Midterms Flashcards

1
Q

Formal document that defines the internal audit activity’s purpose, authority, and responsibility. Establishes the internal audit activity’s position within the organization, authorizes access to records, personnel, and physical properties

A

Internal audit chapter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Who is responsible for final approval of internal audit charter?

A

The Board

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

The CAE reports functionally to the _______ and administratively to the organization’s __________. This facilitates organizational independence.

A

The CAE reports functionally to the board and administratively to the organization’s CEO. This facilitates organizational independence.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

_________________ is the reporting relationship within the organization’s management structure that facilitates the day-to-day operations of the internal audit activity. It typically includes:
- budgeting and management accounting
- human resources administration
- internal communications and information flows
- administration of the internal audit activity’s policy and procedures

A

Administrative Reporting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

______________ occurs when the CAE regularly attends and participates in board meetings that relate to the board’s oversight responsibilities for auditing, financial reporting, organizational governance, and control.

A

Direct communication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How often should the CAE meet privately with the board?

A

At least annually

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

___________ means the internal auditors perform engagements in such a manner that the have an honest belief in their work product and no significant quality compromises are made.

A

Individual objectivity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

___________ involves the CAE organizing staff assignments that prevent potential and actual conflict of interest and bias.

A

Individual objectivity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The internal auditor recommends standards of control for systems or reviews procedures before they are implemented. Is his objectivity adversely affected?

A

No. The internal auditor’s objectivity is not adversely affected when the auditor recommends standards of control for systems or reviews procedures before they are implemented.

The auditor’s objectivity is considered to be impaired if the auditor designs, installs, drafts procedures for, or operates such systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

________________________ is a situation in which an internal auditor, who is in a position of trust, has a competing professional or personal interest.

A

Conflict of interest. A conflict of interest exists even if no unethical or improper act results.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

______________ is a restriction placed on the internal audit activity that precludes the activity from accomplishing its objectives and plans.

A

Scope limitation

Among other things, a scope limitation may restrict:
- scope defined in the internal audit charter
- internal audit activity’s access to records, personnel, and physical properties
- approved engagement work schedule
- performance of necessary engagement procedures
- approved staffing plan and financial budget

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

(T/F) Internal auditors should accept fees, gifts, or entertainments from an employee, client, customer, supplier, or business associate that may create the appearance that the auditor’s objectivity has been impaired.

A

FALSE.
Internal auditors are NOT accept fees, gifts, or entertainments from an employee, client, customer, supplier, or business associate that may create the appearance that the auditor’s objectivity has been impaired.
UNLESS promotional items (such as pens, calendars, or samples) that are available to employees and the general public and have minimal value.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

(T/F) Objectivity is presumed to be impaired if an auditor provides assurance services for an activity for which the auditor had responsibility in the previous year

A

TRUE.
Internal auditors must refrain from assessing specific operations for which they were previously responsible until at least one year has elapsed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Should internal auditors accept responsibility for non-audit functions or duties?

A

NO.
Auditors are not to accept responsibility for non-audit functions or duties that are subject to periodic internal audit assessments. If they have this responsibility, then they are not functioning as internal auditors.
Assurance engagements for functions over which the CAE has responsibility must be overseen by a party outside the internal audit activity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What happens when the internal audit charter contains specific restrictions or limiting language regarding the assignment of non-audit functions to the internal auditor?

A

Disclosure and discussion with management of such restrictions is necessary. If the management insists, then disclosure and discussion with the board is necessary.

When the internal audit activity accepts operational responsibilities and that operation is part of the internal audit plan, the CAE needs to minimize impairment to objectivity and disclose the operating responsibilities of the internal auditor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

___________________ includes conforming with the Code of Ethics and, as appropriate, the organization’s Code of Conduct.

A

Due Professional Care

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the two essential components of Code of Ethics?

A
  1. Principles that are relevant to the profession and practice of internal auditing: integrity, objectivity, confidentiality, and competency
  2. Rules of conduct that describe behavioral norms expected of internal auditors
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Refers to the knowledge, skills, and other competencies that are required of internal auditors to effectively carry out their professional responsibilities.

A

Proficiency.

Internal auditors are encouraged to demonstrate their proficiency by obtaining appropriate professional certifications and qualifications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Ability to apply knowledge to situations likely to encountered and to deal with them appropriately without extensive recourse to technical research and assistance.

A

Proficiency

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Ability to apply broad knowledge to situations likely to encountered, to recognize significant deviations, and to be able to carry out the research necessary to arrive at reasonable solutions

A

Understanding

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Ability to recognize the existence of problems or potential problems and to identify the additional research to be undertaken or the assistance to be obtained

A

Appreciation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Does every member of the internal audit activity need to be qualified in all disciplines?

A

NO.

The internal audit activity may use external service providers or internal resources that are qualified in disciplines to meet the internal audit activity’s responsibilities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Person or firm, independent of the organization that has special knowledge, skill, and experience in a particular discipline.

A

External service provider

23
Q

Services beyond the requirements of audit standards generally accepted by external auditors

A

Extended audit services

CAE needs to ascertain that work performed by external auditors does not impair the external auditor’s independence. If external auditors act or appear to act as members of senior management, management, or as employees of the organization, then their independence is impaired.

24
Q

When CAE issues engagement communications and an external service provider was used, should the CAE refer to such services provided?

A

The CAE may, as appropriate, refer to such services provided.
The external service provider needs to be informed and, if appropriate, concurrence should be obtained before making such reference in engagement communications

25
Q

Application of the care and skill expected of a reasonably prudent and competent internal auditor in the same or similar circumstances

A

Due professional care.

