Kompas, onafhankelijk koersen
Pillar · Internal Audit

Internal Audit that gives assurance on your organisation

Internal Audit in an increasingly complex environment.

Organisations face increasing regulation, shifting risks and higher expectations from internal and external stakeholders. In that context, an effective internal audit function is essential for obtaining assurance over the operation of governance and controls.

Internal Audit is not only an assurance function, but also a source of insight and improvement.

ONE Risk Advisory supports boards and management with independent internal audit services. We provide assurance and advice aimed at strengthening governance, risk management and internal control, with attention to continuous improvement.

Our role is to provide insight, strengthen trust and contribute to better decision-making.

// 02Intake

A good conversation first. Then a proposal.

A first conversation is quickly arranged. You tell us where you stand, we show how we work and what we can do for you. That way you soon discover whether we are a good match.

Schedule a conversation on Internal Audit

Frequently asked questions

When is co-sourcing better than outsourcing?

Co-sourcing fits when you want to keep your role as Chief Audit Executive (CAE) and remain ultimately accountable. Outsourcing places the entire function outside. We only do co-sourcing: your CAE remains responsible for the audit plan, the reporting and the relationship with your audit committee.

How does my CAE role stay intact with co-sourcing?

We work in your methodology and in consultation with your CAE. Findings are reported under your name. No authority relationship (per the Dutch DBA Act 2026), no tacit renewal, no background file maintenance.

What is the minimum engagement size for Internal Audit?

From ten days per assignment. No fixed retainer models, no annual contracts. We evaluate progress and scope each quarter, and split longer engagements into twelve-week phases.

What certifications do your senior Internal Auditors hold?

Certified Internal Auditor (CIA), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP) and membership of the Institute of Chartered Accountants in England and Wales (ICAEW), a suitable mix per engagement, plus at least ten years of Internal Audit experience in financial services, energy, retail or the public sector.

When is a new Internal Audit charter needed?

On a change of audit-committee mandate, IIA 2024 conformance, organisational merger or a new CAE. A charter engagement takes four to six weeks and delivers a board-approved document plus a three-year review cycle.