Course overview
Most organizations run two audit functions that never quite line up. Internal audit reports to the audit committee and looks at controls, governance and operational risk across the year. External audit arrives on a statutory cycle, forms an opinion on the financial statements, and works to a different rulebook. When the two coordinate, management gets a coherent picture of where control is strong and where it is not. When they do not, the same processes get tested twice, the same weaknesses get reported in two different vocabularies, and nobody is quite sure which finding matters.
This course looks closely at both sides of the audit relationship: what each is required to do, what evidence each will accept, and where the professional standards behind them converge. It covers the IIA International Professional Practices Framework and the Three Lines Model on the internal side, the International Standards on Auditing on the external side, and the COSO Internal Control Integrated Framework that both lean on when they assess control design.
Why audit quality is under scrutiny
Regulators have narrowed their tolerance for weak audit work. Inspection findings from oversight bodies keep landing on the same themes: insufficient audit evidence, poor documentation of professional skepticism, and risk assessments that were written after the testing was done. At the same time, audit committees are asking harder questions about coverage. They want to know why a business unit was not visited for three years, why a repeat finding is still open, and what assurance exists over outsourced processes and cloud-hosted systems that sit outside the traditional audit map.
Practitioners who understand both mandates are in a stronger position. They can build an assurance map that shows what is covered by whom, negotiate reliance arrangements sensibly, and write findings that survive challenge from management and from the external firm.
Course objectives
By the end of the course, participants will be able to:
- Differentiate the charter mandate from reasonable assurance work.
- Rely on internal work under the International Standards on Auditing.
- Build an annual assurance plan from a documented risk assessment.
- Negotiate an engagement scope that survives contact with the auditee.
- Reperform a control rather than accept an inquiry answer.
- Standardize how two audit teams name one COSO control weakness.
- Conclude on accounting estimates using evidence under ISA 500.
- Chart the assurance that duplicates and the assurance nobody owns.
- Extend coverage with continuous monitoring indicators.
Course outline
Unit 1: Foundations of internal and external auditing
- IIA International Professional Practices Framework mandate.
- The audit opinion and the questions it never answers.
- The Three Lines Model and unclaimed assurance gaps.
- Independence threats, safeguards and audit charter limits.
Unit 2: Audit planning and risk assessment
- Ranking the audit universe by inherent risk.
- Entity understanding and control maturity under ISA 315.
- Setting performance materiality below the headline number.
- Engagement scoping written into an audit approach memo.
Unit 3: Conducting internal audits
- Process walkthroughs, flowchart notes and the key controls.
- Moving past inquiry to inspection and reperformance.
- Weighing attribute sampling against monetary unit sampling.
- Writing working papers the external firm can follow.
Unit 4: Conducting external audits
- The interim control testing that precedes year-end work.
- Third-party confirmations and analytical procedures.
- Group audits, component materiality and other auditors.
- ISA 610 reliance and what the external auditor inspects.
Unit 5: Integrating best practices and continuous improvement
- Assurance mapping of second-line work and the external firm.
- Full-population testing with tools such as IDEA and ACL.
- External quality assessment of the audit function.
- Issue ageing that forces an audit committee decision.
How the course is delivered
Sessions combine structured explanation with documented case material: real audit findings, extracts from working papers, control matrices and reports that participants read, critique and rewrite in discussion. Worked examples are used to walk through sampling decisions and evidence evaluation step by step. Participants are encouraged to bring their own audit challenges to the discussion, and time is set aside for them. The course is educational and does not certify participants, assess their organization's compliance, or substitute for professional judgment in a live engagement. Those planning the audit calendar itself may want to look at Developing and Managing an Effective Audit Plan alongside this course.
Who should attend
- Internal auditors and audit seniors who want a firmer grasp of standards and evidence.
- Finance and accounting staff who prepare for and support the external audit.
- Risk, compliance and internal control officers who interact with both audit functions.
- Audit committee members and heads of function who receive audit reports and need to read them critically.
About EuroQuest International Training
EuroQuest International Training was founded in 2015 by a team with more than 25 years of experience in professional development. We run over 1,000 courses and have trained more than 15,000 participants. Our head office is in Bratislava, Slovakia, and we deliver courses through hubs in Dubai, London, Barcelona, Istanbul, Vienna, Paris and Geneva. Courses are built and reviewed by practitioners who have worked in the fields they teach.
Frequently asked questions
Do I need an audit qualification to attend?
No. The course assumes you work with audit in some capacity, but it builds the standards, terminology and testing logic from the ground up. Participants with a professional qualification tend to use the sessions to sharpen evidence and reporting practice.
Does the course include a live lab?
No. There is no live testing environment. The course works through documented case material, real report extracts and worked examples, which participants analyze and discuss in the room.
Will this qualify me to sign an audit opinion?
No. Signing a statutory audit opinion requires a licensed audit practice and a recognized professional qualification. This course is educational and does not certify participants or authorize any regulated activity.
Related courses
- Corporate Compliance and Internal Audit Best Practices
- Developing Audit Reports with Impact
- Auditing Risk and Compliance Practices
- Financial Auditing and Regulatory Compliance
Register for this course
Choose a city and date from the schedule above and register online, or contact the EuroQuest team for group bookings and in-house delivery. Our advisors can also help you decide whether this course or a more specialized audit course is the better fit for your team.
All Course Dates & Locations
25 dates · 14 cities · Sep 2026 – Jun 2027