Standards for Management Responses and Findings Remediation

10 posts / 0 new
Last post
erichoffman
erichoffman's picture

Good morning,

I'm wondering if anyone has a process or standards around management responses.  Do all audit findings (and best practice recommendations) require management responses?  Is management allowed to accept the risk of findings/recommendations without putting any remediation plans in place?  Is there a process in place if the risk is excepted such as some type of committee approval or anything similar?

 

Thanks,

Eric