Internal Audit Services

Transactional Audits

Transactional audits for digital banking, wires, ACH, and RDC to assess controls, ensure compliance, reduce risk, and meet regulatory expectations.

800
+
Organizations Assisted
23
+
Years of Superior Success
38
States Represented

Transactional Audits

NETBankAudit offers specialized transactional audits to address the unique risks and regulatory requirements associated with high-risk banking activities. Each audit is designed to evaluate the effectiveness of your institution’s controls, policies, and procedures, ensuring alignment with industry best practices and regulatory expectations. Our approach includes observation, inspection, transaction testing, interviews with relevant staff, and a review of supporting documentation. Sampling is performed using COSO and COBIT approved standards, with detailed workpapers and reports provided for each engagement.

Digital Banking Transaction Level Audit

Digital Banking introduces unique risks and regulatory expectations for financial institutions. As electronic transactions increase, federal regulators require expanded risk management practices to address these evolving challenges. NETBankAudit’s Digital Banking Audit evaluates the effectiveness of your institution’s controls, policies, and procedures related to digital banking activities.

Scope and Key Control Areas

  • Governance: Board and senior management oversight, risk assessment, policies and procedures, outsourcing and vendor management, contingency planning and preparedness.
  • Operations: Enrollment and account administration, input/output controls, training and awareness.
  • Security: User access controls, logical access controls, logging and monitoring.
  • Compliance: Security, privacy, and advertising; deposit and loan products and services; consumer affairs compliance (Regulations B, D, E, P, Z, CC, DD; ECOA, E-Sign, FHA, FCRA, RESPA).

Audit Approach

  • Conduct a comprehensive “Wire-to-Wire” Transaction Flow Analysis to identify and assess all key control and exchange points.
  • Utilize sampling as needed, following COSO and COBIT approved standards.
  • Document all findings and recommendations in a detailed report and workpapers.

Wire Transfer Transaction Level Audit

Wire transfer activities are governed by regulatory statutes and FFIEC guidance, requiring robust controls to prevent fraud, errors, and regulatory violations. NETBankAudit’s Wire Transfer Audit assesses the effectiveness of your institution’s wire transfer controls and compliance.

Scope and Key Control Areas

  • Develop a “wire-to-wire” transaction flow understanding, identifying all key control/exchange points and associated risks.
  • Verify that transactions are executed and approved in accordance with bank policies, procedures, and client-specific authorization.
  • Ensure physical and logical access is appropriately controlled and restricted to authorized individuals.
  • Safeguard data, documentation, and records.
  • Assess contingency measures and regulatory compliance (Regulations E & J, OFAC, FFIEC, Federal Reserve Banks’ FedLine security requirements, and other applicable requirements).

Audit Approach

  • Perform observation, inspection, transaction testing, and staff interviews.
  • Utilize sampling as needed, following COSO and COBIT approved standards.
  • Provide a detailed report and supporting workpapers.

Remote Deposit Capture Transaction Level Audit

Remote Deposit Capture (RDC) enables customers to deposit items electronically, introducing additional risks beyond traditional deposit delivery systems. NETBankAudit’s RDC Audit evaluates the controls and compliance of your institution’s RDC function.

Scope and Key Control Areas

  • Ensure appropriate senior management oversight and vendor management.
  • Perform a transaction flow analysis to verify that control/exchange points are identified and fraud/risk concerns are addressed.
  • Verify staff support, training, segregation of duties, and cross-training.
  • Assess user access (logical and physical) and policies for correction and re-submission of erroneous data.
  • Ensure data integrity, balancing to control totals, and reconciliation of disputed data.
  • Review security, exception logging, and disaster recovery planning.
  • Determine compliance with Check 21 Act, Regulation CC, Regulation J, and FFIEC guidance.

Audit Approach

  • Conduct observation, inspection, transaction testing, and staff interviews.
  • Utilize sampling as needed, following COSO and COBIT approved standards.
  • Document findings in a detailed report and workpapers.

ACH Audit (NACHA Compliance)

Automated Clearing House (ACH) activities are subject to strict NACHA rules and regulatory requirements. NETBankAudit’s ACH Audit assesses your institution’s compliance and operational controls over ACH functions.

Scope and Key Control Areas

  • Review documentation, perform interviews, and inspect relevant controls for ACH processes.
  • Assess compliance with the latest NACHA Operating Rules and industry best practices.
  • Evaluate recordkeeping, authorization, risk management, and exception handling procedures.
  • Identify control weaknesses and provide recommendations for improvement.

Audit Approach

  • Follow the guidelines and instructions for ACH Audit as defined in the latest ACH Work program published by EPCOR.
  • Utilize sampling as needed, following COSO and COBIT approved standards.
  • Prepare a written report with detailed findings, assessments, and supporting documentation.

