Domain 1 Practice Questions Flashcards

1
Q

Which of the following outlines the overall authority to perform an IS audit?

A

the approved audit charter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

In performing a risk-based audit, which risk assessment is completed FIRST by an IS auditor?

A

inherent risk assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which of the following would an IS auditor MOST likely focus on when developing a risk-based audit program?

A

business processes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following types of audit risk assumes an absence of compensating controls in the area being reviewed?

A

inherent risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

An IS auditor performing a review of an application’s controls finds a weakness in system software that could materially impact the application. In this situation, an IS auditor should:

A

review the system software controls as relevant and recommend a detailed system software review

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which of the following is the MOST important reason why an audit planning process should be reviewed at periodic intervals?

A

to consider changes to the risk environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which of the following is MOST effective for implementing a control self-assessment within small business units?

A

facilitated workshops

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which of the following would an IS auditor perform FIRST when planning an IS audit?

A

gain an understanding of the business’s objectives and purpose

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The approach an IS auditor should use to plan IS audit coverage should be based on:

A

risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

An organization performs a daily backup of critical data and software files and stores the backup tapes at an offsite location. The backup tapes are used to restore the files in case of a disruption. This is an example of a:

A

corrective control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly