A finance system goes live on Monday. By Friday, the reconciliations don’t tie, approval trails look incomplete, staff keep side spreadsheets to “get through month-end”, and someone in legal asks whether key records were overwritten. That’s the point where organisational change stops being a project issue and becomes a forensic accounting problem.
Most leaders don’t set out to create that mess. They approve a migration, a restructuring, a controls uplift, or a merger integration because the business needs it. Then the human, operational, and evidential realities collide. Change management theories matter at exactly that point. Not as academic models, but as working tools for protecting financial integrity when pressure is high and trust is thin.
When Organisational Change Creates Financial Chaos
A failed change initiative rarely announces itself with one dramatic event. It usually starts with friction. Staff can’t find the right report. Finance teams duplicate work outside the system. Approval lines become unclear. Exception logs grow. Nobody can say with confidence which number is final.

That pattern is common enough to treat as a risk category in its own right. In the UK, firms undergo an average of five major change initiatives every three years, yet only 34% achieve full success, with 50% outright failing, according to Mooncamp’s summary of the underlying change management data. In practice, that failure rate often leaves behind the ambiguity and control gaps that trigger forensic accountant involvement.
What the breakdown looks like in practice
Consider a typical sequence after a rushed system migration.
- Records fragment. Teams split activity across the new platform, legacy exports, email approvals, and offline workarounds.
- Controls blur. Staff assume someone else still reviews journals, supplier changes, or access rights.
- Evidence weakens. Time stamps, version histories, and approval logs no longer tell a clean story.
- Disputes follow. Suppliers challenge balances, insurers question loss calculations, and directors disagree on what went wrong.
Those aren’t abstract implementation snags. They shape whether an investigation can trace transactions, quantify loss, or establish responsibility.
Early warning signs leaders miss
The most dangerous warning signs often sound operational rather than forensic.
A project sponsor says the rollout is “mostly working” while finance staff rebuild key schedules manually. Internal audit asks for a population file and receives three different versions. Managers reassure the board that issues are temporary, yet nobody has frozen key evidence or mapped the new process end to end.
Practical rule: If your team can’t explain where a figure came from, who approved it, and which system now owns it, you don’t have a change problem alone. You have an evidential risk.
That’s why post-change reviews shouldn’t sit only with IT or HR. They need forensic accounting discipline. You need to know which control failed, when it failed, whether losses followed, and whether someone exploited the disruption.
A useful example of how quickly this can escalate appears in this analysis of a new system meltdown. The important lesson isn’t the software itself. It’s that messy implementation can distort financial reporting, widen fraud opportunity, and harden commercial disputes long before management admits the project has slipped.
Why this hits regulated and contested environments harder
In high-stakes settings, poor change management can contaminate more than operations.
It can affect disciplinary processes, insurance claims, covenant reporting, completion accounts, and litigation. If staff bypass the intended process during change, investigators later face a harder task. They must separate honest workaround behaviour from concealment, negligence, or manipulation.
That is where change management theories become useful. They give structure to an otherwise chaotic environment. They help identify whether the core issue was resistance, poor sponsorship, weak communication, misaligned systems, or unmanaged transition. In forensic accounting, that distinction matters because each failure mode leaves a different evidential footprint.
Why Change Fails in High-Stakes Financial Environments
Many finance leaders dismiss change management theories because they sound soft. They expect hard controls, clean data, signed approvals, and documented procedures to carry the load. That view breaks down the moment people stop following the designed process.
In forensic accounting work, the human side isn’t separate from the control environment. It is the control environment. If employees don’t understand the change, don’t trust the sponsor, or don’t believe leadership will back the new process, they improvise. Improvisation is where data gaps, concealed exceptions, and unauthorised workarounds start.
Resistance is not a side issue
That matters because up to 70% of change programmes fail due to employee resistance and weak sponsorship. The same source notes that projects with extremely effective sponsors succeed at 79%, compared with 27% for those with ineffective leadership, as set out by Insentra’s review of change management benchmarks.
Those figures fit what practitioners see in disputed finance environments. When sponsorship is weak, staff test boundaries. They keep private logs. They route approvals through familiar managers rather than authorised channels. They delay awkward disclosures until after reporting deadlines. None of that looks dramatic at first. It still damages auditability.
Why “academic” models turn out to be practical
A good change model doesn’t replace financial control design. It tells you how controls will be accepted, used, challenged, or ignored by real people under pressure.
