Question 76

Which of the following are components of the COSO enterprise risk management framework?
1. Objective setting.
2. External environment.
3. Data collection.
4. Control activities.
  • Question 77

    Given the highly technical and legal nature of privacy issues, which of the following statements best describes the internal audit activity's responsibility with regard to assessing an organization's privacy framework?
  • Question 78

    According to IIA guidance, which of the following is an area in which the internal auditor should be proficient?
  • Question 79

    Which of the following are core responsibilities to be included in the internal audit charter?
    1. Review reliability and integrity of financial and operating information and the means used to identify, measure, classify, and report such information.
    2. Determine the adequacy and effectiveness of the organization's systems of internal accounting and operating controls.
    3. Participate in the planning and performance of audits of potential acquisitions with the organization's outside accountants and other members of the corporate staff.
    4. Report to those members of management who should be informed of results of audit examinations, the audit opinions formed, and the recommendations made.
  • Question 80

    An internal audit activity is using the auditing-by-element approach to audit the organization's controls around corporate social responsibility. Which of the following would be an element for the internal audit activity to consider?