Question

In: Accounting

When assessing the risk associated with an activity, an internal auditor should: a) Determine how the...

When assessing the risk associated with an activity, an internal auditor should: a) Determine how the risk should best be managed. b) Provide assurance on the management of the risk. c) Update the risk management process based on risk exposures. d) Design controls to mitigate the identified risks. 12. In deciding whether to schedule the purchasing or the personnel department for an audit engagement, which of the following would be the least important factor? a. There have been major changes in operations in one of the departments. b. The audit staff has recently added an individual with expertise in one of the areas. c. There are more opportunities to achieve operating benefits in one of the departments than in the other. d. The potential for loss is significantly greater in one department than in the other. 13. A performance audit engagement typically involves: a. Review of financial statement information, including the appropriateness of various accounting treatments. b. Tests of compliance with policies, procedures, laws, and regulations. c. Appraisal of the environment and comparison against established criteria. d. Evaluation of organizational and departmental structures, including assessment of process flows

Solutions

Expert Solution

Solution:

11). Answer: b). Provide assurance on the management of the risk.

The internal audit activity must evaluate and contribute to the improvement of governance, risk management, and control processes using a systematic and disciplined approach (Perf. Std. 2100). Assurance services involve the internal auditor's objective assessment of management's risk management activities and the degree to which they are effective.

12). Answer:  b). The internal audit staff has recently added an individual with expertise in one of the areas.

13). Answer:  c). Appraisal of the environment and comparison against established criteria.​​​​​​​


Related Solutions

After obtaining an understanding of internal control and assessing control risk of an entity an auditor...
After obtaining an understanding of internal control and assessing control risk of an entity an auditor decided to perform tests of controls. The auditor most likely decided that: A The available evidence obtained through tests of controls would not support an assessment of control risk as high. B It would be inefficient to perform tests of controls given they would not result in reduced substantive tests. C The assessed level of inherent risk exceeded the assessed level of control risk....
Discuss factors that an external auditor should consider in assessing the risk of fraudulent financial reporting...
Discuss factors that an external auditor should consider in assessing the risk of fraudulent financial reporting committed by a public company CFO or CEO. In discussing this topic, please consider risks of fraudulent financial reporting that are related to the fraud triangle (i.e., incentive/pressure, opportunity, and rationalization.). Also, research factors that the PCAOB and the AICPA identify as fraudulent financial reporting risks.
Of the following, who should have PRIMARY responsibility for assessing the security risk associated with an...
Of the following, who should have PRIMARY responsibility for assessing the security risk associated with an outsourced cloud provider contract? A. Information security manager B. Compliance manager C. Chief information officer D. Service delivery manager Correct Answer: A?????   or   C?????   or   D??????? ______________________ Note ■ Some websites claim that the correct answer is "D" ("Service delivery manager"). ■ Others websites claim that the correct answer is "C" ("Chief information officer"). I found also this article on the web "It is...
How are heuristics used when assessing risk probability?
How are heuristics used when assessing risk probability?
What is the opinion or perspective on this idea of assessing risk in the internal control...
What is the opinion or perspective on this idea of assessing risk in the internal control process? (See paragraph below to get an idea or answer the question.) Please raise thoughtful questions, analyze relevant issues, build on ideas, synthesize across readings and discussions, expanding the perspective, and appropriately challenging assumptions and perspectives. Significance of assessing risk in the internal control process: In chapter 3, we learned that the purpose of the internal control process is “to provide reasonable assurance regarding...
• What should auditor do when risk of fraud with regards to cash is increased? •...
• What should auditor do when risk of fraud with regards to cash is increased? • What are the aspects of control that auditors are most concerned about for sales and collection cycle? • What are the significant factors about cutoff for sales/collection cycle?
An experienced auditor knows the procedures associated with assessing fraud or other inherent risks. In today's...
An experienced auditor knows the procedures associated with assessing fraud or other inherent risks. In today's scandal-ridden financial environment, an auditor's ability to spot the trappings of potential hidden problems in an audited entity's internal control system is essential. Discuss and contrast the issues surrounding the implementation of a comprehensive internal control structure in a large corporation and in a small family-owned business with only six employees. Your discussion needs to consider the limitations of systems in both a large...
what are the risk associated with prepaid expense that the auditor needs to be aware of?...
what are the risk associated with prepaid expense that the auditor needs to be aware of? How do they deal with these risks in their audit program?
1. How is the work of an internal auditor different from that of an external auditor...
1. How is the work of an internal auditor different from that of an external auditor (financial statements)? 2. What are the similarities and differences between the ethical codes?
How does inherent risk interact with residual risk when conducting a risk assessment in internal audit?
How does inherent risk interact with residual risk when conducting a risk assessment in internal audit?
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT