Labour Day - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

IIA-CIA-Part3-3P CIA Exam Part Three: Business Knowledge for Internal Auditing Questions and Answers

Questions 4

Which of the following statements is false regarding the internal audit approach when a set of standards other than The IIA's Standards is applicable to a specific engagement?

Options:

A.

The internal auditor may cite the use of other standards during audit communications.

B.

If the other standards are government-issued, the internal auditor should apply them in conjunction with The IIA's Standards.

C.

If there are inconsistencies between the other standards and The IIA's Standards, the internal auditor must use the more restrictive standards.

D.

If there are inconsistencies between the other standards and The IIA's Standards, the internal auditor must use the less restrictive standards.

Buy Now
Questions 5

Which of the following describes the result if an organization records merchandise as a purchase, but fails to include it in the closing inventory count?

Options:

A.

The cost of goods sold for the period will be understated.

B.

The cost of goods sold for the period will be overstated.

C.

The net income for the period will be understated.

D.

There will be no effect on the cost of goods sold or the net income for the period.

Buy Now
Questions 6

Which of the following purchasing scenarios would gain the greatest benefit from implementing electronic data interchange?

Options:

A.

A time-sensitive just-in-time purchase environment.

B.

A large volume of custom purchases.

C.

A variable volume sensitive to material cost.

D.

A currently inefficient purchasing process.

Buy Now
Questions 7

Which of the following is a type of network in which an organization permits specific users (such as existing customers) to have access to its internal network through the Internet by building a virtual private network?

Options:

A.

Intranet.

B.

Extranet.

C.

Digital subscriber line.

D.

Broadband.

Buy Now
Questions 8

The most important reason to use risk assessment in audit planning is to:

Options:

A.

Identify redundant controls.

B.

Improve budgeting accuracy.

C.

Enhance assurance provided to management.

D.

Assist in developing audit programs.

Buy Now
Questions 9

Unsecured loans are loans:

Options:

A.

That do not have to be repaid for over one year.

B.

That appear to be too risky for most lenders to consider.

C.

Granted on the basis of a company's credit standing.

D.

Backed by mortgaged assets.

Buy Now
Questions 10

Which of the following strategies would most likely prevent an organization from adjusting to evolving industry market conditions?

Options:

A.

Specializing in proven manufacturing techniques that have made the organization profitable in the past.

B.

Substituting its own production technology with advanced techniques used by its competitors.

C.

Forgoing profits over a period of time to gain market share from its competitors.

D.

Using the same branding to sell its products through new sales channels to target new markets.

Buy Now
Questions 11

Which of the following is a disadvantage of selecting a commercial software package rather than developing an application internally?

Options:

A.

Lack of flexibility.

B.

Incompatibility with client/server technology.

C.

Employee resistance to change.

D.

Inadequate technical support.

Buy Now
Questions 12

The activity that involves a trial run of a product in a typical segment of the market before proceeding to a national launch is referred to as:

Options:

A.

Test marketing

B.

Experimentation

C.

Segmentation

D.

Positioning

Buy Now
Questions 13

Which of the following are included in ISO 31000 risk principles and guidelines?

Options:

A.

Standards, framework, and process.

B.

Standards, assessments, and process.

C.

Principles, framework, and process.

D.

Principles, practices, and process.

Buy Now
Questions 14

Which of the following statements is correct regarding corporate compensation systems and related bonuses?

1) A bonus system should be considered part of the control environment of an organization and should be considered in formulating a report on internal control.

2) Compensation systems are not part of an organization's control system and should not be reported as such.

3) An audit of an organization's compensation system should be performed independently of an audit of the control system over other functions that impact corporate bonuses.

Options:

A.

1 only

B.

2 only

C.

3 only

D.

2 and 3 only

Buy Now
Questions 15

Which of the following are appropriate functions for an IT steering committee?

1) Assess the technical adequacy of standards for systems design and programming.

2) Continually monitor of the adequacy and accuracy of software and hardware in use.

3) Assess the effects of new technology on the organization`s IT operations.

