AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

30
AUDITING IT PROCUREMENT FRAUD SCHEMES MARIO B. DEMARILLAS PRESIDENT – ISACA MANILA CHAPTER

Transcript of AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Page 1: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

AUDITING IT PROCUREMENT FRAUD

SCHEMES

MARIO B. DEMARILLAS

PRESIDENT – ISACA MANILA CHAPTER

Page 2: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

IT SPENDING STATISTICS

Page 3: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

PHILIPPINES IT SPENDING

• 2015 – $7.30B

• 2016 - $7.88B

• 2017 - $8.52B

• 2018 - $9.20B

• 2019 - $9.93B

• 2020 – $10.73B

Php 6.8B

Page 4: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

DEBUNKING MYTHS AND BELIEFS

Page 5: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

MYTHS & BELIEFS

Page 6: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

MYTHS & BELIEFS

Page 7: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

OPPOSING FORCES

FRAUDWILLINGNESS TO

UNCOVERABILITY TO CONCEAL

Page 8: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

COMMON FRAUD SCHEMES IN THE

PROCUREMENT PROCESS

Page 9: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Pre-Solicitation Phase

Pre-solicitation phase

Need recognition Bid tailoring

Narrow specifications

Broad specifications

Vague specification

Bid splitting Unjustified method of procurement

Change order abuse

Page 10: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Solicitation Phase

Solicitation phase

Bid manipulation Leaking bid dataCollusion among

contractors

Complementary bids / Bid rotation / Bid

suppression / Market division

Defective pricing schemes

Inflating labour costs

Inflating material costs

Page 11: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Bid Award and Evaluation Phase

Bid evaluation and award phase

Bid manipulation Leaking bid data

Page 12: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Post-Award & Administration Phase

Post-award and administration phase

Non-conforming

goods/services

Change order abuse

Cost mischarging

Accounting mischarges Material mischarge Labor mischarges

Page 13: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

RISKY BUSINESS OF FRAUD

Page 14: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

• Monitor – 24 inch LCD, 1080p

• Sixth Intel Generation Core

• Graphics –Nvidia GTX 950

• Microsoft Office

• RAM – 16GB

• Hard Drive – 256 GB

• Optical Mouse and Keyboard

Miss Universe – Q&A

Page 15: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

• Monitor – 24 inch LCD, 1080p

• Sixth Intel Generation Core I5

• Graphics –Nvidia GTX 950

• Microsoft Office 2016

• RAM – 16GB

• Operating System – Windows 10

• Hard Drive – 256 GB SSD

• Optical Mouse and Keyboard

SwitchBoarding

Page 16: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

• Purchased 200 laptops

• Purchase Price – less 5% discount

• 30 days delivery lead time

• 3 years warranty

• Same supplier for 10 years

Harry Potter’s Invisibility Cloak

Page 17: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

• Purchase 150 laptops – P480K

• Delivery – 30 days

• Vendor – Company X

• Purchase 130 laptops – P480K

• Delivery – 5 days

• Vendor – Company X

Siamese Twins

Page 18: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Snail Mail Internet

Bandwidth

Traffic

Employee

Page 19: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

License to Kill

USER CALs

DEVICE CALs

MS SQL VERSION???

Page 20: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Substituted Filing

• Project Manager

• System/Business Analyst

• Team Leader

• Programmer

• Designer

Page 21: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

• Monitor – 24 inch LCD, 1080p

• Sixth Intel Generation Core I5 (I7)

• Graphics –Nvidia GTX 950

• Windows 7 Ultimate (Win 8)

• Microsoft Office

• RAM – 16GB (32GB)

• Hard Drive SATA – 256 GB (SSD)

• Optical Mouse and Keyboard

Change is Constant

Page 22: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

Regulatory Compliance

Enterprise and

Operational Risk

Audit Management

IT & Security Risk

ERM is key to Sustainability

• Audit

Management

• Enterprise and

Operational Risk

• Regulatory

Compliance

• IT & Security Risk

Page 23: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

• Company 1 (P 50M)

• Company 2 (P 55M)

• Company 3 (P 60M)

• Company 4 (P 52M)

• Company 5 (P 63M)

FFTW

Technical Specs Revised Price

P 50M

P 55M

P 49M

P 48M

P 68M

Page 24: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

SEEING THROUGH THE LENS

Page 25: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

SELF COLLEAGUES

CULTUREPROCESS

AWARENESS

Page 26: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

DETERRENCE IS KEY

Page 27: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

LEARN TO STUDY PATTERNS

Page 28: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

SUBSTANTIATE MORE

Page 29: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter

QUESTIONS???

Page 30: AUDITING IT PROCUREMENT FRAUD SCHEMES - Philippines Chapter