Chapter 7 Flashcards

1
Q

Internal control

A

the process implemented by the board of directors, management, and those under their direction to provide reasonable assurance that control objectives are achieved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Safeguard assets

A

prevent or detect unauthorized acquisitions, use or disposition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

6 control objectives of internal control

A

safeguard assets
maintain records
provide accurate and reliable info.
promote and improve operational efficiency
encourage adherence to prescribed management policies
comply with applicable laws and regulations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

preventive controls

A

deter programs before they arise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

detective controls

A

discover problems that are not prevented

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

corrective controls

A

identify and correct problems as well as correct and recover from the resulting errors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

general controls

A

make sure an organizations control environemnt is stable and well managed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

applications controls

A

make sure transactions are processed correctly

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

4 levels of control to help management reconcile the conflict between creativity and control

A
  1. belief system
  2. boundary system
  3. diagnostic control system
  4. interactive control system
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

belief system

A

describes how the company creates values, helps employees understand management vision, communicates company core values, and inspires employees to live by those values

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

boundary system

A

helps employees act ethically by setting boundaries on employee behavior

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

diagnostic control system

A

measures monitors and compares actual company progress to budgets and performance goals

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

interactive control system

A

helps managers to focus subordinates attention on key strategic issues and be more involved in their decisions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

threat

A

potential adverse consequences

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

exposure or impact

A

financial, operation, reputation, legal loss

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

likelihood or probability

A

estimated chance of occurrence

17
Q

control limitations

A

management override
collusion of two or more parties
excessive controls will reduce efficiency

18
Q

Foreign Corrupt Practices Act

A

companies must maintain internal control system. passed to prevent companies from bribing foreign officials to obtain business

19
Q

Sarbanes-oxley act

A

public company management must report on the effectiveness of internal control. Independent auditors attest to these assertions

20
Q

COBIT

A

consolidates control standards from 36 different sources into a single framework that allows management to benchmark security and control practices of IT environments, users to be assured that adequate IT security and control exist and auditors to substantiate their internal control opinions and to advice on IT security and control matters

21
Q

COSO

A

provide guidance for evaluation of controls. AAA, AICPA, IIA, IMA, FEI.

22
Q

COSO model - 5 element

A
Control activities
Risk assessment
Information and communication
Monitoring
Control environment
23
Q

internal environment consists of

A

managements philosophy, operating style, risk appetite
BOD
commitment to integrity, ethical values, and competence
organizational structure
methods of assigning authority and responsibility
human resource standards
external influences

24
Q

events

A

occurrences or incidents (positive or negative impact)

25
Q

inherent risk

A

risk exists before any action (earthquake theft accidents)

26
Q

residual risk

A
risk remaining after actions:
reduce
accept
share
avoid
27
Q

control activities

A

policies, procedures, and rules that provide reasonable assurance that managments contorl objectives are met and their risk responses are carried out

28
Q

general authorization

A

lower level employees or the systems approve routine transactions

29
Q

specific authorization

A

significant or unusual transactions require senior manager review and approval

30
Q

effective segregation of duties that should be seperated

A

authorization
recording
custody