What is the relationship between risk and the amount of audit evidence?
Beginner
The higher the assessed risk of material misstatement, the more persuasive (sufficient and appropriate) audit evidence the auditor needs. High-risk areas get more extensive testing, larger samples, more reliable sources, and often year-end (not interim) procedures. Low-risk areas justify less evidence.
Real-world exampleBecause inventory valuation is high risk, the auditor gathers more and stronger evidence than for low-risk prepaid expenses.
Common follow-ups: How does risk change sample size? | Why do high-risk areas need more reliable evidence?
How does materiality change as the audit progresses?
Advanced
Materiality is revised if the auditor becomes aware of information that would have led to a different initial figure—e.g., actual results differ materially from the estimates used to set it, or the benchmark changes. Revising materiality may require reassessing performance materiality and whether procedures performed are still adequate.
Real-world exampleWhen final profit comes in far below the estimate used for planning, the team revises materiality downward and extends testing.
Common follow-ups: What triggers a materiality revision? | What must be reassessed after revising it?
ISA StandardsAudit SamplingAudit Risk & Materiality
What is the difference between risk of material misstatement at the financial-statement level and the assertion level?
Intermediate
Financial-statement-level risks pervade the statements as a whole (e.g., weak control environment, going concern doubt, management override) and call for overall responses (skepticism, unpredictability, experienced staff). Assertion-level risks relate to specific accounts/assertions (e.g., existence of receivables) and drive specific procedures on those items.
Real-world exampleA pervasive fraud-risk concern prompts firm-wide responses, while a receivables existence risk prompts confirmations on that account.
Common follow-ups: What are overall responses to FS-level risk? | How do assertion-level risks drive procedures?
How do you audit accounting estimates given their risk?
Advanced
Estimates (provisions, fair values, impairments) carry high inherent risk and estimation uncertainty. The auditor evaluates management's method, assumptions, and data; considers management bias; may develop an independent estimate or range; reviews subsequent events; and tests the controls over the estimation process. Higher uncertainty demands more scrutiny and possibly specialists.
Real-world exampleTo audit a warranty provision, the team tests historical claim rates, challenges assumptions, and compares to actual subsequent claims.
Common follow-ups: How do you detect management bias in estimates? | When would you use an auditor's expert?
What is 'clearly trivial' and how does it relate to materiality?
Beginner
Clearly trivial is a threshold, well below materiality, under which misstatements are so small—individually and in aggregate—that they need not be accumulated because they clearly wouldn't affect the statements even collectively. Items above it are accumulated and evaluated. It's a practical floor, not a smaller materiality.
Real-world exampleErrors under the clearly-trivial threshold aren't tracked, while anything above is accumulated for evaluation against materiality.
Common follow-ups: Is clearly trivial the same as immaterial? | Why have this threshold?
How are inherent risk and control risk combined into RMM?
Intermediate
The risk of material misstatement is the combined assessment of inherent risk and control risk at the assertion level (RMM = IR x CR conceptually). ISA 315 (Revised) encourages assessing inherent risk and control risk separately, so the auditor sees the source of risk and can design responses—relying on controls only where control risk is assessed as lower after testing.
Real-world exampleHigh inherent risk on estimates plus effective controls yields a moderate RMM, guiding the extent of substantive work.
Common follow-ups: Why assess IR and CR separately? | When can you rely on controls to lower RMM?
What is engagement risk and how does it differ from audit risk?
Advanced
Engagement risk is the overall risk to the audit firm from associating with a client—including audit risk plus business/reputational and litigation risk (e.g., a client in financial distress or with integrity concerns). It's considered at acceptance/continuance. Audit risk is narrower: the risk of an inappropriate opinion on the statements.
Real-world exampleA prospective client with integrity red flags has high engagement risk, so the firm may decline despite manageable audit risk.
Common follow-ups: When is engagement risk assessed? | How can high engagement risk affect acceptance?
Why is materiality a matter of professional judgment?
Beginner
Materiality depends on the size and nature of items and the specific circumstances of the entity and its users, none of which a fixed rule fully captures. The auditor uses judgment to choose benchmarks, percentages, and to weigh qualitative factors, so two auditors might reasonably set slightly different amounts for different entities.
Real-world exampleThe auditor judges that revenue, not profit, best reflects users' focus for a growth-stage company, and sets materiality accordingly.
Common follow-ups: Why not a single fixed threshold? | What judgments does setting materiality involve?