Running an Internal Compliance Audit

Internal audits help us find and fix problems before they affect participants or show up at an external audit. This course shows team leaders and managers how to run a practical internal compliance audit: why we audit internally and why independence matters, how to plan the scope against the NDIS Practice Standards and our policies, how to sample files fairly and interview staff well, how to gather evidence and write strong findings, and how to build corrective action plans that close the loop. Two case studies follow a medication audit that uncovers a serious issue and a follow up audit under pressure before an external audit. Duration: 50 minutes.

What you will learn

Module 1: Planning an Internal Audit

  • Why We Audit Internally

    An internal audit is a planned, objective check of whether what we do matches what we say we do, and whether that meets the NDIS Practice Standards and our own policies. It is part of our quality management system and a key way to keep improving. This lesson explains the purpose of internal audits, how they differ from external audits, and the mindset that makes them useful. Key points: audits look for evidence not opinions, they test systems not people, and their value lies in the improvements that follow.

  • Planning the Scope

    A clear scope keeps an internal audit focused and manageable. This lesson shows you how to choose what to audit, which NDIS Practice Standards outcomes and internal policies apply, which services, time period and records are included, and who you will speak with. It explains how to use risk, previous findings, incidents and complaints to decide priorities, and how to write a short audit plan that tells everyone what to expect. Key points: base scope on risk, link each area to a standard, and agree the plan before you start.

Module 2: Doing the Audit

  • Sampling Files and Gathering Evidence

    You rarely have time to check every file, so sampling lets you draw fair conclusions from a smaller set. This lesson explains how to choose a sample that is random but also includes higher risk participants and newer workers, how to trace a participant's journey through their records, and how to combine document review, observation and interviews. It also covers how to record evidence clearly and handle personal information respectfully. Key points: sample fairly, trace across records, triangulate your evidence and write down exactly what you saw.

  • Rating Findings

    Consistent ratings make audit results fair and comparable across services. This lesson explains how we classify results: conformity where the requirement is met, a minor nonconformity where there is an isolated or low risk gap, a major nonconformity where a requirement is not met in a way that creates significant risk or a system failure, and opportunities for improvement. You will learn how to write a clear finding that states the requirement, the evidence and the gap, and why immediate risks to a participant must be escalated straight away.

Module 3: After the Audit

  • Corrective Action and Closing the Loop

    An audit only improves support if its findings lead to action. This lesson explains how to agree a corrective action plan with the service, how to address root causes rather than just fixing individual files, how to set owners and realistic due dates, and how to check that actions actually worked. It also covers recording actions in our continuous improvement register and reporting themes to senior leaders. Key points: fix the file and the system, assign an owner and date to every action, and verify effectiveness before closing.

  • Preparing for External Audits

    A strong internal audit program is the best preparation for an external audit by an approved quality auditor. This lesson explains how to use internal audit results to show continuous improvement, how to prepare teams and participants for interviews without scripting them, how to organise evidence so it can be found quickly, and how to respond honestly during the audit. Key points: be audit ready all year round, show your improvement journey, never alter records, and treat any external finding as another chance to improve.

Module 4: Putting It Into Practice

  • Case Study: Tracing Medication at Riverbend

    This case study follows Kiri, a team leader auditing medication support at Riverbend, a supported independent living service. Using the participant journey technique, she compares medication charts with incident records and case notes, and finds entries that do not add up. The lesson shows how to record the evidence precisely, check other sources before drawing conclusions, and escalate a possible serious issue straight away rather than holding it for the report. Key points: evidence first, stay neutral, escalate risks immediately and keep the audit fair to everyone involved.

  • Case Study: Closing the Loop at Harbourside

    This case study follows a follow up audit at Harbourside, a community participation service, six months after an internal audit found overdue support plan reviews. The service manager has marked the corrective action closed, but a fresh sample tells a different story, and an external audit is only weeks away. The lesson shows how to test whether actions worked, how to respond to pressure to close findings early, and how an honest improvement record helps at an external audit. Key points: closed means it worked, and honesty builds confidence.

How the course works

Every lesson is narrated and hands on, with sorting, sequencing and flip card activities and realistic workplace scenarios. A quiz closes each module and a final assessment, with questions shuffled every attempt, confirms your understanding. Pass with 80% or more to receive your certificate.

Frequently asked questions

How long is the Running an Internal Compliance Audit course?

The course takes about 50 minutes. It has 4 modules and 8 narrated, interactive lessons, and you can stop and pick up where you left off at any time.

Do I get a certificate?

Yes. Complete every lesson and module quiz, then pass the final assessment with 80% or more. Your certificate is issued straight away, emailed to you and carries a unique ID that employers and auditors can check.

How much does it cost?

This course is $55 including GST and yours to keep. It is also included in All Access, which unlocks every course in the Academy for $260 a year.

Can I try it before I buy?

Yes. The first lesson of every course is free to try, with no account needed.

Who is this course for?

It is written for team leaders and managers in Australian NDIS and aged care services. It is recommended training for many roles.

Can I buy training for my whole team?

Yes. Contact Provider Compliance on 1800 299 452 or info@providercompliance.com.au for team access and bulk pricing.