audit-support

Document ICFR controls and testing workpapers for SOX 404 compliance.

14|3|Updated Jan 19, 2026
One-click install
npx skills add https://github.com/kevinlin/cowork-z --skill audit-support-kevinlin
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: audit-support
Source: https://github.com/kevinlin/cowork-z/tree/main/src-tauri/resources/skill-templates/finance-audit-support
Command: npx skills add https://github.com/kevinlin/cowork-z --skill audit-support-kevinlin

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Auditing teams need a structured, defensible framework to plan, execute, and document SOX 404 ICFR testing and deficiency classification.

Core Features & Use Cases

  • SOX 404 control testing methodology and scoping guidance for significant accounts.
  • Sample selection approaches (random, targeted, haphazard, systematic) with documentation templates.
  • Evidence standards and workflow for testing workpapers, deficiency evaluation, remediation planning, and reporting.

Quick Start

Create a SOX 404 testing workpaper for the identified control, including scoping, sample selection, evidence, and remediation plan.

Frequently Asked Questions about audit-support

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I document SOX 404 control testing for significant accounts?▼

SOX 404 control testing documentation requires applying a structured scoping methodology, selecting samples, and assessing design versus operating effectiveness to generate repeatable workpapers with defensible conclusions for identified significant accounts.

What sample selection approaches should I use for ICFR testing?▼

ICFR testing sample selection approaches include random, targeted, haphazard, and systematic sampling, each requiring standardized documentation templates to ensure evidence meets formal audit testing standards and supports clear conclusions.

How do I classify deficiencies and create a remediation plan for SOX audits?▼

Deficiency classification and remediation planning for SOX audits involve evaluating identified control gaps against formal evidence standards, then generating a defensible remediation plan with clear conclusions integrated into the testing workpapers.

What do I need to assess control design vs operating effectiveness for SOX compliance?▼

Assessing control design versus operating effectiveness for SOX compliance requires documenting identified ICFR controls, applying evidence standards across relevant accounts, and structuring workpapers to meet formal testing methodology requirements.

Can I use a structured methodology for SOX scoping and workpaper generation?▼

Yes, a structured SOX scoping methodology standardizes how significant accounts are identified, samples are selected, and evidence is documented, resulting in repeatable workpapers that meet formal testing standards and provide clear audit conclusions.