Due professional care is appropriate to the complexities of the engagement being performed. It involves internal auditors being alert to the possibility of fraud, intentional wrongdoing, errors and omissions, inefficiency, waste, ineffectiveness, and conflicts of interest

26
Q

Designed by the CAE to enable an evaluation of the internal audit activity’s conformance with the Definition of Internal Auditing and the Standards and an evaluation of whether internal auditors apply the Code of Ethics

A

Quality Assurance and Improvement Program.

The program also assesses the efficiency and effectiveness of the internal audit activity and identifies opportunities for improvement

27
Q

Who should head the formal QAIP function in large or complex organizations?

A

Internal audit executive, independent of the audit and consulting segments of the internal audit activity

The executive administers and monitors the activities needed for a successful QAIP

28
Q

Ongoing and periodic assessment of the entire spectrum of audit and consulting work performed by the internal audit activity.

A

Quality Assurance and Improvement Program

These ongoing and periodic assessments are composed of rigorous, comprehensive processes, continuous supervision and testing of internal audit and consulting work, and periodic validations of conformance with the Definition of Internal Auditing, the Code of Ethics, and the Standards.

29
Q

What is the basis for periodic internal assessments?

A

IIA’s Quality Assessment Manual or a comparable set of guidance and tools

30
Q

_______________ is an integral part of the day-to-day supervision, review, and measurement of the internal audit activity. It is incorporated into the routine policies and practices used to manage the internal audit activity and uses processes, tools, and information considered necessary to evaluate conformance with the Definition of Internal Auditing, the Code of Ethics, and the Standards

A

Ongoing monitoring

31
Q

Assessments conducted to evaluate conformance with the Definition of Internal Auditing, the Code of Ethics, and the Standards

A

Periodic reviews

32
Q

(T/F) if the periodic internal assessment is performed by a qualified, independent external reviewer or review team, the assessment results should not communicate any assurances on the outcome of subsequent external quality assessment.

33
Q

Cover the entire spectrum of audit and consulting work performed by the internal audit activity and should not be limited to assessing its quality assurance and improvement program

A

External assessments

External assessments must be conducted at least once every five years by a qualified, independent reviewer or review team from outside the organization.

34
Q

What are the two ways that external assessment could be performed?

A
  1. Full external assessment by a qualified, independent external reviewer or review team
  2. Comprehensive internal self-assessment with independent validation by a qualified, independent external reviewer or review team
35
Q

______________________ consists of individuals who are competent in the professional practice of internal auditing and external assessment processes

A

Quality reviewer or quality review team

36
Q

___________________ means not having either real or apparent conflict of interest and not being a part of, or under the control of, the organization to which the internal audit activity belongs

A

Independent reviewer or review team

37
Q

_________________ may be a parent organization, an affiliate in the same group of entities, or an entity with regular oversight, supervision or quality assurance responsibilities

A

Related organization

38
Q

____________ requires reviewers to be honest and candid within the constraints of confidentiality

39
Q

__________________ is a state of mind and a quality that lends value to a reviewer(s) services. Imposes the obligation to be impartial, intellectually honest, and free of conflict of interest

A

Objectivity

40
Q

_______________ means the practices of the internal audit activity, taken as a whole, to satisfy the requirements of the Definition of Internal Auditing, the Code of Ethics, and the Standards

A

Conformance

41
Q

__________________ means the impact and severity of the deficiencies in the practices of the internal audit activity are so significant that they impair the internal audit activity’s ability to discharge its responsibilities

A

Non-conformance

42
Q

A judgement that considers the professional internal audit experience and professional credentials of the individuals selected to perform the review

A

Evaluation of the competency of the reviewer and review team.

The evaluation considers the professional internal audit experience and professional credentials of the individuals selected to perform the review. The evaluation also considers the size and the complexity of the organizations that the reviewers have been associated with.

43
Q

Who is responsible for disclosing instances of non-conformance that impact the overall scope or operation of the internal audit activity to senior management and the board?

44
Q

List of all possible audits that could be performed

A

Audit universe

45
Q

The CAE must establish _______ to determine the priorities of the internal audit activity, consistent with the organization’s goals

A

Risk-based plans.

The CAE is responsible for developing a risk-based plan. The CAE takes into account the organization’s risk management framework, including using risk tolerance levels set by management for the different activities or part of the organization

46
Q

___________ likely reflect the organization’s attitude toward risk and the degree of difficulty to achieving planned objectives

A

Strategic plan

The audit universe can include components from the plan in forming risk-based plans. Strategic plans also likely reflect the organization’s attitude toward risk and the degree of difficulty to achieving planned objectives.

47
Q

How often should the audit universe be assessed?

A

It is advisable to assess the audit universe on at least an annual basis to reflect the most current strategies and direction of the organization

48
Q

Who is primarily responsible for the sufficiency and management of internal audit resources?

A

CAE is primarily responsible for the sufficiency and management of internal audit resources in a manner that ensures the fulfillment of the internal audit responsibilities.

49
Q

__________________ is conducted by the CAE to determine the specific skills required to perform the internal audit activities

A

Periodic skills assessment or inventory

50
Q

_____________ refers to the mix of knowledge, skills, and other competencies needed to perform the plan.

A

Appropriate

51
Q

_____________ refers to the quantity of resources needed to accomplish the plan

A

Sufficient

52
Q

Who is responsible for oversight of the work of external auditors, including coordination with the internal audit activity?

53
Q

Who is responsible for regular evaluations of the coordination between internal and external auditors?

A

CAE

Such evaluations may also include assessments of the overall efficiency and effectiveness of internal and external audit activities, including aggregate audit cost. These results are communicated to senior management and board