Exam 15: IT Controls : Sarbanes-Oxley and IT Governance

arrow
  • Select Tags
search iconSearch Question
flashcardsStudy Flashcards
  • Select Tags

What is a recovery operations center? What is its purpose?

(Essay)
4.9/5
(42)

An advantage of a recovery operations center is that

(Multiple Choice)
4.9/5
(37)

Inherent risk

(Multiple Choice)
4.7/5
(39)

List three pairs of system functions that should be separated in the centralized computer services organization.Describe a risk exposure if the functions are not separated. List three pairs of system functions that should be separated in the centralized computer services organization.Describe a risk exposure if the functions are not separated.

(Essay)
4.9/5
(35)

When planning the audit,information is gathered by all of the following methods except

(Multiple Choice)
4.9/5
(34)

Which of the following is not true?

(Multiple Choice)
4.7/5
(40)

Operations fraud includes

(Multiple Choice)
4.8/5
(41)

To ensure sound internal control,program coding and program processing should be separated.

(True/False)
4.8/5
(35)

Define operational fraud.

(Essay)
4.9/5
(35)

Briefly outline transaction cost economics as it relates to IT outsourcing.

(Essay)
4.8/5
(41)

Some companies separate systems analysis from programming/program maintenance.All of the following are control weaknesses that may occur with this organizational structure except

(Multiple Choice)
4.9/5
(39)

Both the SEC and the PCAOB require management to use the COSO framework for assessing internal control adequacy.

(True/False)
4.8/5
(37)

Some systems professionals have unrestricted access to the organization's programs and data.

(True/False)
4.7/5
(34)

Which of the following is not true?

(Multiple Choice)
4.8/5
(35)

COSO identifies two broad groupings of information system controls.What are they?

(Short Answer)
4.8/5
(36)

Scavenging is a form of fraud in which the perpetrator uses a computer program to search for key terms in a database and then steal the data.

(True/False)
4.8/5
(39)

In a computer-based information system,which of the following duties needs to be separated?

(Multiple Choice)
4.8/5
(39)

The distributed data processing approach carries some control implications of which accountants should be aware.Discuss two.

(Essay)
4.8/5
(48)

The PCAOB's standard No.2 specifically requires auditors to understand transaction flows in designing their test of controls.What steps does this entail?

(Essay)
4.9/5
(41)

Which organizational structure is most likely to result in good documentation procedures?

(Multiple Choice)
4.7/5
(36)
Showing 61 - 80 of 130
close modal

Filters

  • Essay(0)
  • Multiple Choice(0)
  • Short Answer(0)
  • True False(0)
  • Matching(0)