Fraud Risk & Internal Control Training

Fraud does not announce itself. It hides inside weak approval chains, unreviewed reconciliations, and staff who assume someone else is checking. This one-day programme equips finance, audit, risk, procurement and management teams to recognise fraud risk, apply internal control fundamentals, and understand the corporate liability and anti-corruption exposure Malaysian organisations face under Section 17A of the MACC Act 2009.

The course connects fraud risk to the control environment that either prevents it or does not, and is aimed at finance, audit, risk and operations staff together. Participants work through the fraud triangle applied to real cases, control design and the specific weaknesses fraudsters exploit, and the detection routines that catch what prevention misses.

Participants leave with a practical roadmap to review their organisation's anti-corruption controls against the T.R.U.S.T. adequate procedures principles, alongside a control design template and a red flag checklist they can put to work the same week.

HRD Corp Training Provider Malaysia HRD Corp Claimable

Programme Agenda

01

Registration

8:45 to 9:00 AM
02

Module 1: The Fraud Landscape in Malaysia

9:00 to 10:00 AM
  • Fraud triangle, pressure, opportunity, rationalisation
  • Common typologies, asset misappropriation, procurement fraud, payroll fraud, financial statement fraud
  • Cost of fraud, ACFE Report to the Nations benchmark figures
  • Case snapshot, anonymised Malaysian corporate fraud cases
03

Morning Break

10:00 to 10:15 AM
04

Module 2: Legal & Regulatory Exposure

10:15 to 11:30 AM
  • Section 17A of the MACC Act 2009, corporate strict liability and the adequate procedures defence
  • The T.R.U.S.T. principles: Top Level Commitment, Risk Assessment, Undertake Control Measures, Systematic Review, Monitoring and Enforcement, Training and Communication
  • Director duties and liability exposure under the Companies Act 2016
  • Whistleblower Protection Act 2010 overview
05

Module 3: Internal Control Fundamentals

11:30 AM to 12:45 PM
  • COSO Internal Control-Integrated Framework, five components
  • Segregation of duties in practice
  • Approval matrices and authorisation limits
  • Reconciliation and review controls
  • Exercise, control gap identification on a procure-to-pay process
06

Lunch Break

12:45 to 1:45 PM
07

Module 4: Red Flags & Detection

1:45 to 3:00 PM
  • Behavioural red flags
  • Transactional red flags, ghost vendors, split purchases, duplicate payments, round-tripping
  • Basic exception reporting and data analytics awareness
  • Exercise, spot the red flag, group case scenarios
08

Afternoon Break

3:00 to 3:15 PM
09

Module 5: Response, Reporting & Whistleblowing

3:15 to 4:15 PM
  • Escalation protocol when fraud is suspected
  • Evidence preservation, do's and don'ts
  • Whistleblowing channel design
  • Understanding when and how matters may be escalated to MACC, police, management, legal advisers, or external auditors
10

Module 6: Building Your Adequate Procedures Roadmap

4:15 to 5:00 PM
  • Self-assessment against the T.R.U.S.T. principles
  • Action planning template
  • Q&A and close

Learning Outcomes

By the end of this programme, participants will be able to:

  • Identify the fraud triangle and common fraud typologies affecting Malaysian organisations
  • Explain Section 17A corporate liability and the adequate procedures defence
  • Apply the COSO Internal Control-Integrated Framework to identify control gaps
  • Recognise behavioural and transactional red flags
  • Design basic controls, segregation of duties, approval matrices, and reconciliation checks
  • Understand whistleblowing mechanisms under the Whistleblower Protection Act 2010
  • Respond correctly when fraud is suspected

Who Should Attend

Finance and accounts teams, internal audit, risk and compliance officers, procurement, department heads with approval authority, and company secretaries.

Training Mode   Physical, Online, or Hybrid

HRD Corp   Claimable, subject to programme registration and applicable HRD Corp requirements

Level   Intermediate

Duration   1 Day (6.5 Training Hours)

Training Hours   9:00 AM to 5:00 PM

Venue   Online, or in-house at the client's premises

Certificate   Certificate of Completion, awarded upon full attendance

Inclusions   Training materials, case study workbook, control design templates, red flag checklist, and Certificate of Completion

EnquiriesContact us for a quotation or to discuss scheduling

Frequently Asked Questions

Finance and accounts teams, internal audit, risk and compliance officers, procurement, department heads with approval authority, and company secretaries. Anyone who approves, records or reviews a transaction is in scope.

No. The level is intermediate and the material is built around worked examples rather than standards text, so procurement, operations and management staff follow it as easily as finance and internal audit do.

Yes. Module 2 covers Section 17A corporate strict liability and the adequate procedures defence in full, alongside the T.R.U.S.T. principles, director duties under the Companies Act 2016, and the Whistleblower Protection Act 2010. Module 6 ends on a self-assessment of your own controls against T.R.U.S.T.

One day, 6.5 training hours, running 9:00 AM to 5:00 PM with registration from 8:45 AM. It is delivered as a closed group session, so the schedule can be adjusted to fit your team's working hours.

It is claimable subject to programme registration and the applicable HRD Corp requirements at the time of your application. Talk to us before you book and we will confirm the position for your organisation.

Yes. It runs online over your preferred platform, or in-house at your premises anywhere in Malaysia.

Training materials, a case study workbook, control design templates, a red flag checklist, and a Certificate of Completion. Module 6 also produces an action plan scored against the T.R.U.S.T. adequate procedures principles.

Sessions are quoted per closed group and depend on delivery mode and headcount. Contact us and we will put a quotation together, including the position on any HRD Corp claim.

Training content is for general educational purposes and does not constitute legal advice. Specific legal or compliance matters should be referred to appropriately qualified professionals.