That matters in settings such as:
- Fraud investigations where staff fear heightened scrutiny and may resist system or process changes tied to evidence gathering.
- Post-acquisition integrations where two finance cultures apply different thresholds, approval habits, and documentation standards.
- Internal control remediations where management wants quick closure but frontline teams still rely on legacy methods.
- Litigation support engagements where weak implementation can muddy causation, quantum, and accountability.
Weak sponsorship doesn’t just slow adoption. It creates space for conflicting narratives about what the business intended, what staff were told, and whether controls operated as intended.
The direct link to evidential integrity
In a normal project, poor communication causes confusion. In a forensic context, poor communication can compromise evidence.
If leaders announce a control overhaul without clear ownership, staff may delete old files, overwrite transaction comments, or merge data sources without preserving provenance. If managers frame an internal audit badly, employees may see it as a blame exercise and become guarded. If legal, finance, and operations don’t coordinate, the organisation can lose the chronology needed to support a claim or defence.
That’s why change management theories deserve a place alongside audit planning, data preservation, and interview strategy. They help answer practical questions.
- Who needs to understand the reason for this change now?
- Which individuals can legitimise it across the business?
- Where will staff resist, subtly or openly?
- What old habits are likely to survive behind the official workflow?
- Which temporary workaround could later distort a loss calculation or liability position?
A grounded discussion of these issues appears in this guide to fixing finance systems mess. The common thread is simple. Financial environments fail during change not because theory is too academic, but because leaders ignore the behavioural mechanics that theory describes.
A Forensic Accountant’s Guide to Change Management Theories
The best change management theories aren’t competing belief systems. They are lenses. Each shows a different part of the failure pattern. In forensic accounting, that matters because one engagement may focus on root cause, another on adoption failure, and another on evidential resilience during a live dispute.

Lewin works when old controls must stop
Lewin’s Three-Stage Model remains useful because it is blunt. Unfreeze. Change. Refreeze. In financial control work, blunt is often good.
If a business still depends on informal approvals, inherited spreadsheet logic, or undocumented journal practices, “unfreeze” means more than announcing a new policy. It means exposing why the old process can’t continue. In a forensic setting, that often involves showing where the current method obscures audit trails or creates room for manipulation.
The model is especially strong when a business needs to dismantle familiar but unsafe habits. Its weakness is that it can look too linear for messy disputes. Real investigations often loop back. New evidence emerges. Staff push old routines back into the process.
Still, for control resets, Lewin gives teams a disciplined sequence. Stop pretending the current state is acceptable. Introduce a workable replacement. Lock it into routine, reporting, and supervision.
Kotter is strong when leadership credibility is the issue
Kotter’s 8-Step Process is useful when the technical answer is known but the organisation lacks momentum, alignment, or courage. In the UK public sector, Kotter’s 8-Step Model demonstrates a 24% higher success rate in transformations, according to Zendesk’s summary of that benchmark.
For forensic accountants, Kotter becomes practical at the first step. Creating urgency isn’t theatre. It means quantifying the risk of delay in terms stakeholders understand. That may involve showing how unresolved control failures affect cash leakage, reporting reliability, contractual positions, or fraud exposure.
Kotter’s strengths in investigations include:
- A visible sequence for aligning senior decision-makers before the review loses authority.
- A communication discipline that reduces mixed messages during sensitive enquiries.
- Short-term wins that can restore confidence if a business is under scrutiny.
Its main weakness is pace. In urgent disputes, eight steps can feel heavy if leadership wants immediate remediation. Used badly, the framework turns into slogan-led project language with no hard controls underneath.
ADKAR exposes where adoption breaks down person by person
ADKAR is often the most practical model in forensic accounting because it treats change as an individual adoption problem rather than a corporate announcement.
Awareness asks whether staff understand the need. Desire asks whether they want to support it. Knowledge checks whether they know what to do. Ability tests whether they can do it under real conditions. Reinforcement asks whether the business will keep the new behaviour in place.
That sequence is valuable during anti-fraud control rollouts, whistleblowing process changes, and financial investigation protocols. It helps identify whether non-compliance reflects confusion, capability gaps, passive resistance, or deliberate obstruction.
ADKAR is not a full organisational design model. It won’t tell you whether structure, incentives, reporting lines, and systems are aligned. But when you need to understand why a control exists on paper and fails in daily use, ADKAR is often the quickest diagnostic.
McKinsey 7S is strongest in integration failures
McKinsey 7S is less emotionally intuitive, but highly effective when a business has changed shape and nobody can work out why the control environment no longer fits.
The framework examines strategy, structure, systems, shared values, style, staff, and skills. For forensic applications, that matters in acquisitions, carve-outs, restructurings, and finance transformation projects. A business may have a sound fraud policy and still fail because its systems don’t support it, reporting lines bypass it, or leaders behave against it.
This model is especially useful for diagnosing inconsistency.
A company says it wants tighter expense control. Yet approval authority sits with managers who aren’t accountable for budget impact. Shared values reward speed over challenge. Staff inherited from an acquisition use a different coding logic. The issue is no longer one weak policy. It is misalignment across the organisation.
Its drawback is complexity. Teams can spend too long mapping the seven elements and too little time fixing the immediate evidential risk.
Bridges helps when morale affects cooperation
Bridges’ Transition Model focuses on the psychological journey through change. In forensic and audit work, that sounds softer than it is.
When an organisation enters an investigation, staff often feel they are losing something. Status. certainty. informal autonomy. trusted routines. If leaders ignore that transition, the business gets surface-level compliance and private resistance.
Bridges helps in interviews, remediation workshops, and post-incident communication because it recognises that people do not move from old to new in one clean step. They move through ending, an uncertain middle, and then a new beginning.
This matters when finance teams are under pressure. A manager may agree with a new control design and still undermine it because they haven’t accepted the loss of discretion that comes with tighter oversight. Bridges doesn’t solve structural flaws, but it does help explain why apparently rational people cling to flawed legacy methods.
Kübler-Ross is useful as a supplement, not a master plan
The Kübler-Ross change curve can help practitioners anticipate emotional responses during disruptive reviews, especially after fraud allegations, redundancies, or sharp governance interventions. Denial, anger, bargaining, and eventual acceptance often appear in some form.
It should not run the engagement. It is not a control framework. It is a behavioural cue sheet. Used carefully, it helps interviewers and change leads recognise when pushback is emotional rather than evidential.
That distinction matters. If staff are frightened, repeating technical instructions won’t solve the problem. They need clarity, consistency, and visible fairness.
In investigations, the wrong diagnosis wastes time. Leaders often answer mistrust with more process, or answer confusion with pressure. Both make adoption worse.
Comparing the models in forensic work
| Theory | Core Focus | Strength in Investigations | Weakness in Disputes |
|---|---|---|---|
| Lewin | Moving from old state to new state | Clear for replacing unsafe legacy controls and embedding new procedures | Can be too linear when facts shift during a live dispute |
| Kotter | Leadership-driven transformation | Strong for urgency, coalition building, and disciplined communication | Can become slow or ceremonial if the organisation needs immediate containment |
| ADKAR | Individual adoption | Excellent for diagnosing why staff aren’t using new anti-fraud or reporting processes | Doesn’t by itself address wider structural misalignment |
| McKinsey 7S | Organisational alignment | Good for identifying why strategy, systems, and culture clash after mergers or restructures | Can become analysis-heavy when urgent evidential risks need quick action |
| Bridges | Human transition through change | Helps explain morale, uncertainty, and cooperation issues during reviews | Not designed to test control design or causation |
| Kübler-Ross | Emotional response to disruption | Useful for anticipating reactions in interviews and sensitive remediation | Too narrow to manage a full financial transformation |
What a forensic practitioner uses
Most serious engagements use a hybrid approach. Few investigations fit neatly inside one model.
A forensic accountant might use Lewin to frame the control redesign, ADKAR to test whether staff can operate it, Kotter to secure executive sponsorship, and 7S to diagnose why the organisation keeps drifting back to bad practice. That is usually more realistic than treating one theory as complete.
For businesses facing disputes, fraud concerns, or unexplained losses during change, the operational side of this work is outlined in forensic accounting services and processes. The underlying point is straightforward. Change management theories become useful when they help preserve evidence, assign responsibility, and make improved controls stick under pressure.
Applying Change Models in Forensic and Audit Engagements
A model earns its place only when it changes what the team does on Monday morning. In forensic accounting and audit work, that means using the framework to improve evidence handling, interviews, control testing, and implementation discipline.

