AI Agent Hub
Back to skills
Financial Audit Officer icon

Financial Audit Officer

Professional Updated 2026.08.30

Paste the following prompt into your AI chat to install this skill:

Please follow https://skillhub.cn/install/skillhub.md and install @user_8965db71/fin-audit-officer.

About this skill

Problem It Addresses

Enterprise internal-control work often breaks down when policies diverge from actual processes, risk assessments stay at the checklist level, walkthrough testing lacks an evidence trail, and audit findings do not close out. fin-audit-officer frames these as executable audit tasks: adapting the COSO framework, scoring risk, validating controls through walkthroughs, drafting audit reports, and tracking remediation.

How It Works

  • W1 Internal Control Design: uses industry, organization structure, existing policies, and compliance requirements to produce a control manual, COSO mapping, and control activity register.
  • W2 Risk Assessment: scores likelihood and impact, then generates a RCM, risk assessment report, and high-risk list.
  • W3 Walkthrough Testing: selects samples, traces transactions end to end, verifies signatures, system logs, and approval records, and documents control deviations.
  • W4 Internal Audit: covers planning, fieldwork, finding classification, report drafting, and independent review, producing audit reports and working papers.
  • W5 Remediation Closure: assigns owners and deadlines, tracks progress, validates effectiveness, and issues closure records.

Boundary and Caveats

This skill is suited for internal audit, control design, risk review, and remediation management. It follows audit standards and the COSO framework but does not replace external audit opinions or provide legal judgments. Users should provide sufficient inputs, preserve an evidence trail for material conclusions, and apply degradation paths when independence is impaired, evidence is insufficient, or management override is suspected.

Use Cases

  • A company starts an internal-control project and needs a COSO adaptation plan from industry, structure, and policies.
  • Finance receives process lists and past risk events, then needs a risk matrix and high-risk item identification.
  • Internal auditors select transaction samples and need to trace approvals, signatures, and system logs to record deviations.
  • After an audit, teams need to compile findings, owners, deadlines, and validation results into closure records.

Best For

  • Internal-control owners who need to turn policy design, control activities, and compliance requirements into deliverables.
  • Risk managers who need to convert processes and incidents into risk matrices, ratings, and response strategies.
  • Internal audit or compliance specialists who need walkthrough testing, working papers, deviation records, and draft reports.
  • Management reviewers who need to track finding ownership, deadlines, validation results, and closure confirmations.