Auditing & Assurance
ISA Standards
ISAs are professional standards issued by the IAASB (International Auditing and Assurance Standards Board) that set the requirements and guidance for auditing financial statements. They promote consistent, high-quality audits worldwide, covering objectives, planning, evidence, and reporting. Many jurisdictions adopt them directly or base national standards on them.
Real-world example
An audit firm applies ISAs across its international engagements so audits in different countries follow a common quality baseline.
Audit Objectives & Types
Audit Evidence & Procedures
ISA Standards
ISA 200 states the auditor's overall objectives are to obtain reasonable assurance about whether the financial statements as a whole are free from material misstatement (from fraud or error), enabling an opinion on whether they are prepared, in all material respects, in accordance with the applicable framework, and to report accordingly.
Real-world example
The auditor plans and performs work to reach reasonable assurance so they can express an opinion under ISA 200.
Audit Report & Opinions
Audit Risk & Materiality
ISA Standards
Reasonable assurance is a high, but not absolute, level of assurance—an audit reduces risk to an acceptably low level but cannot guarantee the statements are error-free. Absolute assurance is unattainable due to inherent limitations: use of judgment, testing/sampling, inherent control limitations, and the nature of audit evidence being persuasive rather than conclusive.
Real-world example
An auditor gives reasonable, not absolute, assurance because they test samples and rely on persuasive evidence, not certainty.
Audit Risk & Materiality
Audit Sampling
ISA Standards
ISAs are grouped by series: 200-299 general principles and responsibilities; 300-499 risk assessment and response; 500-599 audit evidence; 600-699 using the work of others; 700-799 audit conclusions and reporting; 800-899 specialized areas. This structure follows the audit process from objectives through evidence to reporting.
200s: principles/responsibilities
300s-400s: risk assessment & response
500s: evidence
600s: using others' work
700s: reporting
800s: specialized
Real-world example
An auditor references ISA 315 (300s, risk assessment) during planning and ISA 700 (700s, reporting) at conclusion.
Audit Evidence & Procedures
Audit Report & Opinions
ISA Standards
ISA 315 requires the auditor to identify and assess the risks of material misstatement through understanding the entity and its environment, the applicable financial reporting framework, and the system of internal control. This includes identifying risks at the financial-statement and assertion levels to design responsive audit procedures.
Real-world example
Under ISA 315 the team documents its understanding of the client's business, IT systems, and controls to pinpoint where misstatements could arise.
Audit Risk & Materiality
Internal Controls Evaluation
ISA Standards
ISA 330 deals with the auditor's responses to assessed risks—designing and performing further audit procedures (tests of controls and substantive procedures) whose nature, timing, and extent respond to the risks identified under ISA 315. Higher assessed risk demands more persuasive evidence and more extensive procedures.
Real-world example
Having flagged revenue as a significant risk, the auditor designs targeted substantive tests under ISA 330 to respond to it.
Audit Evidence & Procedures
Internal Controls Evaluation
ISA Standards
ISA 240 covers the auditor's responsibilities relating to fraud in an audit of financial statements. It requires professional skepticism, discussion among the team about fraud susceptibility, risk assessment procedures focused on fraud, a presumed risk of fraud in revenue recognition, and specific responses including addressing management override of controls.
Real-world example
Per ISA 240, the team tests journal entries and estimates for bias to address the risk of management override.
Fraud & Error Responsibilities
Audit Risk & Materiality
ISA Standards
ISA 500 requires the auditor to obtain sufficient (quantity) and appropriate (quality—relevance and reliability) audit evidence to draw reasonable conclusions supporting the opinion. It guides how to design and perform procedures to gather evidence and how to evaluate evidence, including from management's experts or external sources.
Real-world example
The auditor gathers a mix of external confirmations and inspection so the evidence is both sufficient and appropriate under ISA 500.
Audit Evidence & Procedures
Audit Sampling
ISA Standards
ISA 700 governs forming an opinion and the standard form of the auditor's report on financial statements. ISA 701 introduces Key Audit Matters (KAMs)—those of most significance in the current-period audit—communicated in the reports of listed entities to increase transparency about areas of significant auditor attention.
Real-world example
A listed company's audit report includes KAMs on goodwill impairment and revenue, as required by ISA 701.
Audit Report & Opinions
Audit Risk & Materiality
ISA Standards
ISAs are international; many countries adopt them (sometimes with modifications) as national standards. In the US, private-company audits follow AICPA GAAS (closely aligned with ISAs via the Clarity/convergence project), while public-company audits follow PCAOB standards, which differ in areas like reporting and independence. Auditors apply the framework required in their jurisdiction/engagement.
Real-world example
A US firm applies PCAOB standards for an SEC registrant but ISA-aligned GAAS for a private client's audit.
Ethics & Independence
Audit Report & Opinions
ISA Standards