4) Provide broad oversight of implementation, training, and operation of new systems.

Options:

A.

1, 2, and 3

B.

1, 2, and 4

C.

1, 3, and 4

D.

2, 3, and 4

Buy Now
Questions 16

When writing a business memorandum, the writer should choose a writing style that achieves all of the following except:

Options:

A.

Draws positive attention to the writing style.

B.

Treats all receivers with respect.

C.

Suits the method of presentation and delivery.

D.

Develops ideas without overstatement.

Buy Now
Questions 17

When assessing the adequacy of a risk mitigation strategy, an internal auditor should consider which of the following?

1) Management’s tolerance for specific risks.

2) The cost versus benefit of implementing a control.

3) Whether a control can mitigate multiple risks.

4) The ability to test the effectiveness of the control.

Options:

A.

1, 2, and 3

B.

1, 2, and 4

C.

1, 3, and 4

D.

2, 3, and 4

Buy Now
Questions 18

Which of the following is useful for forecasting the required level of inventory?

1) Statistical modeling.

2) Information about seasonal variations in demand.

3) Knowledge of the behavior of different business cycles.

4) Pricing models linked to seasonal demand.

Options:

A.

1 and 2 only

B.

2 and 3 only

C.

1, 2, and 3 only

D.

1, 2, 3, and 4

Buy Now
Questions 19

The main reason to establish internal controls in an organization is to:

Options:

A.

Encourage compliance with policies and procedures.

B.

Safeguard the resources of the organization.

C.

Ensure the accuracy, reliability, and timeliness of information.

D.

Provide reasonable assurance on the achievement of objectives.

Buy Now
Questions 20

The percentage of sales method, rather than the percentage of receivables method, would be used to estimate uncollectible accounts if an organization seeks to:

Options:

A.

Use an aging schedule to more closely estimate uncollectible accounts.

B.

Eliminate the need for an allowance for doubtful accounts.

C.

Emphasize the accuracy of the net realizable value of the receivables on the balance sheet.

D.

Use a method that approximates the matching principle.

Buy Now
Questions 21

During which phase of disaster recovery planning should an organization identify the business units, assets, and systems that are critical to continuing an acceptable level of operations?

Options:

A.

Scope and initiation phase.

B.

Business impact analysis.

C.

Plan development.

D.

Testing.

Buy Now
Questions 22

Which of the following statements is true regarding outsourced business processes?

Options:

A.

Outsourced business processes should not be considered in the internal audit universe because the controls are owned by the external service provider.

B.

Generally, independence is improved when the internal audit activity reviews outsourced business processes.

C.

The key controls of outsourced business processes typically are more difficult to audit because they are designed and managed externally.

D.

The system of internal controls may be better and more efficient when the business process is

outsourced compared to internally sourced.

Buy Now
Questions 23

An organization had a gross profit margin of 40 percent in year one and in year two. The net profit margin was 18 percent in year one and 13 percent in year two.

Which of the following could be the reason for the decline in the net profit margin for year two?

Options:

A.

Cost of sales increased relative to sales.

B.

Total sales increased relative to expenses.

C.

The organization had a higher dividend payout rate in year two.

D.

The government increased the corporate tax rate.

Buy Now
Questions 24

A small software development firm designs and produces custom applications for businesses. The application development team consists of employees from multiple departments who all report to a single project manager.

Which of the following organizational structures does this situation represent?

Options:

A.

Functional departmentalization.

B.

Product departmentalization.

C.

Matrix organization.

D.

Divisional organization.

Buy Now
Questions 25

An investor has acquired an organization that has a dominant position in a mature, slow-growth industry and consistently creates positive financial income Which of the following terms would the investor most likely label this investment in her portfolio?

Options:

A.

A star

B.

A cash cow

C.

A Question mark

D.

A dog

Buy Now
Questions 26

Which of the following security controls focuses most on prevention of unauthorized access to the power plant?

Options:

A.

An offboarding procedure is initiated monthly to determine redundant physical access rights

B.

Logs generated by smart locks are automatically scanned to identify anomalies in access patterns

C.

