Find White Papers
Home
About Us
List Your Papers
    
> Concur > Avoiding the Compliance Trap for Travel and Expenses

Avoiding the Compliance Trap for Travel and Expenses

White Paper Published By: Concur

Organizations weighing T&E automation should look beyond the value of streamlining the process to solutions that include analytic and reporting features that enforce compliance controls and provide audit evidence while minimizing business risks associated with uncontrolled spending and fraud.  These more robust solutions are part of the extended enterprise applications market experiencing greater investment as a result of governance, risk, and compliance requirements.



Tags : 
travel, expenses, reporting, compliance, t&e, t and e, risk management, enterprise applications

Concur
Published:  Jan 28, 2008
Type:  White Paper
Length:  3 pages


I D C A N A L Y S T C O N N E C T I O N

Kathleen Wilhide Research Director, Compliance and Business Performance Management Solutions
Avoiding the Compliance Trap for Travel and Expenses
January 2008 Travel and related expenses are one of the largest controllable indirect expenses many companies incur. Managing adherence to policy and monitoring for fraud can be burdensome and costly tasks. Software that automates the travel and expense (T&E) process has always been a valuable investment for companies to achieve efficiency and provide policy enforcement. However, increasing compliance requirements, from the broad stroke of Sarbanes-Oxley to targeted regulations affecting financial services and pharmaceutical firms, now demand greater transparency and control over the T&E management process. Organizations weighing T&E automation should look beyond the value of streamlining the process to solutions that include analytic and reporting features that enforce compliance controls and provide audit evidence while minimizing business risks associated with uncontrolled spending and fraud. These more robust solutions are part of the extended enterprise applications market experiencing greater investment as a result of governance, risk, and compliance requirements. IDC estimates that some companies are spending up to 0.5% of revenue to meet compliance requirements, and investments to improve core processes and automatically enforce controls and compliance can ease the compliance burden while mitigating risk. With the promise of fast and dynamic delivery of software functionality, on-demand T&E solutions are helping companies quickly meet requirements to enforce policies and controls and are also providing capabilities to meet evolving compliance requirements.
The following questions were posed by travel and expense management services provider Concur to Kathleen Wilhide, research director for IDC's Compliance and Business Performance Management (BPM) Solutions research, on behalf of Concur's customers.
Q. What are the compliance issues surrounding employee travel and expense management?
A. Compliance has a number of direct and indirect implications for companies. Many organizations have no choice but to assign employees to check and double-check operational controls and manually assemble evidence to prove adherence to policy. If control gaps are identified, auditors continue to make demands on organizations to prove risks are being managed. As the cost of compliance escalates, companies look to automated solutions to help them provide enforcement in areas that pose control risk or are impacted by specific legislation. T&E is one of those areas.
IDC 614 Regulations such as Sarbanes-Oxley are not prescriptive with regard to what areas should be automated, but they provide overall guidance for processes that are material in nature and pose risk. When processes such as T&E pose control risks, the opportunity for fraud escalates. Companies can continue to manually monitor this process and incur increasing internal costs and audit fees or implement technology to automate the process and provide a system of record that auditors can rely on while reducing manual effort.
Q. Which industries are particularly at risk for noncompliance, and why?
A. Processes such as T&E management pose control risks for all industries. What organizations find is that other areas of legislation can also be satisfied through a common compliance process or an investment in software. The financial services and pharmaceutical industries are at the forefront of determining how their technology solutions can help meet multiple compliance requirements. From a T&E perspective, these two industries in particular are also looking to software to manage the T&E process and at the same time meet the requirements of currently evolving legislation for additional policy enforcement and reporting in this area.
For example, in the financial services arena, the National Association of Securities Dealers (NASD) Rule 3060 addresses business entertainment expenses and conflicts of interest. Specifically, the rule prohibits brokers from giving gifts worth more than $100 in any given year to individuals with whom they have a business relationship. Gifts can take the form of entertainment as well as specific gifts, both of which are typically paid through corporate travel an... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search