Deliverables

  • Executive summary and detailed report for each transactional audit, including overall and individual control objective ratings and risk ratings.
  • All reported issues include condition, cause, effect, and recommendation statements, with priority ratings and a tracking mechanism for follow-up.
  • Comprehensive workpapers supporting all findings and recommendations.
"NETBankAudit is more than just an audit firm. They take the time to truly understand your organization. By working as a partner they made recommendations that best fit our bank while helping us realize resources that were already at our disposal. The employees we work with are extremely knowledgeable and always available to assist"
Garrett Henry, Chief Information Technology Officer
Franklin Savings Bank
$822M total assets, FDIC regulated
Franklin Savings Bank Logo
"Our Auditor was accommodating when appropriate, but never at the expense of principle.  She has my respect in every regard, and it is a privilege having her as a resource especially during exams. Our Engineer was great as well.  He was able to perform the penetration testing and vulnerability scanning with little disruption to our team.  This year’s engagement was on point as usually."
Beth Worrell, EVP, Chief Risk Officer
Skyline National Bank
$855M total assets, OCC regulated
"We were very satisfied with the model validation of our Verafin System. The NETBankAudit team was great to work with, very professional and kept us in the loop throughout the engagement. We will definitely consider working with them again for the annual validation"
Ken Helmrich, CAMS, CFCS
Kearny Bank
$7B total assets, FDIC regulated
"NETBankAudit provides us with top notch Information Security Professionals to allow us to continually improve our organizations security posture. Springs Valley is able to utilize them to stay abreast of the changing regulatory and cybersecurity landscape. It is great to have a reliable resource like them as a valued partner."
Craig Buse, CLO, COO
Springs Valley Bank & Trust Company
$494M total assets, FDIC regulated
"We appreciate working with professionals respected in the financial services community for their individual expertise and their attention to detail in the audit programs.  Always accessible when we need their assistance. "
Teresa Welty, SVP Internal Audit and Risk Officer
Capital Bank
$1.8B total assets, OCC Regulated
Capital Bank Logo
"We have been doing business with NETBankAudit since 2018 and their team of professionals have been amazing to work with.  They are experienced, objective, and responsive in performing our audit. Plus, they have been readily available to assist us with any issues during regulatory exams."
Robin Harris, Vice President
Carolina Bank
$579M total assets, FDIC regulated
Carolina Bank Logo
"The auditors have been very helpful and patient in giving us guidance with starting, developing, and improving our cybersecurity program. We have an active relationship with NETBankAudit and they are not just an audit firm. NETBankAudit wants us to succeed and not only meet regulatory requirements but understand them as well."
Leslie Nicely, Cybersecurity and BSA Officer
Highlands Community Bank
$172M total assets, FRB Regulated
Highlands Community Bank Logo
"First Citizens National Bank selected NETBankAudit to provide audit services for Information Technology Systems in early 2005.  Since that time, we have added cybersecurity, digital banking, and network penetration testing.  NETBankAudit is not only our auditor, but our partner in developing new digital strategies, policies and procedures. When we are implementing anything digital, NETBankAudit is a resource we use to ensure we have covered all aspects of risk management"
Judy Long, President and COO
First Citizens National Bank
$2B total assets, OCC Regulated
First Citizens National Bank Logo
"We were very satisfied with our first NETBankAudit experience and impressed with the thorough report. Working with our assigned auditor was a pleasure - he possesses great field experience and regulatory experience that was very helpful to us."
Dan Hagedorn, Audit Liaison/Compliance
International Bank of Chicago
$845M total assets, FDIC regulated
International Bank of Chicago Logo
"NETBankAudit's auditor was very knowledgeable and explained clearly what was needed from our side to help complete the audit as well as providing clear recommendations on where we could improve our controls.  The audit was done very professionally. Everyone here at SECU that interacted with NetBankAudit here at SECU had the feeling of a partner."
Rodney Hill, VP Technology
Schlumberger Employees Credit Union
$945M total assets, NCUA regulated
SLB Employee Credit Union Logo
"NETBankAudit serves as our internal auditing team. Their attention to detail and mastery of regulations are invaluable tools to our organization. During the audit, when they have a recommendation or finding, they partner with us and aide us in an internal audit liaison capacity. It is not a typical auditor firm’s approach, who just present their report and findings with limited direction or follow-up. NETBankAudit’s approach also helps us prepare for regulatory reviews with regular “heads-up” guidance and coaching. The examiners value NETBankAudit’s quality and depth of coverage and leverage the detailed audit work papers to facilitate the examination process. "
Dave Kittleson, Director of IT
Arundel Federal Savings Bank
$444M total assets, OCC regulated
Arundel Federal Logo
"We are very satisfied with NETBankAudit’s IT Audit services. The people we worked with are very personable, knowledgeable, and professional."
Sue Richardson, ISO
BayPort Credit Union
$2.2B total assets, NCUA regulated
BayPort Credit Union Logo
"We've partnered with NETBankAudit for over 10 years. We know we'll always receive a thorough review, but the service is always above and beyond our expectations. NETBankAudit keeps us apprised of recent regulatory changes, potential exam issues, and other areas for focus. Engaging NETBankAudit is creating a partnership for the future."
Leslie Hambrick, CFSA, CRMA
Peoples Bank, Newton, NC
$1.5B total assets, FDIC regulated
Peoples Bank Logo

Value-Add Consulting
Leveraging Decades of Industry Experience

As your trusted partner for compliance and security, our audits include informed recommendations to improve.
Request For Proposal
How NETBankAudit Delivers Value-Add Consulting:

Our Value-Add approach to auditing and compliance provides tailored, actionable advice drawn from our experts' practical industry experiences.

  • Senior-level auditing team each bringing 10+ years of industry and regulatory experience.
  • Our team has broad expertise with certifications from CISA, CISSP, CISM, CRISC and more.