Requests for additional access rights are sent for approval and validation by direct supervisors

D.

Automatic notifications are sent to a central security unit when employees enter the premises during nonwork hours

Buy Now
Questions 27

An internal audit activity is piloting a data analytics model, which aims to identify anomalies in payments to vendors and potential fraud indicators Which of the following would be the most appropriate criteria for assessing the success of the piloted model?

Options:

A.

The percentage of cases flagged by the model and confirmed as positives.

B.

The development and maintenance costs associated with the model

C.

The feedback of auditors involved with developing the model

D.

The number of criminal investigations initiated based on the outcomes of the model

Buy Now
Questions 28

The greatest advantage of functional departmentalization is that it:

Options:

A.

Facilitates communication between primary functions.

B.

Helps to focus on the achievement of organizational goals.

C.

Provides for efficient use of specialized knowledge .

D.

Accommodates geographically dispersed companies

Buy Now
Questions 29

An organization has received funding to continue a program that utilizes an in-house Due to new legislative requirements the application will require additional features to capture information not previously collected Which of the following is the most critical for completing this specific project?

Options:

A.

A detailed budget that identifies hardware resources for the project

B.

A Gantt chart that identifies the critical path for completing the project

C.

Change management controls to avoid technical conflicts within the application

D.

A project plan with a flexible scope to accommodate legislative requirements

Buy Now
Questions 30

A clothing company sells shirts for $8 per shirt. In order to break even, the company must sell 25,000 shirts. Actual sales total $300,000.

What is margin of safety sales for the company?

Options:

A.

$100,000

B.

$200,000

C.

$275,000

D.

$500,000

Buy Now
Questions 31

Which of the following budgets serves as a basis for the budgeted income statement?

Options:

A.

All financial budgets

B.

All operating budgets

C.

Only the cash budget and budgeted balance sheet

D.

Only the sales and production budgets

Buy Now
Questions 32

Which of the following is a primary objective of the theory of constraints?

Options:

A.

Full or near capacity in processes.

B.

Smooth workflow among processes.

C.

Few or no defects.

D.

Lowered inventory levels.

Buy Now
Questions 33

Which of the following is an example of a physical control?

Options:

A.

Providing fire detection and suppression equipment

B.

Establishing a physical security policy and promoting it throughout the organization

C.

Performing business continuity and disaster recovery planning

D.

Keeping an offsite backup of the organization's critical data

Buy Now
Questions 34

Which of me following statements is most accurate concerning me management and audit of a web server?

Options:

A.

The file transfer protocol (FTP) should always be enabled

B.

The simple mail transfer protocol (SMTP) should be operating under me most privileged accounts

C.

The number of ports and protocols allowed to access the web server should be maximized

D.

Secure protocols for confidential pages should be used instead of clear-text protocol such as HTTP or FTP

Buy Now
Questions 35

Which of the following data analytics tools would be applied by an internal audit activity positioned at the lowest level of maturity?

Options:

A.

Workflow and data capture technology

B.

Data visualization applications.

C.

Software integrated with central data warehouse

D.

Spreadsheets.

Buy Now
Questions 36

Which of the following network types should an organization choose if it wants to allow access only to its own personnel?

Options:

A.

An extranet

B.

A local area network.

C.

An intranet

D.

The internet

Buy Now
Questions 37

Which of the following performance measures disincentivizes engaging in earnings management?

Options:

A.

Linking performance to profitability measures such as return on investment.

B.

Linking performance to the stock price.

C.

Linking performance to quotas such as units produced.

D.

Linking performance to nonfinancial measures such as customer satisfaction and employees training.

Buy Now
Questions 38

Which of the following principles is shared by both hierarchical and open organizational structures?

1) A superior can delegate the authority to make decisions but cannot delegate the ultimate responsibility for the results of those decisions

2) A supervisor's span of control should not exceed seven subordinates

3) Responsibility should be accompanied by adequate authority

4) Employees at all levels should be empowered to make decisions.

Options:

A.

1 and 3 only.

B.

1 and 4 only.

C.

2 and 3 only

D.

3 and 4 only.

Buy Now
Questions 39

According to IIA guidance, which of the following statements is true regarding analytical procedures?

Options:

A.

Data relationships are assumed to exist and to continue where no known conflicting conditions exist.

B.

Analytical procedures are intended primarily to ensure the accuracy of the information being examined.

C.

Data relationships cannot include comparisons between operational and statistical data

D.

Analytical procedures can be used to identify unexpected differences but cannot be used to identify the absence of differences

Buy Now
Questions 40

When examining an organization's strategic plan, an internal auditor should expect to find which of the following components?

Options:

A.

Identification of achievable goals and timelines.

B.

Analysis of the competitive environment.

C.

Plan for the procurement of resources.

D.

Plan for progress reporting and oversight.

Buy Now
Questions 41

Which of the following is based on the concept that there is not one best leadership style and that successful leadership depends on a match between the leader, the situation, and the subordinate?

Options:

A.

Attribute theory.

B.

Path goal model

C.

Life cycle model

D.

Contingency theory

Buy Now
Questions 42

An organization has a total asset turnover of 3.0 times and a total debt-to-total assets ratio of 80 percent. If the organization has total debt of $1 000 000 what is the organization's sales level?

Options:

A.

$266.667

B.

$416,667

C.

$3.750.000

D.

$5 000.000

Buy Now
Questions 43

Which of the following types of analytics would be used by an organization to examine metrics by business units and identity the most profitable business units?

Options:

A.

Detailed analytics

B.

Predictive analytics

C.

Diagnostic analytics

D.

Prescriptive analytics

Buy Now
Questions 44

A restaurant deeded to expand its business to include delivery services rather than relying on third-party food delivery services. Which of the following best describes the restaurant's strategy?

Options:

A.

Diversification

B.

Vertical integration

C.

Risk avoidance

D.

Differentiation

Buy Now
Questions 45

Which of the following is true of bond financing, compared to common stock, when all other variables are equal?

Options:

A.

Lower shareholder control.

B.

Lower indebtedness.

C.

Higher company earnings per share.

D.

Higher overall company earnings.

Buy Now
Questions 46

The board of directors wants to implement an incentive program for senior management that is specifically tied to the long-term health of the organization.

Which of the following methods of compensation would be best to achieve this goal?

Options:

A.

Commissions.

B.

Stock options.

C.

Gain-sharing bonuses.

D.

Allowances.

Buy Now
Questions 47

An internal auditor is assigned to perform data analytics. Which of the following is the next step the auditor should undertake after she has ascertained the value expected from the review?

Options:

A.

Normalize the data

B.

Obtain the data

C.

identify the risks

D.

Analyze the data

Buy Now
Questions 48

The economic order quantity can be calculated using the following formula:

Which of the following describes how the optimal order size will change if the annual demand increases by 36 percent?

Options:

A.

Decrease by about 17 percent.

B.

Decrease by about 7 percent.

C.

Increase by about 7 percent.

D.

Increase by about 17 percent.

Buy Now
Questions 49

A key advantage of developing a computer application by using the prototyping approach is that it:

Options:

A.

Does not require testing for user acceptance.

B.

Allows applications to be portable across multiple system platforms.

C.

Is less expensive since it is self-documenting.

D.

Better involves users in the design process.

Buy Now
Questions 50

Which of the following statements regarding organizational governance is not correct?

Options:

A.

An effective internal audit function is one of the four cornerstones of good governance.

B.

Those performing governance activities are accountable to the customer.

C.

Accountability is one of the key elements of organizational governance.

D.

Governance principles and the need for an internal audit function are applicable to governmental and not-for-profit activities.

Buy Now
Questions 51

Which of the following steps should an internal auditor take during an audit of an organization's business continuity plans?

1) Evaluate the business continuity plans for adequacy and currency.

2) Prepare a business impact analysis regarding the loss of critical business.

3) Identify key personnel who will be required to implement the plans.

4) Identify and prioritize the resources required to support critical business processes.

Options:

A.

1 only

B.

2 and 4 only

C.

