Senior management is eager to assess the organization ' s risks with regard to electricity sales processes, but the senior management team does not know where to start. How can the internal audit activity assist?
Senior management asks the chief audit executive to review the organization ' s compliance with recently introduced legislation on international transfer pricing. The review requires an internal auditor who thoroughly understands the legislation and pricing methods. The internal audit activity does not have an auditor with those skills. Which of the following is the most appropriate course of action?
Which of the following actions should an organization take to detect an emerging risk of potential fraud?
Which action by senior management indicates to the internal auditor that there may be fraudulent activities occurring within the organization?
At what point in time can an organization conclude that the established organizational governance framework was correctly implemented?
Which of the following most accurately describes the role of the board when it comes to organizational governance?
A new chief audit executive realized that the internal audit charter has not been updated in five years and only includes the Core Principles for the Professional Practice of Internal Auditing, the Code of Ethics, and the Standards. What mandatory component is missing?
Wi ch of the following circumstances would most likely be considered a potential red flag for fraud by the internal audit activity?
Which of the following types of fraud tests would be most effective if an internal auditor was looking for possible fictitious vendors?
A whistleblower reveals to the chief audit executive (CAE) detailed allegations of potential fraud at the senior management level. Although the CAE has some experience in the area, she chooses to retain an external fraud expert to conduct the investigation. When asked by the director of finance to defend the expenditure, which of the following statements represents the CAE ' s best response?
A new company’s risk management function is developing its cybersecurity risk management program Which of the following actions should be the first priority when developing the program?
What is the primary purpose of The IIA ' s Code of Ethics?
Which of the following is a typical characteristic of an organization ' s risk management framework?
An internal auditor observed that sales staff are able to modify or cancel an order in the system prior to shipping* She wonders whether they can also modify orders after shipping. Which of the following types of controls should she examine?
Which of the following statements demonstrates that internal auditors are in conformance with the standard of due professional care?