Transcript
Macros are not the deciding factor
A spreadsheet without macros may calculate a critical release limit, while a complex workbook may only support informal planning. Start with intended use. Identify the regulated decision, record, calculation, or report that depends on the workbook and the consequence of an incorrect output.
Follow formulas, data, and manual steps
Consider formula errors, incorrect references, units, rounding, hidden cells, lookup tables, external links, copy and paste, manual sequence, stale data, and uncontrolled versions. Then review preventive and detective controls such as approved templates, protected cells, access, independent calculation, review, and reconciliation.
Control the validated workbook
Use independent calculations, known-answer cases, boundary values, negative inputs, and realistic workflow checks for the risks identified. Define the approved file and location, owner, protection, change approval, backup, and periodic review. Validation is driven by reliance and risk, not by whether the file contains code.