Develop annual audit plan: Formulate a comprehensive annual internal audit plan based on the exchange’s business strategy, risk assessment results and regulatory requirements, and adjust it regularly.
Execute audit projects: Lead and manage end-to-end audit engagements, including risk assessment, control testing, process review and data analysis, to ensure audit work complies with professional standards and timelines.
Audit scope: Cover all critical areas including finance, operations, compliance, information technology (IT) and security.
Risk Assessment and Management
Identify and assess risks: Continuously identify and evaluate various risks faced by the exchange, including market risk, credit risk, liquidity risk, operational risk, technology risk, cybersecurity risk and compliance risk.
Evaluate control effectiveness: Assess the adequacy of internal control design and the effectiveness of implementation to ensure key risks are properly mitigated.
Provide risk mitigation recommendations: Propose practical improvement measures for identified risks and control deficiencies, and follow up on their implementation.
Financial and Operational Audit
Asset custody and segregation: Audit the custody and segregation mechanisms of user assets to ensure user funds are separated from the company’s operating capital and prevent misappropriation.
Financial reporting audit: Review financial reporting processes and internal controls to ensure the accuracy and reliability of financial information.