Today more than ever, an efficient internal control system (ICS) is a central component of effective and responsible corporate management. It supports the monitoring and control of business processes, ensures compliance with regulatory requirements and strengthens the trust of stakeholders. In an increasingly dynamic and complex environment, a holistically effective ICS is indispensable.
The relevance of internal control systems continues to increase
When the Act to Strengthen Financial Market Integrity (FISG) comes into force in 2021, listed stock corporations will be obliged to establish an appropriate and effective ICS and a risk management system (RMS). The German Corporate Governance Code (GCGC) specified these requirements in 2022 with recommendation A.5: The Management Board must now also report on the appropriateness and effectiveness of the ICS.
The general due diligence obligations pursuant to Section 43 of the German Limited Liability Companies Act (GmbHG) also result in relevant requirements for non-capital market-oriented companies. In addition, the expectations of investors, customers and business partners are constantly increasing. An efficient ICS is increasingly becoming a quality feature and strategic success factor.
Extended risk coverage: integration of non-financial aspects
Originally focussed on safeguarding financial reporting, the scope of the ICS is increasingly expanding. Compliance requirements and new ESG regulations, such as the Corporate Sustainability Reporting Directive (CSRD) and the European Sustainability Reporting Standards (ESRS), are increasingly focussing on non-financial risks. An integrated non-financial ICS (nIKS) forms the basis for reliable ESG data and a robust governance structure. It complements the traditional ICS and increases transparency towards the capital market and the public.
Technological and organisational levers for greater efficiency and effectiveness
Rising cost pressure and increasing regulatory requirements call for greater efficiency in internal control functions. Technologies such as artificial intelligence (AI), continuous control monitoring (CCM), robotic process automation (RPA) and real-time databases enable automated controls and improve risk detection.
The digital transformation creates the basis for a future-proof ICS. Within the ICS control loop - for example in control self-assessment - customised tools and alternative delivery models (e.g. outsourcing) support the achievement of objectives with optimised use of resources. At the same time, efficiency initiatives offer the opportunity to interlink governance functions more closely, harmonise processes and deploy resources in a targeted manner. This makes the ICS an integral part of a modern, resilient organisation.
Our range of services
The ICS of the future is integrated, digital and value-adding
Implementation
We support you from the initial assessment, through conceptualisation and piloting, to the global roll-out. Using suitable tools and methods, we develop an ICS that fits your organisation and meets regulatory requirements - efficiently and sustainably.
Optimisation
We analyse your processes and controls, identify potential for optimisation and implement targeted measures - from harmonisation to automation. This makes your ICS more efficient, more digital and better integrated into your governance structure.
Examination services
Whether it's the structure, implementation or effectiveness - we audit your ICS individually and in line with your needs. Reporting is carried out, for example, as a memorandum or certificate in accordance with applicable standards such as ISAE 3000 or IDW PS 982 - for greater security and confidence among stakeholders.
International requirements
We support you in the implementation of global ICS requirements such as SOX and Chinese or Japanese standards. Our SOX Competence Centre offers specialised services for international compliance - tailored to your structure and markets.
Implementation
Implementation
We support you from the initial assessment, through conceptualisation and piloting, to the global roll-out. Using suitable tools and methods, we develop an ICS that fits your organisation and meets regulatory requirements - efficiently and sustainably.
Optimisation
Optimisation
We analyse your processes and controls, identify potential for optimisation and implement targeted measures - from harmonisation to automation. This makes your ICS more efficient, more digital and better integrated into your governance structure.
Examination services
Examination services
Whether it's the structure, implementation or effectiveness - we audit your ICS individually and in line with your needs. Reporting is carried out, for example, as a memorandum or certificate in accordance with applicable standards such as ISAE 3000 or IDW PS 982 - for greater security and confidence among stakeholders.
International requirements
International requirements
We support you in the implementation of global ICS requirements such as SOX and Chinese or Japanese standards. Our SOX Competence Centre offers specialised services for international compliance - tailored to your structure and markets.
More insights on internal controls
Your contacts
Roxana Meschke
Partner, Audit, Regulatory Advisory, Sustainability Reporting & Governance
KPMG AG Wirtschaftsprüfungsgesellschaft
Luisa v. Esterházy
Partner, Audit, Regulatory Advisory, Sustainability Reporting & Governance, Risk Compliance
KPMG AG Wirtschaftsprüfungsgesellschaft
Bernhard Götz
Director, Audit, Regulatory Advisory, Sustainability Reporting & Governance
KPMG AG Wirtschaftsprüfungsgesellschaft
- Item 1
- Item 2
- Item 3