8.03: Difference between revisions
| Line 19: | Line 19: | ||
The Green Book's <u>emphasis on fraud and information security</u> as separate risk assessment activity is intentional. MC may be able to defer to the Arizona Secretary of State's Election Procedure Manual as general steps taken to ensure the integrity of election results. Fraud occurs when loopholes are identified and exploited by the fraudsters. The implementers of election services (i.e., Arizona Counties) are better positioned to detect fraud and assess the risk of fraud because they are handling the data, not the state. Hence, governance gaps may be identified from patterns of poor assessment and response to risk with respect to election fraud and information security. | The Green Book's <u>emphasis on fraud and information security</u> as separate risk assessment activity is intentional. MC may be able to defer to the Arizona Secretary of State's Election Procedure Manual as general steps taken to ensure the integrity of election results. Fraud occurs when loopholes are identified and exploited by the fraudsters. The implementers of election services (i.e., Arizona Counties) are better positioned to detect fraud and assess the risk of fraud because they are handling the data, not the state. Hence, governance gaps may be identified from patterns of poor assessment and response to risk with respect to election fraud and information security. | ||
===== [[Dropbox Collection (2020)|Maricopa Dropbox Collection (2020)]] ===== | |||
Governance issues identified from [https://www.azag.gov/sites/default/files/2025-06/2020_General_Election_Investigation_Summary.pdf Arizona Attorney General's Office 2020 General Election Investigation] of Arizona Senate allegations of Maricopa County Election Department - Drop Box Collections issues. Section 2 of the AZ AG's inspector's report identifies numerous issues, which present risk to potential fraud. | |||
This attribute states, "...management may determine that the risk assessments need to be performed more frequently than required by legal or regulatory requirements due to the significance of risks or other factors, such as changes to programs." This assessment knows of no known legal obligation for MC leadership to conduct period fraud assessments. However, the prevalence of news reports and legal precedings would have certainly suggested the need to conduct an internal assessment, which was not performed. Instead, the AZ AG's inspector identified the following deviations and noteworthy issues from a governance gap perspective. | |||
* See the heading [[Dropbox Collection (2020)#Deviation: Missing Entries on Election Forms|Deviation: Missing Entries on Election Forms]] from Maricopa Dropbox Collection (2020) webpage. | |||
* See the heading [[Dropbox Collection (2020)#Deviation: Missing Ballot Counts|Deviation: Missing Ballot Counts]] from Maricopa Dropbox Collection (2020) webpage. | |||
* See the heading [[Dropbox Collection (2020)#Deviation: Used Email instead of EVBTS Forms|Deviation: Used Email instead of EVBTS Forms]] from Maricopa Dropbox Collection (2020) webpage. | |||
* See the heading [[Dropbox Collection (2020)#Deviation: Unfulfilled Party Representation Requirement for Couriers.|Deviation: Unfulfilled Party Representation Requirements for Couriers]] from Maricopa Dropbox Collection (2020) webpage. | |||
* See the heading [[Dropbox Collection (2020)#Deviation: Fictious Addresses in the MC Voter Registration Database|Deviation: Fictious Addresses in MC Voter Registration Database]] from Maricopa Dropbox Collection (2020) webpage. | |||
* See the heading [[Dropbox Collection (2020)#Deviation: Allegations Confirmed|Deviation: Allegations Confirmed]] from Maricopa Dropbox Collection (2020) webpage. | |||
* See the heading [[Dropbox Collection (2020)#Noteworthy: Consequences Unknown|Noteworthy: Consequences Unknown]] from Maricopa Dropbox Collection (2020) webpage | |||
* See the heading [[Dropbox Collection (2020)#Noteworthy: Transmission of USPS Data to MC and Runbeck|Noteworthy: Transmission of USPS Data to MC and Runbeck]] from Maricopa Dropbox Collection (2020) webpage | |||
===== [[Signature Verification|Maricopa County Signature Verification (2020)]] ===== | ===== [[Signature Verification|Maricopa County Signature Verification (2020)]] ===== | ||
Governance issues identified from [https://www.azag.gov/sites/default/files/2025-06/2020_General_Election_Investigation_Summary.pdf Arizona Attorney General's Office 2020 General Election Investigation] of Arizona Senate allegations of Maricopa County - Signature Verification Process issues. The Counties appear to embrace Arizona guidance that facilitates fraud and pushback of on any suggestion to address potential fraud. In this case, MC are doing the minimum and comply with the Arizona Secretary of State's Election Procedures Manual. MC has not assessed fraud risk from have a single person, the Signature Verifier, making quick seven-second decisions with loose standards. In 2020, 1,910,317 early ballots were processed through the Signature Verification step. However, only 587 bad signatures were identified (excluding early ballots flagged with no signature). | Governance issues identified from [https://www.azag.gov/sites/default/files/2025-06/2020_General_Election_Investigation_Summary.pdf Arizona Attorney General's Office 2020 General Election Investigation] of Arizona Senate allegations of Maricopa County - Signature Verification Process issues. The Counties appear to embrace Arizona guidance that facilitates fraud and pushback of on any suggestion to address potential fraud. In this case, MC are doing the minimum and comply with the Arizona Secretary of State's Election Procedures Manual. MC has not assessed fraud risk from have a single person, the Signature Verifier, making quick seven-second decisions with loose standards. In 2020, 1,910,317 early ballots were processed through the Signature Verification step. However, only 587 bad signatures were identified (excluding early ballots flagged with no signature). | ||
