ASIC Warns Auditors as It Expands Oversight of Australia's Largest Audit Firms

ASIC Warns Auditors as It Expands Oversight of Australia's Largest Audit Firms

By
Key Takeaways
  • ASIC Steps Up Oversight of the Audit Profession: ASIC reminded all registered company auditors of their legal, ethical and professional obligations as concerns over trust and confidence in the profession intensify.
  • Big Four Audit Firms Face New Surveillance: The regulator has launched a separate surveillance examining internal complaints received by Australia's largest audit firms regarding their audit practices.
  • Auditor Misconduct Remains an Enforcement Priority: ASIC said it will investigate suspected breaches of the Corporations Act and may seek registration suspensions or cancellations, issue infringement notices, or pursue civil action where evidence supports enforcement.
  • Independence and Reporting Obligations Reaffirmed: The letter emphasizes auditors' duties to remain independent, comply with statutory reporting requirements, disclose conflicts of interest, and report relevant contraventions to ASIC.
Deep Dive

On Wednesday, the Australian Securities and Investments Commission wrote to every registered company auditor in the country with a reminder that reads less like routine regulatory housekeeping than a response to a profession under unusual scrutiny. Trust, ASIC told auditors, has become part of the story. That alone explains why the regulator felt compelled to restate obligations that already exist in law.

The commission said it is increasingly concerned about public confidence in auditing at a moment when questions about the conduct of auditors and audit firms have grown louder. Investors, consumers and the wider financial system depend on audited financial statements not because they eliminate uncertainty, but because they reduce it to something people can reasonably rely upon. That confidence is difficult to build and remarkably easy to lose.

ASIC's response is not confined to reminders. Alongside the letter, the regulator confirmed it has begun a separate surveillance examining internal complaints received by Australia's largest audit firms about their audit practices. It disclosed no findings and identified no firms, but the existence of the review signals that ASIC is looking beyond the finished audit opinion and into the way concerns are raised and handled inside the firms themselves.

That surveillance sits alongside ASIC's longstanding program of reviewing financial reports and audit files. For the 2026-27 financial year, the regulator said audit files will continue to be selected through a mix of random sampling and risk-based targeting, maintaining pressure on firms regardless of whether they have already attracted regulatory attention.

A Profession Built on Independence

Commissioner Kate O'Rourke's letter spends surprisingly little time on new policy because there is very little that is new. Instead, it returns to fundamentals. Auditors, ASIC wrote, must remain independent in both fact and appearance. They must comply with statutory rotation requirements, avoid prohibited relationships, and refuse engagements where conflicts of interest make objective judgment impossible, or where a reasonable observer, armed with the relevant facts, would conclude that objectivity has already been compromised.

The regulator also reminded auditors that administrative obligations are no less important than technical ones. Annual statements filed with ASIC must be complete, accurate and submitted on time, including disclosures about audit work, disciplinary actions, convictions and adverse findings. Compliance with those reporting requirements will itself become the subject of regulatory review during the coming financial year.

ASIC also reiterated auditors' statutory duty to report suspected contraventions by audited entities, disclose relevant breaches involving themselves, notify the regulator of conflicts of interest and prohibited relationships, and report attempts to interfere with the proper conduct of an audit. These are obligations that often receive attention only after something has gone wrong. ASIC's message is that waiting until then is already too late.

The letter also points auditors back to Report 817, Building Trust: Auditors' Compliance with Independence and Conflict of Interest Obligations, which examined how well the profession was meeting its independence requirements and identified areas requiring improvement. Rather than reopening that conversation, ASIC makes clear it considers those findings unfinished business.

Enforcement remains close behind the guidance. Auditor misconduct continues to rank among ASIC's enforcement priorities, the regulator said, and where it has sufficient initial concerns about potential breaches of the Corporations Act, it will investigate. If evidence supports further action, ASIC may seek cancellation or suspension of an auditor's registration through the Companies Auditors Disciplinary Board, issue infringement notices or commence civil proceedings. The regulator added that investigations have already begun in relation to recently raised allegations, although it provided no further details.

There is one forward-looking element in the letter that feels noticeably different in tone. ASIC plans to begin holding twice-yearly meetings open to all registered company auditors to discuss regulatory priorities, common findings, emerging risks and examples of good practice while giving auditors an opportunity to raise concerns directly with the regulator.

It is an acknowledgment that oversight is no longer limited to inspections and enforcement. Regulators still punish failures, but they increasingly see part of their job as shaping professional expectations before those failures occur. For ASIC, that appears to be the larger purpose of this letter. The legal obligations have not changed. The regulator's willingness to test whether they are being met has become much more visible.

The GRC Report is your premier destination for the latest in governance, risk, and compliance news. As your reliable source for comprehensive coverage, we ensure you stay informed and ready to navigate the dynamic landscape of GRC. Beyond being a news source, the GRC Report represents a thriving community of professionals who, like you, are dedicated to GRC excellence. Explore our insightful articles and breaking news, and actively participate in the conversation to enhance your GRC journey.

Oops! Something went wrong