IDEAS home Printed from https://ideas.repec.org/a/eee/ijoais/v52y2024ics1467089523000556.html
   My bibliography  Save this article

IT governance and IT controls: Analysis from an internal auditing perspective

Author

Listed:
  • Wu, Tung-Hsien
  • Huang, Shaio Yan
  • Chiu, An-An
  • Yen, David C.

Abstract

Inadequate information technology (IT) management can lead to system ineffectiveness and operational stagnation within enterprises. While the application of IT governance provides a means for companies to validate IT functionality, oversee IT operations, and mitigate IT-associated risks, there is a paucity of research examining its implications of IT governance on IT controls, particularly within the context of a firm’s Internal Audit Function (IAF). Addressing this gap in the literature, this research delves into the relationship between the characteristics of the IAF and IT governance within the IAF. It further probes the linkage between IT governance associated with the IAF and IT control activities. We analyze survey data from 414 internal auditors across various Taiwanese companies using partial least squares regression. The findings suggest that IT knowledge and internal auditing roles have a significantly positive relationship with the quality of the IAF-IT relationship and IT governance processes. Similarly, IT audit competencies exhibit a significantly positive relationship with IT governance processes. Furthermore, properly structured IT governance processes and a high-quality IAF-IT relationship demonstrate a positive association with the effectiveness of general controls. This research amalgamates and extends prior investigations into IT governance and internal auditing, underlining their critical role in successfully implementing superior IT controls.

Suggested Citation

  • Wu, Tung-Hsien & Huang, Shaio Yan & Chiu, An-An & Yen, David C., 2024. "IT governance and IT controls: Analysis from an internal auditing perspective," International Journal of Accounting Information Systems, Elsevier, vol. 52(C).
  • Handle: RePEc:eee:ijoais:v:52:y:2024:i:c:s1467089523000556
    DOI: 10.1016/j.accinf.2023.100663
    as

    Download full text from publisher

    File URL: http://www.sciencedirect.com/science/article/pii/S1467089523000556
    Download Restriction: Full text for ScienceDirect subscribers only

    File URL: https://libkey.io/10.1016/j.accinf.2023.100663?utm_source=ideas
    LibKey link: if access is restricted and if your library uses this service, LibKey will redirect you to where you can use your library subscription to access this item
    ---><---

    As the access to this document is restricted, you may want to search for a different version of it.

    References listed on IDEAS

    as
    1. Lawrence J. Abbott & Brian Daugherty & Susan Parker & Gary F. Peters, 2016. "Internal Audit Quality and Financial Reporting Quality: The Joint Importance of Independence and Competence," Journal of Accounting Research, Wiley Blackwell, vol. 54(1), pages 3-40, March.
    2. Abdolmohammadi, Mohammad J. & Boss, Scott R., 2010. "Factors associated with IT audits by the internal audit function," International Journal of Accounting Information Systems, Elsevier, vol. 11(3), pages 140-151.
    3. Jenny Stewart & Nava Subramaniam, 2010. "Internal audit independence and objectivity: emerging research opportunities," Managerial Auditing Journal, Emerald Group Publishing Limited, vol. 25(4), pages 328-360, April.
    4. Havelka, Douglas & Merhout, Jeffrey W., 2013. "Internal information technology audit process quality: Theory development using structured group processes," International Journal of Accounting Information Systems, Elsevier, vol. 14(3), pages 165-192.
    5. Tung-Hsien Wu & Shi-Ming Huang & Shaio Yan Huang & David C. Yen, 2017. "The effect of competencies, team problem-solving ability, and computer audit activity on internal audit performance," Information Systems Frontiers, Springer, vol. 19(5), pages 1133-1148, October.
    6. Stoel, M. Dale & Muhanna, Waleed A., 2011. "IT internal control weaknesses and firm performance: An organizational liability lens," International Journal of Accounting Information Systems, Elsevier, vol. 12(4), pages 280-304.
    7. Syaiful Ali & Peter Green, 2012. "Effective information technology (IT) governance mechanisms: An IT outsourcing perspective," Information Systems Frontiers, Springer, vol. 14(2), pages 179-193, April.
    8. Steven De Haes & Laura Caluwe & Tim Huygh & Anant Joshi, 2020. "Governance Objectives to Lead Digital Transformation," Management for Professionals, in: Governing Digital Transformation, chapter 0, pages 47-61, Springer.
    9. Boritz, J. Efrim & Hayes, Louise & Lim, Jee-Hae, 2013. "A content analysis of auditors' reports on IT internal control weaknesses: The comparative advantages of an automated approach to control weakness identification," International Journal of Accounting Information Systems, Elsevier, vol. 14(2), pages 138-163.
    10. Steinbart, Paul John & Raschke, Robyn L. & Gal, Graham & Dilla, William N., 2018. "The influence of a good relationship between the internal audit and information security functions on information security outcomes," Accounting, Organizations and Society, Elsevier, vol. 71(C), pages 15-29.
    Full references (including those not matched with items on IDEAS)

    Most related items

    These are the items that most often cite the same works as this one and are cited by the same works as this one.
    1. Farida Veerankutty & Thurasamy Ramayah & Noor Azman Ali, 2018. "Information Technology Governance on Audit Technology Performance among Malaysian Public Sector Auditors," Social Sciences, MDPI, vol. 7(8), pages 1-19, July.
    2. Sojung Lucia Kim & Thompson S.H. Teo & Anol Bhattacherjee & Kichan Nam, 0. "IS auditor characteristics, audit process variables, and IS audit satisfaction: An empirical study in South Korea," Information Systems Frontiers, Springer, vol. 0, pages 1-15.
    3. Cecilia Langella & Ilaria Elisa Vannini & Milena Marciacano & Niccol? Persiani, 2022. "L?Internal Auditing nel Servizio Sanitario Nazionale: l?esperienza della Regione Veneto e della Regione Emilia-Romagna," MECOSAN, FrancoAngeli Editore, vol. 2022(123), pages 7-27.
    4. Yusheng Kong & Peter Yao Lartey & Fatoumata Binta Maci Bah & Nirmalya B. Biswas, 2018. "The Value of Public Sector Risk Management: An Empirical Assessment of Ghana," Administrative Sciences, MDPI, vol. 8(3), pages 1-18, July.
    5. Choi, Dongjoon & Lee, Hansol & Lee, Ho-Young & Park, Hyun-Young, 2021. "The association between human resource investment in IT controls over financial reporting and investment efficiency," International Journal of Accounting Information Systems, Elsevier, vol. 43(C).
    6. Haislip, Jacob Z. & Masli, Adi & Richardson, Vernon J. & Watson, Marcia Weidenmier, 2015. "External reputational penalties for CEOs and CFOs following information technology material weaknesses," International Journal of Accounting Information Systems, Elsevier, vol. 17(C), pages 1-15.
    7. Sojung Lucia Kim & Thompson S.H. Teo & Anol Bhattacherjee & Kichan Nam, 2017. "IS auditor characteristics, audit process variables, and IS audit satisfaction: An empirical study in South Korea," Information Systems Frontiers, Springer, vol. 19(3), pages 577-591, June.
    8. Thiéry, Stéphanie & Lhuillery, Stephane & Tellechea, Marion, 2023. "How can governance, human capital, and communication practices enhance internal audit quality?," Journal of International Accounting, Auditing and Taxation, Elsevier, vol. 52(C).
    9. Fouad Amiri & Sietse Overbeek & Gerard Wagenaar & Christoph Johann Stettina, 2021. "Reconciling agile frameworks with IT sourcing through an IT sourcing dimensions map and structured decision-making," Information Systems and e-Business Management, Springer, vol. 19(4), pages 1113-1142, December.
    10. Nan Hu & Xingnan Xue & Ling Liu, 2022. "The impact of air pollution on financial reporting quality: evidence from China," Accounting and Finance, Accounting and Finance Association of Australia and New Zealand, vol. 62(3), pages 3609-3644, September.
    11. Slapničar, Sergeja & Axelsen, Micheal & Bongiovanni, Ivano & Stockdale, David, 2023. "A pathway model to five lines of accountability in cybersecurity governance," International Journal of Accounting Information Systems, Elsevier, vol. 51(C).
    12. Wei Yu & Huiqin Huang & Xinyan Kong & Keying Zhu, 2023. "Can Digital Inclusive Finance Improve the Financial Performance of SMEs?," Sustainability, MDPI, vol. 15(3), pages 1-16, January.
    13. Gonzalez, Reyes & Gasco, Jose & Llopis, Juan, 2016. "Information systems contracts and relationships: A Spanish perspective," Journal of Business Research, Elsevier, vol. 69(5), pages 1696-1700.
    14. Slapničar, Sergeja & Vuko, Tina & Čular, Marko & Drašček, Matej, 2022. "Effectiveness of cybersecurity audit," International Journal of Accounting Information Systems, Elsevier, vol. 44(C).
    15. Didier Fass & Stéphanie Thiéry, 2020. "Cybersecurity risks and situation awareness: Audit committees' appraisal," Post-Print hal-03198562, HAL.
    16. Ya-Fang Wang & Yu-Chu Hsieh, 2023. "Credit Rating and Board Evaluation of Family Firms," International Journal of Business and Economic Sciences Applied Research (IJBESAR), International Hellenic University (IHU), Kavala Campus, Greece (formerly Eastern Macedonia and Thrace Institute of Technology - EMaTTech), vol. 16(1), pages 7-18, October.
    17. Habib Saragih, Arfah & Ali, Syaiful & Suwardi, Eko & Utomo, Hargo, 2024. "Finding the missing pieces to an optimal corporate tax savings: Information technology governance and internal information quality," International Journal of Accounting Information Systems, Elsevier, vol. 52(C).
    18. Stoel, Dale & Havelka, Douglas & Merhout, Jeffrey W., 2012. "An analysis of attributes that impact information technology audit quality: A study of IT and financial audit practitioners," International Journal of Accounting Information Systems, Elsevier, vol. 13(1), pages 60-79.
    19. Wang, Xiong & Ferreira, Fernando A.F. & Chang, Ching-Ter, 2022. "Multi-objective competency-based approach to project scheduling and staff assignment: Case study of an internal audit project," Socio-Economic Planning Sciences, Elsevier, vol. 81(C).
    20. Ujkan Bajra & Simon Cadez, 2018. "The Impact of Corporate Governance Quality on Earnings Management: Evidence from European Companies Cross†listed in the US," Australian Accounting Review, CPA Australia, vol. 28(2), pages 152-166, June.

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:eee:ijoais:v:52:y:2024:i:c:s1467089523000556. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    If CitEc recognized a bibliographic reference but did not link an item in RePEc to it, you can help with this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Catherine Liu (email available below). General contact details of provider: https://www.journals.elsevier.com/international-journal-of-accounting-information-systems/ .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.