Question
11) Risk management should A) Focus on loss minimization only B) Not be an objective by itself C) Be driven by internal audit D) Be
11) Risk management should
A) Focus on loss minimization only
B) Not be an objective by itself
C) Be driven by internal audit
D) Be rules-based so it is the same throughout the organization
E) Should be software driven
12) What is typically the weakest link in internal controls?
A) Technology
B) The human elements
C) Lack of funding
D) Lack of a risk assessment
E) No internal audit department
13) Which of the following is not likely to cause a system of internal controls to become ineffective?
A) Mergers and acquisitions
B) Implementation of new technologies
C) Hiring a new external audit firm regulated by the PCAOB
D) Outsourcing business functions
E) All of the above
14) Risk appetite
A) Can be different for compliance vs. strategic objectives
B) Is the same as an organization’s risk tolerance
C) Is strictly a quantitative measure
D) Tends to be the same for all companies in the same industry
E) Does not change over time
15) Separation of duties controls for application systems are typically applied by
A) IT governance
B) Physical security
C) Logging
D) Access security
E) System software
Step by Step Solution
3.59 Rating (177 Votes )
There are 3 Steps involved in it
Step: 1
11The risk management should be driven by internal audit 12 The weakest ...Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started