According to IIA guidance, which of the following actions best demonstrates that due professional care has been considered by the internal audit activity when conducting a review of an organization's assets?
Which of the following is a strategic risk that internal auditors should consider when performing a third-party risk management engagement?
Which of the following options describes the reason that conformance with The IIA's Code of Ethics is mandatory for internal auditors?
Which of the following is the primary engagement responsibility of an entry-level internal auditor?
Management assessed the organization’s risk of expanding operations into a new, but volatile, region and began looking for a compatible local partner to manage sales and distribution. Which of the following best describes this risk management technique?
A whistleblower reveals to the chief audit executive (CAE) detailed allegations of potential fraud at the senior management level. Although the CAE has some experience in the area, she chooses to retain an external fraud expert to conduct the investigation. When asked by the director of finance to defend the expenditure, which of the following statements represents the CAE's best response?
Which of the following would be the most effective fraud prevention control?
Which of the following best describes the role of internal control frameworks?
An internal auditor in a newly established internal audit activity identifies many control weaknesses and raises a number of high-priority recommendations in her first few audit engagements. The internal auditor is concerned that there seems to be a poor understanding by management of risk and control. Which of the following is the most likely reason for this?
The largest risks facing an organization should be mitigated by which type of controls?
Which of the following would be addressed in the internal audit charter?
The manager of the payroll department requested a review of the payroll process, but only wants the engagement to include processes related to approval of time worked. What type of activity is this?
Which of the following should a general internal auditor be able to characterize as an IT-related risk?
A regional entertainment organization is in the process of developing a corporate social responsibility (CSR) policy. Management invites ideas from employees when developing the CSR policy. Which of the following is the most appropriate idea to include?
An internal auditor was assigned to work in the procurement department for six months to gam m-depth knowledge about the procurement process. Which of the following personnel development practices was applied in this situation?