Something Phish-y is Going On Here: A Teaching Case on Business Email Compromise

被引:1
|
作者
Bakarich, Kathleen M. [1 ]
Baranek, Devon [2 ]
机构
[1] Hofstra Univ, Hempstead, NY 11550 USA
[2] Rider Univ, Lawrenceville, NJ 08648 USA
来源
CURRENT ISSUES IN AUDITING | 2020年 / 14卷 / 01期
关键词
Business Email Compromise (BEC); cyberfraud; cyber incident; internal controls over financial reporting; auditing;
D O I
10.2308/ciia-52706
中图分类号
F8 [财政、金融];
学科分类号
0202 ;
摘要
This case utilizes a real-world example of a U.S. public company that fell victim to a Business Email Compromise (BEC) scheme in which an employee inadvertently wired millions of dollars to fraudulent accounts based upon email instructions purportedly sent by a company executive and external legal counsel. This is a timely issue to examine given its rising prevalence and magnitude in the corporate world. The case allows students to examine a topic (phishing techniques and email scams) that they are likely to be familiar with on a conceptual level, through the lens of internal controls and external auditing. Examining the case information, SEC filings, and auditing guidance, students will gain an understanding of internal control issues related to BEC and critically think of ways to remediate or implement controls to reduce cybersecurity risk, as well as consider the external auditor's growing responsibilities related to technology and its associated risks.
引用
收藏
页码:A1 / A9
页数:9
相关论文
empty
未找到相关数据