ExamGecko
Question list
Search
Search

Related questions











Question 895 - CISA discussion

Report
Export

As part of an audit response, an auditee has concerns with the recommendations and is hesitant to implement them. Which of the following is the BEST course of action for the IS auditor?

A.
Accept the auditee's response and perform additional testing.
Answers
A.
Accept the auditee's response and perform additional testing.
B.
Suggest hiring a third-party consultant to perform a current state assessment.
Answers
B.
Suggest hiring a third-party consultant to perform a current state assessment.
C.
Conduct further discussions with the auditee to develop a mitigation plan.
Answers
C.
Conduct further discussions with the auditee to develop a mitigation plan.
D.
Issue a final report without including the opinion of the auditee.
Answers
D.
Issue a final report without including the opinion of the auditee.
Suggested answer: C

Explanation:

Collaborative discussions help address the auditee's concerns, find mutually agreeable solutions, and create buy-in for implementing improvements.

Reference

ISACA CISA Review Manual (Current Edition)- Chapters on audit reporting and communication

Auditing Standards- Emphasize the importance of understanding and addressing auditee concerns.

asked 18/09/2024
Bipindra Shrestha
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first