Exam Name: | Practice of Internal Auditing | ||
Exam Code: | IIA-CIA-Part2 Dumps | ||
Vendor: | IIA | Certification: | CIA |
Questions: | 495 Q&A's | Shared By: | aden |
Which of the following internal audit activity staffing models has the disadvantage that auditors are always new and in training?
A large retail organization, which sells most of its products online, experiences a computer hacking incident. The chief IT officer immediately investigates the incident and concludes that the attempt was not successful. The chief audit executive (CAE) learns of the attack in a casual conversation with an IT auditor. Which of the following actions should the CAE take?
1. Meet with the chief IT officer to discuss the report and control improvements that will be implemented as a result of the security breach, if any.
2. Immediately inform the chair of the audit committee of the security breach, because thus far only the chief IT officer is aware of the incident.
3. Meet with the IT auditor to develop an appropriate audit program to review the organization's Internet-based sales process and key controls.
4. Include the incident in the next quarterly report to the audit committee.
When auditing an organization's purchasing function, which of the following appropriately matches an engagement objective and the resulting audit procedure?
An organization owns vehicles that are kept off-site by employees to pick up and deliver orders. An internal auditor selects a specific vehicle from the fixed asset register for
testing. Which of the following would best provide sufficient, indirect evidence for the auditor to confirm the existence of the vehicle?