Pass the IIA CIA Challenge Exam IIA-ACCA Questions and answers with CertsForce

Viewing page 3 out of 13 pages
Viewing questions 31-45 out of questions
Questions # 31:

Which of the following evaluation criteria would be the most useful to help the chief audit executive determine whether an external service provider possesses the knowledge, skills, and other competencies needed to perform a review?

Options:

A.

The financial interest the service provider may have in the organization.


B.

The relationship the service provider may have had with the organization or the activities being reviewed.


C.

Compensation or other incentives that may be applicable to the service provider.


D.

The service provider's experience in the type of work being considered.


Expert Solution
Questions # 32:

A draft internal audit report that cites deficient conditions generally should be reviewed with which of the following groups?

1. The client manager and her superior.

2. Anyone who may object to the report’s validity.

3. Anyone required to take action.

4. The same individuals who receive the final report.

Options:

A.

1 only


B.

1 and 2 only


C.

1, 2, and 3


D.

1, 2, and 4


Expert Solution
Questions # 33:

A large retail organization, which sells most of its products online, experiences a computer hacking incident. The chief IT officer immediately investigates the incident and concludes that the attempt was not successful. The chief audit executive (CAE) learns of the attack in a casual conversation with an IT auditor. Which of the following actions should the CAE take?

1. Meet with the chief IT officer to discuss the report and control improvements that will be implemented as a result of the security breach, if any.

2. Immediately inform the chair of the audit committee of the security breach, because thus far only the chief IT officer is aware of the incident.

3. Meet with the IT auditor to develop an appropriate audit program to review the organization's Internet-based sales process and key controls.

4. Include the incident in the next quarterly report to the audit committee.

Options:

A.

1 and 2


B.

1 and 3


C.

2 and 4


D.

3 and 4


Expert Solution
Questions # 34:

Which of the following statements describes an engagement planning best practice?

Options:

A.

It is best to determine planning activities on a case-by-case basis because they can vary widely from engagement to engagement.


B.

If the engagement subject matter is not unique, it is not necessary to outline specific testing procedures during the planning phase.


C.

The engagement plan includes the expected distribution of the audit results, which should be kept confidential until the audit report is final.


D.

Engagement planning activities include setting engagement objectives that align with audit client's business objectives.


Expert Solution
Questions # 35:

According to IIA guidance, which of the following statements is true regarding the authority of the chief audit executive (CAE) to release previous audit reports to outside parties?

Options:

A.

The CAE can release prior internal audit reports with the approval of the board and senior management.


B.

The CAE can employ judgment and release prior audit results as they deem appropriate and necessary.


C.

The CAE can only release prior information outside the organization when mandated by legal or statutory requirements.


D.

The CAE can release prior information provided it is as originally published and distributed within the organization.


Expert Solution
Questions # 36:

An internal auditor determines that certain information from the engagement results is not appropriate for disclosure to all report recipients because it is privileged. In this situation, which of the following actions would be most appropriate?

Options:

A.

Disclose the information in a separate report.


B.

Distribute the information in a confidential report to the board only


C.

Distribute the reports through the use of blind copies.


D.

Exclude the results from the report and verbally report the conditions to senior management and the board.


Expert Solution
Questions # 37:

When developing the scope of an audit engagement, which of the following would the internal auditor typically not need to consider?

Options:

A.

The need and availability of automated support.


B.

The potential impact of key risks.


C.

The expected outcomes and deliverables.


D.

The operational and geographic boundaries.


Expert Solution
Questions # 38:

An internal auditor has been assigned to facilitate a risk and control self-assessment for the finance group. Which of the following is the most appropriate role that she should assume when facilitating the workshop?

Options:

A.

Express an opinion on the participants' inputs and conclusions as the assessment progresses.


B.

Provide appropriate techniques and guidelines on how the exercise should be undertaken.


C.

Evaluate and report on all issues that may be uncovered during the exercise.


D.

Screen and vet participants so that the most appropriate candidates are selected to participate in the exercise.


Expert Solution
Questions # 39:

Which of the following has the greatest effect on the efficiency of an audit?

Options:

A.

The complexity of deficiency findings.


B.

The adequacy of preliminary survey information.


C.

The organization and content of workpapers.


D.

The method and amount of supporting detail used for the audit report.


Expert Solution
Questions # 40:

When forming an opinion on the adequacy of management's systems of internal control, which of the following findings would provide the most reliable assurance to the chief audit executive?

• During an audit of the hiring process in a law firm, it was discovered that potential employees' credentials were not always confirmed sufficiently. This process remained unchanged at the following audit.

• During an audit of the accounts payable department, auditors calculated that two percent of accounts were paid past due. This condition persisted at a follow up audit.

• During an audit of the vehicle fleet of a rental agency, it was determined that at any given time, eight percent of the vehicles were not operational. During the next audit, this figure had increased.

• During an audit of the cash handling process in a casino, internal audit discovered control deficiencies in the transfer process between the slot machines and the cash counting area. It was corrected immediately.

Options:

A.

1 and 3 only


B.

1 and 4 only


C.

2 and 3 only


D.

2 and 4 only


Expert Solution
Questions # 41:

According to IIA guidance, which of the following factors should the auditor in charge consider when determining the resource requirements for an audit engagement?

Options:

A.

The number, experience, and availability of audit staff as well as the nature, complexity, and time constraints of the engagement.


B.

The appropriateness and sufficiency of resources and the ability to coordinate with external auditors.


C.

The number, proficiency, experience, and availability of audit staff as well as the ability to coordinate with external auditors.


D.

The appropriateness and sufficiency of resources as well as the nature, complexity, and time constraints of the engagement.


Expert Solution
Questions # 42:

Which of the following conditions are necessary for successful change management?

1. Decisions and necessary actions are taken promptly.

2. The traditions of the organization are respected.

3. Changes result in improvement or reform.

4. Internal and external communications are controlled.

Options:

A.

1 and 2


B.

1 and 3


C.

2 and 3


D.

2 and 4


Expert Solution
Questions # 43:

Which of the following is least likely to help ensure that risk is considered in a work program?

Options:

A.

Risks are discussed with audit client.


B.

All available information from the risk-based plan is used.


C.

Client efforts to affect risk management are considered.


D.

Prior risk assessments are considered.


Expert Solution
Questions # 44:

According to IIA guidance, which of the following actions might place the independence of the internal audit function in jeopardy?

Options:

A.

Having no active role or involvement in the risk management process.


B.

Auditing the risk management process for reasonableness.


C.

Coordinating and managing the risk management process.


D.

Participating with management in identifying and evaluating risks.


Expert Solution
Questions # 45:

An internal auditor is assessing the organization's risk management framework. Which of the following formulas should he use to calculate the residual risk?

A) Question # 45

B)Question # 45

C) Question # 45

D) Question # 45

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Viewing page 3 out of 13 pages
Viewing questions 31-45 out of questions