An underserved angle in change management is its application to forensic accounting transformations, especially with new UK regulations like the Economic Crime and Corporate Transparency Act 2023. That creates an urgent need for SMEs to adopt customized models for implementing new anti-fraud controls, as discussed in Prosci’s overview of change management models.
Using ADKAR for anti-fraud software adoption
A company installs new anti-fraud monitoring tools. The dashboard is live. Alerts exist. Yet nobody responds consistently.
ADKAR helps isolate the failure point.
-
Awareness
Ask whether staff understand why the tool matters. If messages focused only on “compliance”, many users will treat it as background noise. -
Desire
Test whether managers want the system to work. If they think alerts will slow operations or expose historic weaknesses, they may subtly deprioritise them. -
Knowledge
Review whether teams know how to escalate alerts, document review steps, and preserve supporting evidence. -
Ability
Observe the workflow. Some staff understand the process in theory but can’t perform it under deadline pressure. -
Reinforcement
Check whether supervisors review completion quality and challenge missed alerts.
That approach is more effective than labelling the whole rollout a “training issue”.
Using 7S after an acquisition
A newly acquired business says it has adopted group finance policy. The policy document exists. The control failures continue.
Use McKinsey 7S to test alignment.
- Strategy asks what the business is trying to protect.
- Structure asks who owns approval and review.
- Systems examines the platforms and workflows.
- Shared values tests whether local management believes the control matters.
- Style looks at leadership behaviour.
- Staff asks whether the right people are in place.
- Skills checks whether those people can perform the task properly.
This works particularly well when integration problems sit across finance, operations, and compliance rather than within one department.
Using Lewin during a control overhaul
When a business must replace unsafe legacy practices, Lewin keeps the remediation grounded.
- Unfreeze by documenting how the current process fails and where the evidential or fraud risk sits.
- Change by implementing the revised workflow with clear ownership, preserved audit trails, and practical user support.
- Refreeze by embedding the new control into month-end routines, supervisory reviews, and exception reporting.
For teams working in heavily documented sectors, reference material from adjacent assurance disciplines can also help. For example, this piece on auditing in banks is useful for thinking about traceability, review discipline, and control evidence in environments where documentation quality matters.
Field note: Don’t roll out a new control and then ask later whether it works. Build the test for adoption and evidence quality into the rollout itself.
A short engagement checklist
Use this when change and forensic risk appear together.
- Preserve evidence first. Freeze key reports, logs, approval histories, and data extracts before remediation changes the record.
- Map the process. Follow what staff do, not what the procedure says they do.
- Identify resistance points. Look for silence, delay, private spreadsheets, or selective non-use of the new process.
- Separate design from adoption. A sound control can still fail because the business hasn’t carried people with it.
- Report in operational language. Boards need to know not only that the control failed, but how that failure affects loss, exposure, or defensibility.
That is where change management theories stop being theory. They become working tools for forensic accountants, auditors, and legal teams trying to stabilise a business without compromising the facts.
Pitfalls to Avoid When Change and Investigations Collide
Organisations often assume that a live investigation and a live change programme can run in parallel if both teams “keep talking”. That assumption causes avoidable damage. The two efforts can support each other, but only if someone actively manages the points of conflict.

One of the clearest warnings comes from Lewin’s model in compliance settings. Applied to UK compliance overhauls, it showed a 32% reduction in regulatory breach recurrence when force field analysis quantified restraining forces such as cultural resistance, according to Pollack Peacebuilding’s summary of the model and benchmark. The point is practical. If you fail to identify the forces blocking change, those same forces will undermine the investigation.
Mixed messages from leadership
The first pitfall is inconsistency at the top.
Finance tells staff to cooperate fully with the review. Operations tells them to focus on continuity. HR frames the issue as culture. Legal says communications must stay tight. Staff hear four different priorities and start protecting themselves.
That creates hesitation, selective disclosure, and procedural drift. In investigations, hesitation matters. People delay producing records. Managers “clean up” files before sharing them. Teams reclassify problems as implementation noise rather than control breaches.
Remediation that destroys the trail
The second pitfall is well-intentioned repair carried out too early.
A project team identifies a broken approval path and rushes to fix it. Someone updates permissions, rewrites workflows, or archives local spreadsheets. The business may improve the control. It may also destroy the trail needed to establish what happened before the fix.
That mistake is common because managers want progress. They don’t want to sit with a known weakness. But a forensic review needs sequence, provenance, and context. If remediation erases those, the business can end up safer operationally but weaker evidentially.
Preserve first, repair second. If you reverse that order, you may improve the process while making the dispute harder to prove.
Turning the review into a witch-hunt
Another recurring error is poor communication during an investigation-linked change.
If employees believe the audit exists to assign blame rather than establish fact, they become defensive. Some will comply only formally. Others will avoid nuance, stop volunteering context, or hide behind process language.
That response matters in fraud and dispute work because many key facts sit in explanation rather than in the ledger. Why was this override accepted? Why did a manager bypass the workflow? Why did the team stop using the approved template? You won’t get credible answers from a workforce that feels ambushed.
Treating all resistance as misconduct
Not every workaround is malicious. Some are signs that the designed process doesn’t work in practice.
Leaders make bad decisions when they collapse all resistance into one category. A staff member may resist because they fear scrutiny. Another because the new workflow is badly sequenced. Another because training never reached them. Another because they don’t trust the sponsor.
If you don’t distinguish those motives, you will apply the wrong remedy. You may discipline where you should redesign. Or you may coach where you should investigate.
A better operating stance
When change and investigations collide, use a tighter discipline.
- Set one command message so staff hear a consistent purpose and process.
- Ringfence evidence before changing systems, access, or document structures.
- Define temporary controls while the review runs, rather than pretending the full redesign is already live.
- Separate explanation from accusation in interviews and staff communications.
- Review restraining forces openly so the business deals with resistance rather than the version people put in steering papers.
The organisations that manage this well don’t rely on optimism. They recognise that change management theories can expose predictable failure points before those points damage an investigation.
Build Resilient Controls with Lighthouse Consultants
When change goes wrong, businesses usually see the symptom first. A disputed figure. A control exception. A loss nobody can fully explain. A regulator, insurer, counterparty, or board member asking for evidence the organisation can’t quickly assemble.
The deeper issue is usually broader. The business changed systems, structures, or responsibilities without managing how people would adopt the new reality, how controls would operate under pressure, or how evidence would survive the transition. That is why change management theories matter in forensic accounting. They help connect behaviour, governance, systems, and proof.
What strong support looks like
A strong adviser doesn’t only identify the financial problem. They help the organisation answer harder questions.
- What failed first. The control design, the sponsorship, the communication, or the adoption.
- What evidence still exists. Which records remain reliable enough for dispute, claim, or remediation purposes.
- What must change now. Not in generic transformation language, but in clear operational steps.
- What must be preserved. So improvements don’t weaken legal or commercial positions.
That mix matters for fraud investigations, internal audits, due diligence, litigation support, and broader forensic accounting engagements. The work has to withstand scrutiny from management, counterparties, lawyers, insurers, and sometimes the court.
Why resilience beats quick fixes
Quick fixes satisfy reporting lines. They rarely solve the root cause.
A resilient control environment needs more than a revised policy. It needs clear ownership, practical workflows, reliable evidence, and communication that staff will act on. In assurance-heavy environments, useful reference points can come from adjacent frameworks too. For teams reviewing governance around technology and process change, this guide to SOC 2 change management controls is a helpful companion because it reinforces the need for documented, reviewable control changes.
Good forensic accounting doesn’t stop at quantifying the damage. It should also help prevent the same pattern from reappearing in a different form.
Where Lighthouse Consultants fits
Lighthouse Consultants operates in that overlap between financial fact-finding and practical remediation. The firm’s forensic accounting, audit, and management consulting work is built for situations where normal reporting has broken down, stakeholder trust is strained, and decisions need evidence rather than assumption.
That includes fraud, bribery, and corruption investigations. It includes litigation and insurance quantification. It includes due diligence, risk assessments, internal audits, and sustainability audits where a weak change process can distort financial outcomes and make responsibility harder to prove.
The value isn’t solely technical analysis. It is structured, defensible work that helps leaders stabilise the position, understand what happened, and embed controls that hold up after the immediate crisis has passed.
If your organisation is changing while facing unexplained losses, disputes, or control failure, that combination needs more than project management. It needs forensic accounting judgement and disciplined change execution.
If you need clear answers during a messy transformation, speak with Lighthouse Consultants. Their team helps businesses investigate what went wrong, quantify the financial impact, and rebuild controls that stand up to audit, negotiation, and court scrutiny.
Tags: forensic accountant, forensic accounting



