Internal Audit that drives real improvement.
Risk-based internal audit that goes beyond compliance — identifying control weaknesses, process inefficiencies, and fraud risks across your business, with practical recommendations that management can actually act on.
Contact UsInternal audit is the independent, objective assurance and consulting activity that adds value to an organisation by evaluating and improving the effectiveness of its risk management, control, and governance processes. At its best, it is a strategic business partner to the board and management — not a compliance function that generates reports nobody reads.
Internal audit under Section 138 of the Companies Act, 2013 is mandatory for all listed companies and for unlisted public or private companies that cross prescribed thresholds of paid-up capital, turnover, borrowings, or deposits. But even where it is not mandated, a well-run internal audit function is one of the most cost-effective risk management tools available to a growing business.
NDS Advisors provides internal audit services as an outsourced function, a co-sourced partner to in-house teams, or a periodic specialist reviewer. Our internal audit engagements are planned on a risk basis, executed with practical fieldwork, and reported in a format that drives management action — not a list of observations that collects dust.
Our Internal Audit Services
Outsourced Internal Audit Function
Full outsourcing of the internal audit function — including annual audit plan, fieldwork, reporting, and audit committee presentations — for companies without an in-house team.
Co-Sourced Internal Audit
Specialist support to supplement an in-house internal audit team — providing expertise in specific process areas, fraud risk, IFC testing, or IT audit.
Risk-Based Annual Audit Plan
Design of a risk-based internal audit plan that prioritises coverage of the highest-risk areas and key controls across the business.
Process & Control Reviews
In-depth review of specific business processes — finance, procurement, inventory, HR, IT — assessing control design and operating effectiveness.
IFC / ICFR Testing
Testing of key controls identified in the Risk Control Matrix to provide evidence of operating effectiveness for IFC/ICFR reporting purposes.
Fraud Risk Assessment
Identification and assessment of fraud risks across the business — with testing of anti-fraud controls and recommendations for improvement.
IT Audit
Review of IT general controls — access management, change management, computer operations, and data security — as part of the integrated internal audit plan.
Follow-Up Audit
Structured follow-up of prior internal audit findings — confirming that management actions have been implemented and controls have improved.
Our Process
Risk Assessment & Audit Planning
Assessment of the business risk profile — through management interviews, prior audit findings, and risk register review — to build a risk-prioritised annual audit plan.
Engagement Planning
Detailed planning for each audit engagement — defining objectives, scope, methodology, and timing before fieldwork begins.
Fieldwork & Testing
On-site or remote fieldwork — reviewing transactions, testing controls, interviewing process owners, and documenting findings with supporting evidence.
Reporting
Clear, action-oriented audit report — with findings, root cause analysis, risk rating, and specific management action required — delivered within agreed timelines.
Follow-Up & Monitoring
Tracking of management responses and implementation of agreed actions — with status reporting to the audit committee at agreed intervals.
Why It Matters
Frequently Asked Questions
Internal audit that drives real change.
Talk to our team about outsourced internal audit, risk-based planning, IFC testing, and audit committee reporting for your company.