ExamGecko
Home / IIA / IIA-CIA-Part2 / List of questions
Ask Question

IIA IIA-CIA-Part2 Practice Test - Questions Answers, Page 23

List of questions

Question 221

Report Export Collapse

When a significant finding is noted early during a review of the accounts payable function, which next course of action is best for communicating the issue?

Intern accounting management via an interim memorandum update
Intern accounting management via an interim memorandum update
Note the item in the workpapers for inclusion in the final audit report
Note the item in the workpapers for inclusion in the final audit report
Call a meeting and discuss me issue with the audit committee
Call a meeting and discuss me issue with the audit committee
Alert the CEO as soon as the issue is discovered
Alert the CEO as soon as the issue is discovered
Suggested answer: A
Explanation:

When a significant finding is noted early during a review of the accounts payable function, the best course of action for communicating the issue is to inform internal accounting management via an interim memorandum update. This allows for timely communication and potential early remediation actions, ensuring that management is aware of the issue and can address it promptly before the final audit report is issued.

The Institute of Internal Auditors (IIA) Standards

Internal Audit Communication and Reporting Protocols

asked 18/09/2024
Hernan Rojas
52 questions

Question 222

Report Export Collapse

Which of the following manual audit approaches describes testing the validity of a document by following it backward to a previously prepared record?

Tracing
Tracing
Reperformance
Reperformance
Vouching
Vouching
Walkthrough
Walkthrough
Suggested answer: C
Explanation:

Vouching is the manual audit approach that involves testing the validity of a document by following it backward to a previously prepared record. This method helps auditors verify the authenticity and accuracy of transactions by tracing them back to their source documents, such as invoices, receipts, or purchase orders. Vouching is commonly used to detect errors or fraud.

The Institute of Internal Auditors (IIA) Standards

Auditing Techniques and Procedures

asked 18/09/2024
Adrien Gallais
44 questions

Question 223

Report Export Collapse

An internal auditor wants to compare performance information from one quarter to another. Which analytics procedure would the auditor use?

Ratio analysis
Ratio analysis
Trend analysis
Trend analysis
Vertical analysis
Vertical analysis
Benchmarking analysis
Benchmarking analysis
Suggested answer: B
Explanation:

Trend analysis is the analytics procedure that an internal auditor would use to compare performance information from one quarter to another. This technique involves analyzing data over a specific period to identify patterns, trends, and changes in performance metrics. Trend analysis helps auditors understand the direction of key performance indicators and assess whether performance is improving, declining, or remaining stable.

The Institute of Internal Auditors (IIA) Standards

Data Analytics Techniques in Internal Auditing

asked 18/09/2024
Maria Gervasi
41 questions

Question 224

Report Export Collapse

An internal auditor wanted to determine whether the organization's 200 employees are charging their work hours accurately to the correct project. The internal auditor selected a sample of 30 employee time reports for testing. Based on the testing, the internal auditor determined the following:

- 5 Time reports were incorrect.

- 21 Time reports were correct.

- 4 Time reports were not supported.

The organization has significant flaws in its reporting of employee time, which could lead to the overstatement of project labor costs. The organization's failure to report accurate and complete employee time could lead to potential fraud and abuse.
The organization has significant flaws in its reporting of employee time, which could lead to the overstatement of project labor costs. The organization's failure to report accurate and complete employee time could lead to potential fraud and abuse.
The organization needs to ensure that all reporting of employee time is accurate and complete for each of its projects By dang so the organization can minimize potential issues related to overstating employee tames and labor project costs.
The organization needs to ensure that all reporting of employee time is accurate and complete for each of its projects By dang so the organization can minimize potential issues related to overstating employee tames and labor project costs.
The organization overstated project costs due to inaccurate and incomplete reporting of employee time charged to the affected accounts As a result the organization cannot ensure at protects costs are accurately reported to stakeholders
The organization overstated project costs due to inaccurate and incomplete reporting of employee time charged to the affected accounts As a result the organization cannot ensure at protects costs are accurately reported to stakeholders
The organization generally ensured that employee hours charged to each project were accurate and complete. However, there were instances of employee time reports that were incorrect or not supported to justify the multiple project labor coats
The organization generally ensured that employee hours charged to each project were accurate and complete. However, there were instances of employee time reports that were incorrect or not supported to justify the multiple project labor coats
Suggested answer: D
Explanation:

In internal auditing, when assessing the accuracy and completeness of employee time reporting, auditors often use sampling to determine the overall compliance of the process. In this scenario, the internal auditor sampled 30 employee time reports and found 5 incorrect and 4 unsupported reports. This indicates that a majority (21 out of 30) were accurate, suggesting that the organization generally ensures accurate reporting. However, the presence of incorrect and unsupported reports indicates deficiencies that need to be addressed, but do not point to systemic fraud or abuse. Thus, option D accurately reflects the findings by acknowledging both the general accuracy and the instances of errors.

Reference:

The Institute of Internal Auditors (IIA) - Standards for the Professional Practice of Internal Auditing

COSO Framework - Control Activities and Monitoring

asked 18/09/2024
Daniel Yamamoto
47 questions

Question 225

Report Export Collapse

The chief audit executive (CAF) determined that the residual risk identified in an assurance engagement is acceptable. When should this be communicated to senior management?

When the CAE reports the audit outcome to senior management.
When the CAE reports the audit outcome to senior management.
When the residual risk is identified before the engagement is complete.
When the residual risk is identified before the engagement is complete.
Immediately, as residual risk should be communicated as soon as possible
Immediately, as residual risk should be communicated as soon as possible
When management of the area under review has resolved and mitigated the residual risk
When management of the area under review has resolved and mitigated the residual risk
Suggested answer: A
Explanation:

The chief audit executive (CAE) has the responsibility to communicate audit results, including residual risks, to senior management. According to IIA Standard 2410 - Criteria for Communicating, the CAE should communicate the engagement's objectives, scope, conclusions, recommendations, and action plans. Residual risk, being a part of the audit outcome, should be reported at the same time as the audit results to ensure that senior management is fully informed of all aspects of the engagement. This allows senior management to understand the remaining risks after control measures have been applied.

Reference:

The Institute of Internal Auditors (IIA) - Standards for the Professional Practice of Internal Auditing, Standard 2410 - Criteria for Communicating

asked 18/09/2024
Franklin Leon
46 questions

Question 226

Report Export Collapse

Which of the following information is most appropriate for the chief audit executive to share when coordinating audit plans with other internal and external assurance providers?

Objectives scope and timing at a high level to support coordination while adhering to confidentiality requirements
Objectives scope and timing at a high level to support coordination while adhering to confidentiality requirements
The area and timing of the audit engagement to ensure confidentially and avoid conflict of interest.
The area and timing of the audit engagement to ensure confidentially and avoid conflict of interest.
All plan information, including risk assessments, planned tests and past results to maximize the opportunity for coordination with internal and external providers.
All plan information, including risk assessments, planned tests and past results to maximize the opportunity for coordination with internal and external providers.
No information should be shared with internal and external provider as it could introduce bias into the engagement results.
No information should be shared with internal and external provider as it could introduce bias into the engagement results.
Suggested answer: A
Explanation:

Coordinating audit plans with other internal and external assurance providers is critical to ensure coverage and avoid duplication of efforts. According to IIA Practice Advisory 2050-1, sharing high-level information such as objectives, scope, and timing supports effective coordination and minimizes the risk of conflicts of interest, while still maintaining confidentiality. Detailed sharing of risk assessments, planned tests, and past results might breach confidentiality and independence standards.

Reference:

The Institute of Internal Auditors (IIA) - Practice Advisory 2050-1: Coordination of Internal and External Audit Activities

asked 18/09/2024
Wessel Beulink
47 questions

Question 227

Report Export Collapse

An internal auditor s testing tor proper authorization of contracts and finds that the rate of deviations discovered in the sample is equal to the tolerable deviation rate. When of the following is the most appropriate conclusion for the internal auditor to make based on this result?

The internal auditor concludes that management may be placing undue reliance on me specified control
The internal auditor concludes that management may be placing undue reliance on me specified control
The internal auditor concludes that the specified control is more effective than it really is.
The internal auditor concludes that the specified control is more effective than it really is.
The internal auditor concludes that the specified control is acceptably effective
The internal auditor concludes that the specified control is acceptably effective
The internal auditor concludes that additional testing will be required to evaluate the specified control
The internal auditor concludes that additional testing will be required to evaluate the specified control
Suggested answer: C
Explanation:

When the rate of deviations discovered in the sample equals the tolerable deviation rate, it means that the control is functioning at the level deemed acceptable by the auditor's predefined criteria. This does not necessarily imply that the control is flawless, but rather that its effectiveness meets the minimum standards set by the audit plan. Therefore, the internal auditor can conclude that the control is acceptably effective, but should also note the potential need for improvement.

Reference:

The Institute of Internal Auditors (IIA) - Standards for the Professional Practice of Internal Auditing, Standard 2320 - Analysis and Evaluation

COSO Framework - Control Activities

asked 18/09/2024
Jesse Serrano
39 questions

Question 228

Report Export Collapse

According to IIA guidance, which of the following would be considered necessary for a one-person audit function?

A formalized technical audit manual
A formalized technical audit manual
A written administrative audit manual
A written administrative audit manual
A memorandum stating policies and procedures
A memorandum stating policies and procedures
A comprehensive policy and procedure manual
A comprehensive policy and procedure manual
Suggested answer: C
Explanation:

For a one-person audit function, the primary focus is on ensuring that there is a clear understanding of the audit policies and procedures without the need for extensive documentation. According to the IIA's guidance, a memorandum stating the policies and procedures would suffice for a one-person audit function, providing a concise yet comprehensive outline of the necessary protocols to follow. This approach ensures that the sole auditor has clear directives while avoiding the administrative burden of maintaining a more extensive manual that might be necessary for larger audit teams.

Reference:

The Institute of Internal Auditors (IIA) - Practice Advisory 2040-1: Policies and Procedures

asked 18/09/2024
Donn Policarpio
48 questions

Question 229

Report Export Collapse

During the planning phase of an assurance engagement, an internal auditor seeks to gam an understanding of now when the area under review is accomplishing its objectives When of the

Following information-gathering techniques is the auditor most likely to use?

A review of the key performance indicators of me area under review.
A review of the key performance indicators of me area under review.
A walkthrough of the key processes of the area under review.
A walkthrough of the key processes of the area under review.
An interview with the manager regarding the area's business plan.
An interview with the manager regarding the area's business plan.
A review of previous audit and follow- up results of the area under review
A review of previous audit and follow- up results of the area under review
Suggested answer: A
Explanation:

During the planning phase of an assurance engagement, gaining an understanding of how the area under review is accomplishing its objectives is crucial. Reviewing key performance indicators (KPIs) is a primary technique because KPIs are directly tied to the objectives and provide measurable data on performance. This review helps the auditor understand whether the objectives are being met effectively and highlights areas that may require further investigation.

Reference:

The Institute of Internal Auditors (IIA) - Standards for the Professional Practice of Internal Auditing, Standard 2201 - Planning Considerations

asked 18/09/2024
Charly Ndedi Priso
38 questions

Question 230

Report Export Collapse

What is the purpose of an internal control questionnaire?

To gather information from a sample of people who are geographically dispersed
To gather information from a sample of people who are geographically dispersed
To assess risks that could prevent an audited area from achieving its objectives.
To assess risks that could prevent an audited area from achieving its objectives.
To evaluate tie level of compliance of remote offices with centrally designed procedures
To evaluate tie level of compliance of remote offices with centrally designed procedures
To perform testing of controls more frequently
To perform testing of controls more frequently
Suggested answer: B
Explanation:

An internal control questionnaire (ICQ) is a tool used by auditors to gather detailed information about the internal control system of an audited area. The primary purpose of an ICQ is to identify and assess risks that could prevent the area from achieving its objectives. By systematically covering various control points, the questionnaire helps the auditor evaluate the adequacy and effectiveness of controls in place and identify areas where controls may be lacking or need improvement.

Reference:

The Institute of Internal Auditors (IIA) - Practice Guide: Internal Control Questionnaire

asked 18/09/2024
Paolo D Amelio
38 questions
Total 492 questions
Go to page: of 50
Search

Related questions