New Year Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

IIA-CIA-Part3-3P Exam Dumps - CIA Exam Part Three: Business Knowledge for Internal Auditing

Go to page:
Question # 49

Which of the following local area network physical layouts is subject to the greatest risk of failure if one device fails?

A.

Star network.

B.

Bus network.

C.

Token ring network.

D.

Mesh network.

Full Access
Question # 50

An internal auditor is trying to assess control risk and the effectiveness of an organization's internal controls. Which of the following audit procedures would not provide assurance to the auditor on this matter?

A.

Interviewing the organization's employees.

B.

Observing the organization's operations.

C.

Reading the board's minutes.

D.

Inspecting manuals and documents.

Full Access
Question # 51

Which of the following is not a barrier to effective communication?

A.

Filtering.

B.

Communication overload.

C.

Similar frames of reference.

D.

Lack of source credibility.

Full Access
Question # 52

According to the COSO enterprise risk management (ERM) framework, which of the following is not a typical responsibility of the chief risk officer?

A.

Establishing risk category definitions and a common risk language for likelihood and impact measures.

B.

Defining ERM roles and responsibilities.

C.

Providing the board with an independent, objective risk perspective on financial reporting.

D.

Guiding integration of ERM with other management activities.

Full Access
Question # 53

When granting third parties temporary access to an entity's computer systems, which of the following is the most effective control?

A.

Access is approved by the supervising manager.

B.

User accounts specify expiration dates and are based on services provided.

C.

Administrator access is provided for a limited period.

D.

User accounts are deleted when the work is completed.

Full Access
Question # 54

According to IIA guidance, which of the following corporate social responsibility (CSR) activities is appropriate for the internal audit activity to perform?

A.

Determine the optimal amount of resources for the organization to invest in CSR.

B.

Align CSR program objectives with the organization's strategic plan.

C.

Integrate CSR activities into the organization's decision-making process.

D.

Determine whether the organization has an appropriate policy governing its CSR activities.

Full Access
Question # 55

Which of the following assumptions regarding cost-volume-profit analysis is true?

A.

Costs are affected by changes in activity only.

B.

The behavior of costs and revenues is inverse.

C.

When more than one type of product is sold, the sales mix changes.

D.

Only variable costs have to be classified accurately.

Full Access
Question # 56

Which of the following statements is true with regard to information protection?

A.

All personal information, by definition is considered to be sensitive, requiring specialized controls.

B.

Information is not considered personal if it can only be linked to or used to identify an individual indirectly.

C.

Individuals who provide personal information to organizations share in the risk of inappropriate

disclosure.

D.

Good protection controls remove any restrictions on the quantity of personal information that can be collected

Full Access
Go to page: