Question 326

Which of the following is an appropriate role for the internal audit activity with regard to the organization's risk management program?
  • Question 327

    Once an audit report is drafted, the auditor's supervisor should review it primarily to ensure that all:
  • Question 328

    Which of the following would provide the greatest assurance of the accuracy of a computer program's computation of freight charges for catalog sales?
  • Question 329

    During a systems development audit, software developers indicated that all programs were moved from the development environment to the production environment and then tested in the production environment. What should the auditor recommend?
    I. Implement a test environment to ensure that testing is not performed in the production environment.
    II. Require developers to move modified programs from the development environment to the test environment and from the test environment to the production environment.
    III. Eliminate access by developers to the production environment.
  • Question 330

    Which of the following are key characteristics of enterprise risk management?
    1. It considers risk in the formulation of strategy.
    2. It applies risk management in some units of an entity.
    3. It takes a portfolio view of risks throughout the enterprise.
    4. It restricts the organization's ability to seize opportunities inherent in future events.