Course overview
Occupational fraud rarely announces itself. It runs for months inside processes that look healthy, exploiting a gap somebody knew about and nobody closed: a vendor master file that anyone in accounts payable can edit, an expense threshold set just above the level that triggers review, a payroll system where the person who adds employees also approves the run. The loss is usually discovered by accident or by a tip, long after the point where a well-placed control would have caught it.
This course covers the anatomy of fraud, fraud risk assessment, the detection techniques that surface it in transaction data, the preventive controls that make it harder, and the anti-fraud framework that keeps all of that running. It uses the ACFE occupational fraud categories, the fraud triangle, the COSO control framework, and analytics methods including Benford analysis and rule-based exception testing.
Why prevention beats detection, and both beat hoping
The cost of fraud is not only the money taken. It is the investigation, the legal exposure, the restatement, the regulator's interest, and the internal damage of discovering that a trusted colleague was stealing. Losses tend to grow with the duration of the scheme, which is why the interval between the first fraudulent transaction and its discovery is the single most useful number to attack.
Detection is also changing. Full-population analytics have replaced sampling in many organizations, which means the constraint is no longer finding anomalies. It is triaging them. Anti-fraud work now depends as much on tuning thresholds and reducing false positives as it does on knowing where to look in the first place.
Course objectives
By the end of the course, participants will be able to:
- Classify losses by Association of Certified Fraud Examiners categories.
- Deter fraud where opportunity is open and rationalization is easy.
- Run a risk assessment that maps each scheme to a live process.
- Build detection tests across payroll and expense reimbursement.
- Interrogate Benford results before treating a spike as evidence.
- Segregate incompatible duties, with compensating checks in small teams.
- Match an invoice to its purchase order and its goods receipt.
- Preserve evidence and confidentiality in the first hour of a case.
- Recover losses through insurance claims and asset recovery.
Course outline
Unit 1: Understanding fraud and its impact
- The fraud triangle, and the leg a business can shrink.
- ACFE categories ranked by loss: corruption leads.
- Kickbacks, bid rigging, skimming and billing fraud.
- The true cost: investigation, legal fees and lost trust.
Unit 2: Fraud risk assessment
- Mapping asset misappropriation onto the process that pays.
- Scoring exposure before any control is credited.
- Tracing pressure to incentive structures and undue autonomy.
- Keeping the assessment dated, owned and open to challenge.
Unit 3: Fraud detection techniques
- Behavior signals that only the records can confirm.
- Duplicate vendors, bank detail changes and weekend postings.
- Benford, outlier and cluster analysis on small populations.
- Tips arriving through a whistleblowing channel people trust.
Unit 4: Fraud prevention and internal controls
- Segregation of duties inside a team of three.
- Master data change logs, with dual approval.
- Authorization limits and the approvals parked beneath them.
- Management override and the entries it leaves after close.
Unit 5: Building a sustainable anti-fraud framework
- Ownership of anti-fraud work and the board report.
- Evidence preservation, interview conduct and legal counsel.
- Disciplinary action and the control fixed after the case.
- Exception dashboards and periodic re-assessment.
How the course is delivered
The course uses documented fraud cases, published investigation reports and anonymized transaction data extracts as its raw material. Participants examine the evidence, argue about what it shows, and work through detection logic in guided discussion. Worked examples take a payables dataset through the exception rules that expose a billing scheme. The course is educational: it does not certify participants, does not investigate or assess any organization, and is not legal advice on how to handle a live case. Participants who need the assessment side in more depth often take Business Fraud Risk Assessment as a follow-on.
Who should attend
- Internal auditors and forensic audit staff responsible for fraud detection.
- Finance, accounts payable and payroll managers who own the processes fraud targets.
- Compliance, risk and investigation officers handling allegations and monitoring.
- Managers and executives accountable for control environments where fraud exposure exists.
About EuroQuest International Training
EuroQuest International Training was founded in 2015 by a team with more than 25 years of experience in professional development. We deliver over 1,000 courses and have trained more than 15,000 participants. Our head office is in Bratislava, Slovakia, and courses run through hubs in Dubai, London, Barcelona, Istanbul, Vienna, Paris and Geneva. Course content is written and reviewed by practitioners from the fields it covers.
Frequently asked questions
Do I need data analysis skills to benefit from the detection unit?
No. The routines are explained in business terms, with the logic set out clearly enough that you can specify them to an analyst. Participants who already work with data will find they can apply the tests directly.
Does the course include a live lab?
No. There is no software environment. Detection techniques are taught through documented data extracts and worked examples that participants analyze in the room.
Can the course tell me how to handle a fraud case in my organization right now?
It explains sound investigation practice and the sequence that protects evidence and people. It is educational and is not legal advice, and a live case should be handled with qualified counsel involved from the start.
Related courses
- Fraud Detection and Prevention Techniques
- Corporate Compliance and Internal Audit Best Practices
- Financial Crime Prevention and Regulatory Compliance
- Auditing for Business Transparency and Integrity
Register for this course
Pick a city and date from the schedule above to register, or contact EuroQuest about running the course in-house for a finance, audit or compliance team.
All Course Dates & Locations
28 dates · 16 cities · Sep 2026 – Jul 2027