Source: OJ L, 2024/436, 2.2.2024

Current language: FR

Article 16 Contrôle du respect de l’article 37 du règlement (UE) 2022/2065 relatif à l’audit indépendant


Summary What does Article 16 of the Performance of independent audits say?

This article deals with the temporal and organisational scope of compliance assessments concerning the auditing obligations themselves.

It establishes that when auditors assess whether an audited provider has met its auditing-related obligations, they look back at the prior yearly audit period rather than the current one.

There is, however, a carve-out for one specific obligation — relating to the provider's cooperation duties in the current audit — which is assessed in real time.

The article also addresses a conflict of interest concern, requiring transparency from auditing organisations that share continuity with a previous audit.

Important points:

  • Compliance with auditing obligations is assessed against the yearly period preceding the current audit, not the current audit period itself.
  • Assess your cooperation obligations under Article 37(2) of Regulation (EU) 2022/2065 in relation to the current audit, as this runs in parallel to the lookback assessment.
  • Where there is organisational continuity between the current and previous auditing organisation, the auditing organisation is required to explain in the audit report the steps taken to ensure objectivity.

Springlex's summary of the article is a reading aid, not a substitute for the legal text.

    1. Le respect des obligations énoncées à l’article 37 du règlement (UE) 2022/2065 et dans le présent règlement est évalué par rapport à l’audit ou aux audits réalisés au cours de la période annuelle qui a précédé celle de l’audit courant.

    1. Outre ce que prévoit le paragraphe 1, l’audit contient une évaluation du respect, par le fournisseur audité, de l’article 37, paragraphe 2, du règlement (UE) 2022/2065 en ce qui concerne l’audit courant.

    1. Lorsque l’audit ou les audits précédents mentionnés au paragraphe 1 ont été réalisés par le même organisme d’audit que l’audit courant, ou lorsque l’organisme d’audit qui réalise l’audit courant comprend au moins une entité juridique ayant participé à l’audit antérieur, le rapport d’audit expose les mesures prises par l’organisme d’audit pour assurer l’objectivité de l’évaluation.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod