audit-support

Automate SOX 404 control testing documentation and sample selection workflows.

1|Updated Mar 9, 2026
One-click install
npx skills add https://github.com/kiryteo/opencode-setup --skill audit-support-kiryteo
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: audit-support
Source: https://github.com/kiryteo/opencode-setup/tree/main/skills/audit-support
Command: npx skills add https://github.com/kiryteo/opencode-setup --skill audit-support-kiryteo

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill assists in building and maintaining robust SOX 404 ICFR testing programs by providing structured methodologies, sample selection approaches, and documentation standards to ensure consistent and defensible control testing outputs.

Core Features & Use Cases

  • Control testing methodology: guides scoping, testing design, and evaluation of key ICFR controls.
  • Sample selection approaches: explains random, targeted, haphazard, and systematic methods with decision guidance.
  • Documentation standards: provides evidence requirements, workpaper structure, and remediation guidance for deficiencies.

Quick Start

Provide a ready-to-use testing plan template and a starter workpaper pack aligned with SOX 404 requirements.

Frequently Asked Questions about audit-support

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I document SOX 404 control testing workpapers properly?

SOX 404 control testing workpapers require structured documentation standards, including specific evidence requirements and consistent workpaper structure to ensure defensible audit readiness and compliance.

What is the best way to select samples for ICFR control testing?

ICFR control testing sample selection uses random, targeted, haphazard, and systematic methods, guided by risk-based scoping decisions to ensure appropriate coverage for your finance team's size.

How do I classify deficiencies identified during internal controls testing?

Deficiency classification during internal controls testing follows structured methodology to evaluate identified issues, providing remediation guidance and documentation standards for SOX 404 compliance.

Can I use this SOX testing methodology for a small finance team?

Yes, the SOX 404 control testing methodology applies across finance teams of varying sizes, providing scalable scoping, testing design, and evaluation approaches for key ICFR controls.

What evidence standards are required for SOX compliance and audit readiness?

SOX compliance and audit readiness require documented workpapers meeting specific evidence standards, ensuring consistent and defensible control testing outputs aligned with ICFR requirements.