1. Which of the following is the PRIMARY purpose of a risk-based audit?
RoadtoCertificate Week1

Quiz
•
Professional Development
•
Professional Development
•
Hard
Used 9+ times
FREE Resource
10 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
High-impact areas are addressed first.
Audit resources are allocated efficiently.
Material areas are addressed first.
Management concerns are prioritized.
2.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
2. An IS auditor notes that failed login attempts to a core financial system are automatically logged and the logs are retained for a year by the organization. This logging is:
An effective preventive control.
A valid detective control.
Not an adequate control.
A corrective control.
3.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
3. A centralized antivirus system determines whether each personal computer has the latest signature files and installs the latest signature files before allowing a PC to connect to the network. This is an example of a:
Directive control
Corrective control
Compensating control
Detective control
4.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
4. An IS auditor is reviewing a project risk assessment and notices that the overall residual risk level is high due to confidentiality requirements. Which of the following types of risk is normally high due to the number of unauthorized users the project may affect?
Control risk
Compliance risk
Inherent risk
Residual risk
5.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
5. An IS auditor is carrying out a system configuration review. Which of the following is the BEST evidence in support of the current system configuration settings?
System configuration values that are imported to a spreadsheet by the system administrator
Standard report with configuration values that are retrieved from the system by the IS auditor
Dated screenshot of the system configuration settings that are made available by the system administrator
Annual review of approved system configuration values by the business owner
6.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
6. In a risk-based IS audit, where both inherent and control risk have been assessed as high, an IS auditor would MOST likely compensate for this scenario by performing additional:
Stop-or-go sampling
Substantive testing
Compliance testing
Discovery sampling
7.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
7. Which of the following should be the FIRST action of an IS auditor during a dispute with a department manager over audit findings?
Retest the control to validate the finding
Engage a third party to validate the finding
Include the finding in the report with the department manager's comments
Revalidate the supporting evidence for the finding
Create a free account and access millions of resources
Similar Resources on Quizizz
11 questions
Practice Exam 2 Part 1

Quiz
•
Professional Development
15 questions
CI/CD Team - Quiz Set 1

Quiz
•
Professional Development
10 questions
NIA 200

Quiz
•
University - Professi...
10 questions
[SET 3] Module 5

Quiz
•
Professional Development
15 questions
Internal Audit- Position Article

Quiz
•
Professional Development
15 questions
ISO 19011

Quiz
•
Professional Development
13 questions
MATERIALITAS

Quiz
•
University - Professi...
10 questions
POST TEST - Change Management Awareness ISO/IEC 20000 - 1

Quiz
•
Professional Development
Popular Resources on Quizizz
15 questions
Character Analysis

Quiz
•
4th Grade
17 questions
Chapter 12 - Doing the Right Thing

Quiz
•
9th - 12th Grade
10 questions
American Flag

Quiz
•
1st - 2nd Grade
20 questions
Reading Comprehension

Quiz
•
5th Grade
30 questions
Linear Inequalities

Quiz
•
9th - 12th Grade
20 questions
Types of Credit

Quiz
•
9th - 12th Grade
18 questions
Full S.T.E.A.M. Ahead Summer Academy Pre-Test 24-25

Quiz
•
5th Grade
14 questions
Misplaced and Dangling Modifiers

Quiz
•
6th - 8th Grade