Isaca Certified Information Systems Auditor CISA Question # 122 Topic 13 Discussion
CISA Exam Topic 13 Question 122 Discussion:
Question #: 122
Topic #: 13
As part of an audit response, an auditee has concerns with the recommendations and is hesitant to implement them. Which of the following is the BEST course of action for the IS auditor?
A.
Accept the auditee ' s response and perform additional testing.
B.
Suggest hiring a third-party consultant to perform a current state assessment.
C.
Conduct further discussions with the auditee to develop a mitigation plan.
D.
Issue a final report without including the opinion of the auditee.
Collaborative discussions help address the auditee ' s concerns, find mutually agreeable solutions, and create buy-in for implementing improvements.
References
ISACA CISA Review Manual (Current Edition) - Chapters on audit reporting and communication
Auditing Standards - Emphasize the importance of understanding and addressing auditee concerns.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit