Services
Audit & Assurance
External, internal and joint venture audit services
Business Advisory
Management accounts, strategic planning, profit improvement.
Corporate Finance
M&A advisory, selling a business, fundraising, valuations, due diligence
Hotel Accounting
Accounting function, automation, daily reconciliations and dashboards, accounts payable
Payroll & Employment
Payroll, global mobility, employee benefits, employment taxes
People
Full-service people consultancy - human resources, learning and development
Private Clients & High Net Worth Individuals
Tax planning & compliance, tax residence and domicile, trust planning
Restructuring & Recovery
Business rescue, liquidations, administrations, insolvency, debt recovery
Sustainable Business & ESG
Baseline assessments, materiality assessments, carbon footprint and sustainability reporting
Tax
Corporate tax, customs duty, VAT, R&D, tax investigations, international tax
Virtual Finance
Bespoke service providing real-time information about your business performance
More from AAB
AAB WEALTH
Financial planning, cash flow modelling, retirement planning
Sectors
Business Services
Professional services, medical, recruitment and media
Construction & Property
Property developers, construction companies, housebuilders, landlords
Energy
Renewables, clean energy, energy producers, energy transition, exploration and production
Family Business
Specialist support for businesses owned/managed by families
Food & Drink
Food & drink producers, processors, importers, wholesalers and retailers
Health & Social Care
Tailored support for health & social care organisations
Industrial & Manufacturing
Engineering, manufacturing, aerospace, automotive, shipping, distribution
Leisure & Hospitality
Fashion, entertainment, activity centres, hoteliers
Not For Profit
Charities, social housing, higher and further education institutions
Public Sector
Government, non-departmental public bodies, health boards, ALEOS
Technology, Media & Telecoms
Tech start-ups, media agencies, software developers and telecoms providers
About
AABout Us
Our story
Our Team
Meet the specialists
Careers
Join the AAB team
Diversity & Inclusion
Building a business where everyone feels they belong
Growing Sustainably - ESG
ESG – Our commitment to building a sustainable business
News
Latest news from across AAB Group
AABIE
AAB charitable initiative
AAB announces new investment from Goldman Sachs Alternatives
Insights
Blogs
Stay informed with cutting-edge news for business growth. Our experts offer industry insights and invaluable advice on accountancy and business strategies.
Case studies
Explore insightful case studies tailored to specific industries, offering invaluable lessons and strategies for success.
Webinars & Events
Engage with dynamic webinars and events tailored to your interests, offering valuable insights and networking opportunities.
A Candid Conversation on the Future of Family Businesses
AAB / Blog / Internal Audit – Vendor Masterfile
BLOG2nd Feb 2016
Over the past few months I have been out and about meeting a number of Finance and Accounting professionals across the country. Discussions have covered a broad range of matters relating to our internal audit, internal controls and process improvements service lines at AAB.
One recurring theme was the issue of processes and controls relating to the Vendor Masterfile. This database is where sensitive supplier information, including bank account details, is held. These discussions covered various control weaknesses that may expose organisations to potential fraudulent activity when payments are made.
With ever increasing reliance on IT systems in business, comes an increased risk of fraudsters attempting to obtain confidential information through illegal means. Recently, there has been an increase in falsified or “phishing” emails from director(s) of a company claiming that they are short of funds and requesting urgent payment from select members of staff within the purchase/banking function. In addition to this, fraudsters can send legitimate looking supplier statements on easily replicated headed paper with covering letters, claiming they never received payment and to request payment again as their bank details have changed.
One specific example is of a disgruntled former employee sending change of bank account details to his ex-employer’s suppliers. This resulted in a number of these suppliers paying for goods and services legitimately received, but into the fraudulent bank account. This demonstrates an absence of controls within the Vendor Masterfile change process.
As part of the review process, discussions with key finance staff can quickly identify such risks. Thereafter, a few key changes can be implemented in order to ensure that you have procedures in place to help minimise the risk of your business being the victim of fraud. These include:
Companies need to identify where the weak points of the process are. This can be at the control boundaries where value is leaving the business. Given that fraudsters are finding newer and more innovative ways of manipulating businesses, these processes should be constantly reviewed and updated to ensure that your business is tackling fraud risk head on.
An internal audit review of such processes can protect your business and minimise the risk of such fraudulent schemes occurring. Ultimately, any change to a customer’s bank account details must be verified as being genuine. If you want to discuss this, or any other internal controls challenges further, please contact Mark Dailey at Anderson Anderson & Brown LLP – mark.dailey@aab.uk