Revision as of 09:25, 25 August 2026
Risk Assessment
Principle 8 - Assess Fraud, Improper Payment, and Information Security Risk
Attribute 8.03 - Management identifies risks related to fraud, improper payments, and information security on a periodic and ongoing basis to provide a basis for analyzing risks. Risk assessment is the identification and analysis of risks related to achieving the defined objectives to form a basis for designing risk responses. To determine the scope and frequency of these assessments, management considers the entity's objectives, risk tolerances, any legal or regulatory requirements, and other factors. However, management may determine that the risk assessments need to be performed more frequently than required by legal or regulatory requirements due to the significance of risks or other factors, such as changes to programs. For example, to adequately identify risks related to improper payments for new programs, management may perform improper payment risk assessments for a certain program or activity on a more frequent and recurring basis, regardless of the required frequency in legal or regulatory requirements for such risk assessments.
>>>Navigational Buttons<<<
- Index of Attributes
- Previous Attribute - 8.02
- Next Attribute -8.04
Jamie's Story
No examples are available to illustrate governance gaps for this attribute.
Election Anomalies
The Green Book's Principle 8 addresses Assess Fraud, Improper Payment, and Information Security Risk. Obviously, improper payments is not a concern during the Assessment of Election Anomalies. However, improper payments by MC county may exist, but would require a separate assessment.
The Green Book's emphasis on fraud and information security as separate risk assessment activity is intentional. MC may be able to defer to the Arizona Secretary of State's Election Procedure Manual as general steps taken to ensure the integrity of election results. Fraud occurs when loopholes are identified and exploited by the fraudsters. The implementers of election services (i.e., Arizona Counties) are better positioned to detect fraud and assess the risk of fraud because they are handling the data, not the state. Hence, governance gaps may be identified from patterns of poor assessment and response to risk with respect to election fraud and information security.
Governance issues identified from Arizona Attorney General's Office 2020 General Election Investigation of Arizona Senate allegations of Maricopa County Election Department - Drop Box Collections issues. Section 2 of the AZ AG's inspector's report identifies numerous issues, which present risk to potential fraud.
This attribute states, "...management may determine that the risk assessments need to be performed more frequently than required by legal or regulatory requirements due to the significance of risks or other factors, such as changes to programs." This assessment knows of no known legal obligation for MC leadership to conduct period fraud assessments. However, the prevalence of news reports and legal precedings would have certainly suggested the need to conduct an internal assessment, which was not performed. Instead, the AZ AG's inspector identified the following deviations and noteworthy issues from a governance gap perspective.
- See the heading Deviation: Missing Entries on Election Forms from Maricopa Dropbox Collection (2020) webpage.
- See the heading Deviation: Missing Ballot Counts from Maricopa Dropbox Collection (2020) webpage.
- See the heading Deviation: Used Email instead of EVBTS Forms from Maricopa Dropbox Collection (2020) webpage.
- See the heading Deviation: Unfulfilled Party Representation Requirements for Couriers from Maricopa Dropbox Collection (2020) webpage.
- See the heading Deviation: Fictious Addresses in MC Voter Registration Database from Maricopa Dropbox Collection (2020) webpage.
- See the heading Deviation: Allegations Confirmed from Maricopa Dropbox Collection (2020) webpage.
- See the heading Noteworthy: Consequences Unknown from Maricopa Dropbox Collection (2020) webpage
- See the heading Noteworthy: Transmission of USPS Data to MC and Runbeck from Maricopa Dropbox Collection (2020) webpage
Governance issues identified from Arizona Attorney General's Office 2020 General Election Investigation of Arizona Senate allegations of Maricopa County - Signature Verification Process issues. The Counties appear to embrace Arizona guidance that facilitates fraud and pushback of on any suggestion to address potential fraud. In this case, MC are doing the minimum and comply with the Arizona Secretary of State's Election Procedures Manual. MC has not assessed fraud risk from have a single person, the Signature Verifier, making quick seven-second decisions with loose standards. In 2020, 1,910,317 early ballots were processed through the Signature Verification step. However, only 587 bad signatures were identified (excluding early ballots flagged with no signature).
