly during the period in which the periodic reports are being prepared
    • -have evaluated the effectiveness of the issuer’s internal controls as of a date within 90 days prior to the report
    • -have presented in the report their conclusions about the effectiveness of their internal controls base on their evaluation as of that date

    [/li]

  • The signing officer have disclosed to external auditors, audit committee, and other directors:
      [li]all significant deficiencies in the design or operation of internal controls which could adversely affect the reliability of the reported financial data
    • any fraud, whether or not material, that involves management or other employees who have a significant role in the internal controls of the enterprise

    [/li]

  • The signing officer have indicated in the report any internal controls or changes to those internal controls which have been implemented since they were evaluated.

Incorrect Answers:
A: The signing officer has evaluated the effectiveness of the issuer’s internal controls as of a date within 90 days prior to the report, not at the time of the report.