1, 3, and 4 only

D.

1, 2, 3, and 4

Buy Now
Questions 52

Which audit approach should be employed to test the accuracy of information housed in a database on an un-networked computer?

Options:

A.

Submit batches of test transactions through the current system and verify with expected results.

B.

Use a test program to simulate the normal data entering process.

C.

Select a sample of records from the database and ensure it matches supporting documentation.

D.

Evaluate compliance with the organization's change management process.

Buy Now
Questions 53

When developing an effective risk-based plan to determine audit priorities, an internal audit activity should start by:

Options:

A.

Identifying risks to the organization's operations.

B.

Observing and analyzing controls.

C.

Prioritizing known risks.

D.

Reviewing organizational objectives.

Buy Now
Questions 54

Which of the following roles would be least appropriate for the internal audit activity to undertake with regard to an organization's corporate social responsibility (CSR) program?

Options:

A.

Consult on project design and implementation of the CSR program.

B.

Serve as an advisor on internal controls related to CSR.

C.

Identify and prioritize the CSR issues that are important to the organization.

D.

Evaluate the effectiveness of the organization's CSR efforts.

Buy Now
Questions 55

Which of the following IT strategies is most effective for responding to competitive pressures created by the marketplace?

Options:

A.

Promote closer linkage between organizational strategy and information.

B.

Provide users with greater online access to information systems.

C.

Enhance the functionality of application systems.

D.

Expand the use of automated controls.

Buy Now
Questions 56

Which of the following statements about slack time and milestones are true?

1) Slack time represents the amount of time a task may be delayed without delaying the entire project.

2) A milestone is a moment in time that marks the completion of the project's major deliverables.

3) Slack time allows the project manager to move resources from one task to another to ensure that the project is finished on time.

4) A milestone requires resource allocation and needs time to be completed.

Options:

A.

1 and 4 only

B.

2 and 3 only

C.

1, 2, and 3 only

D.

1, 2, 3, and 4

Buy Now
Questions 57

An organization accumulated the following data for the prior fiscal year:

Value of Percentage of

Quarter

Output Produced

Cost X

1

$4,750,000

2.9

2

$4,700,000

3.0

3

$4,350,000

3.2

4

$4,000,000

3.5

Based on this data, which of the following describes the value of Cost X in relation to the value of Output Produced?

Options:

A.

Cost X is a variable cost.

B.

Cost X is a fixed cost.

C.

Cost X is a semi-fixed cost.

D.

Cost X and the value of Output Produced are unrelated.

Buy Now
Questions 58

Which of the following is a product-oriented definition of a business rather than a market-oriented definition of a business?

Options:

A.

We are a people-and-goods mover.

B.

We supply energy.

C.

We make movies.

D.

We provide climate control in the home.

Buy Now
Questions 59

What is the most significant potential problem introduced by just-in-time inventory systems?

Options:

A.

They require significant computer resources.

B.

They are susceptible to supply-chain disruptions.

C.

They require complicated materials-supply contracts.

D.

They prevent manufacturers from scaling up or down to meet changing demands.

Buy Now
Questions 60

An internal auditor is reviewing results from software development integration testing. What is the purpose of integration testing?

Options:

A.

To verify that the application meets staled user requirements.

B.

To verify that standalone programs match code specifications.

C.

To verify that me application would work appropriately for the intended number of users.

D.

To verify that all software and hardware components work together as intended

Buy Now
Questions 61

Which of the following examples demonstrates that the internal audit activity uses descriptive analytics in its engagements?

Options:

A.

An internal auditor analyzed electricity production and sales interim reports and compiled a risk assessment.

B.

An internal auditor extracted sales data to a spreadsheet and applied judgmental analysis for sampling.

C.

An internal auditor classified solar panel sales by region and discovered unsuccessful sales

representatives.

D.

An internal auditor broke down a complex process into smaller pieces to make it more understandable.

Buy Now
Questions 62

Which of the following is an example of a physical control designed to prevent security breaches?

Options:

A.

Preventing database administrators from initiating program changes.

B.

