Internal Control Frameworks, IT Controls, and Control Documentation

AUD control-framework coverage for COSO, entity-level controls, IT controls, walkthroughs, and control limitations.

This chapter builds the internal-control framework that supports audit planning and later control testing. It is one of the most important routing chapters in AUD because many later decisions depend on whether the control system is understood correctly.

In This Chapter

How to Use This Chapter

  • Read this chapter carefully before moving to formal risk assessment.
  • Focus on what each control layer does and why no control system eliminates risk completely.
  • Return here when an AUD miss stems from weak control terminology or confusion about walkthrough, ITGC, or override concepts.

In this section

Revised on Friday, April 24, 2026