Recently, I've been talking to anyone who will listen about the role of internal audit policies, procedures, and standards, and how they impact the success of both the profession and individual departments. Although I believe all such guidance is fundamental to audit effectiveness, I contend that the foundation for our success is really composed of three basic rules--by focusing on them, all other policies, procedures, and standards become even more effective.
The first rule comes from the Hippocratic oath: "Do no harm." The second is taken from the Nordstrom Employee Handbook's single instruction: "Use your good judgment in all situations." And the third is one that I just felt needed to be added: "Do all of this with your brain somewhere nearby." Together, these rules cover the areas of ethics, critical thinking, and common sense. I think they embody much of what internal audit strives to achieve in its strategies, in its planning, and in its day-to-day activities.
Recently, while I was discussing these concepts with a colleague, he argued that they would only work if our stakeholders followed the same principles. He seemed to be inferring that we should only treat others with the fullest of respect when we are similarly respected. I cannot disagree more.
I have a recurring conversation with my kids where I ask why he or she (I have one of each) is behaving a certain way toward the other. Generally, each one tells me that the other treats him or her in a similar fashion. I try to explain that, if either were willing to behave differently, the other might respond in kind. I am trying my best to send a...