Finding Text
Segregation of Duties Condition and criteria: During our audit of the Authority’s Schedule of Expenditures of Federal Awards, we noted that the Authority does not have adequate segregation of duties in place. Specifically, the same individual is responsible for initiating and recording journal entries and disbursements and reconciling the bank accounts. In accordance with 2 CFR § 200.303(a), the non-Federal entity must establish and maintain effective internal control over the Federal award that provides reasonable assurance that the non-Federal entity is managing the Federal award in compliance with Federal statutes, regulations, and the terms and conditions of the Federal award. Cause and Effect: The Authority is a small entity with limited administrative and accounting staff, which makes it difficult to achieve a complete segregation of duties. Due to resource constraints, individual staff members are assigned multiple roles that overlap key financial processes. Without proper segregation of duties, there is an increased risk that errors or irregularities, including potential misappropriation of assets or fraud, could occur and remain undetected. This condition could lead to noncompliance with applicable federal requirements and inaccuracies in financial reporting. Auditor’s Recommendations: We recommend that the Authority assess the current structure and implement compensating controls where full segregation of duties is not feasible due to staffing limitations. These may include enhanced supervisory review, periodic oversight by the board or executive leadership, documentation of independent reviews, and rotation of duties when possible. Authority’s Response: The board reviews the reports monthly. A printed payroll report and checks written from meeting to meeting are provided and are approved and initialed. Also provided is a report of the bank statements for the board to review what has been received and what has been paid. Before any bills are paid they are approved at the meeting. If an error is made when inputting a deposit received into C/A, the correction is printed and initialed approving the correction.