Blocking technicians from getting into the network room.

C.

Restricting system programmers' access to database facilities.

D.

Using encryption for data transmitted over the public internet.

Buy Now
Questions 63

Which of the following statements is true regarding reversing entries in an accounting cycled

Options:

A.

Reversing all previous closing adjustments is a mandatory step in the accounting cycle

B.

Reversing entries should be completed at the end of the next accounting period after recording regular transactions of the period

C.

Reversing entries are identical to the adjusting entries made in the previous period.

D.

Reversing entries are the exact opposite of the adjustments made in the previous period.

Buy Now
Questions 64

Which of me following represents an inventory costing technique that can be manipulated by management to boost net income by selling units purchased at a low cost?

Options:

A.

First-in first-out method (FIFO)

B.

Last-in first-out method (LIFO)

C.

Specific identification method

D.

Average-cost method

Buy Now
Questions 65

Which of the following authentication controls combines what a user knows with the unique characteristics of the user respectively?

Options:

A.

Voice recognition and token.

B.

Password and fingerprint.

C.

Fingerprint and voice recognition

D.

Password and token

Buy Now
Questions 66

According to IIA guidance, which of the following is a primary component of a network security strategy?

Options:

A.

Application input controls

B.

Firewall controls.

C.

Transmission encryption controls

D.

Change management controls

Buy Now
Questions 67

An internal auditor is using data analytics to locus on high-risk areas during an engagement. The auditor has obtained data and is working to eliminate redundancies in the data. Which of me following statements is true regarding this scenario?

Options:

A.

The auditor is normalizing data in preparation for analyzing it

B.

The auditor is analyzing the data in preparation for communicating the results

C.

The auditor is cleaning the data in preparation for determining which processes may tie involved

D.

The auditor is reviewing the data prior to defining the question

Buy Now
Questions 68

Which of the following activities best illustrates a user's authentication control?

Options:

A.

Identity requests are approved in two steps.

B.

Logs are checked for misaligned identities and access rights.

C.

Users have to validate their identity with a smart card.

D.

Functions can be performed based on access rights.

Buy Now
Questions 69

Which of the following is the first step an internal audit activity should undertake when executing a data analytics process?

Options:

A.

Conduct a risk assessment regarding the effectiveness of the data analytics process.

B.

Analyze possible and available sources of raw data

C.

Define the purpose and the anticipated value

D.

Select data for cleaning and normalization procedures.

Buy Now
Questions 70

When an organization is choosing a new external auditor, which of the following is the most appropriate role for the chief audit executive to undertake?

Options:

A.

Review and acquire the external audit service.

B.

Assess the appraisal and actuarial services.

C.

Determine the selection criteria.

D.

Identify regulatory requirements to be considered.

Buy Now
Questions 71

Multinational organizations generally spend more time and effort to identify and evaluate:

Options:

A.

Internal strengths and weaknesses.

B.

Break-even points.

C.

External trends and events.

D.

Internal risk factors.

Buy Now
Questions 72

Which of the following is a strategy that organizations can use to stimulate innovation?

1) Source from the most advanced suppliers.

2) Establish employee programs that reward initiative.

3) Identify best practice competitors as motivators.

4) Ensure that performance targets are always achieved.

Options:

A.

1 and 3 only

B.

2 and 4 only

C.

1, 2, and 3 only

D.

1, 2, 3, and 4

Buy Now
Questions 73

Organizations use matrix management to accomplish which of the following?

Options:

A.

To improve the chain of command.

B.

To strengthen corporate headquarters.

C.

To focus better on a single market.

D.

To increase lateral communication.

Buy Now
Exam Code: IIA-CIA-Part3-3P
Exam Name: CIA Exam Part Three: Business Knowledge for Internal Auditing
Last Update: Apr 24, 2024
Questions: 488

PDF + Testing Engine

$56  $159.99

Testing Engine

$42  $119.99
buy now IIA-CIA-Part3-3P testing engine

PDF (Q&A)

$35  $99.99
buy now IIA-CIA-Part3-3P pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 29 Apr 2024