Continuous fraud detection in enterprise systems through audit trail analysis

PJ Best, P Rikhardsson… - Journal of Digital Forensics …, 2009 - commons.erau.edu
PJ Best, P Rikhardsson, M Toleman
Journal of Digital Forensics, Security and Law, 2009commons.erau.edu
Enterprise systems, real time recording and real time reporting pose new and significant
challenges to the accounting and auditing professions. This includes developing methods
and tools for continuous assurance and fraud detection. In this paper we propose a
methodology for continuous fraud detection that exploits security audit logs, changes in
master records and accounting audit trails in enterprise systems. The steps in this process
are:(1) threat monitoringsurveillance of security audit logs for 'red flags',(2) automated …
Abstract
Enterprise systems, real time recording and real time reporting pose new and significant challenges to the accounting and auditing professions. This includes developing methods and tools for continuous assurance and fraud detection. In this paper we propose a methodology for continuous fraud detection that exploits security audit logs, changes in master records and accounting audit trails in enterprise systems. The steps in this process are:(1) threat monitoringsurveillance of security audit logs for ‘red flags’,(2) automated extraction and analysis of data from audit trails, and (3) using forensic investigation techniques to determine whether a fraud has actually occurred. We demonstrate how mySAP, an enterprise system, can be used for audit trail analysis in detecting financial frauds; afterwards we use a case study of a suspected fraud to illustrate how to implement the methodology.
commons.erau.edu
以上显示的是最相近的搜索结果。 查看全部搜索结果