GSNA · Question #296
Which of the following responsibilities does not come under the audit process?
The correct answer is A. Reporting all facts and circumstances of the irregular and illegal acts. B. Planning the IT audit engagement based on the assessed level of risk. C. Reviewing the results of the audit procedures. According to the standards of ISACA, an auditor should hold the following responsibilities: Planning the IT audit engagement based on an assessed level of risk. Designing audit procedures of irregular and illegal acts. Reviewing the results of the audit procedures. Assuming…
Question
Which of the following responsibilities does not come under the audit process?
Options
- AReporting all facts and circumstances of the irregular and illegal acts.
- BPlanning the IT audit engagement based on the assessed level of risk.
- CReviewing the results of the audit procedures.
- DApplying security policies.
How the community answered
(23 responses)- A70% (16)
- D30% (7)
Explanation
According to the standards of ISACA, an auditor should hold the following responsibilities: Planning the IT audit engagement based on an assessed level of risk. Designing audit procedures of irregular and illegal acts. Reviewing the results of the audit procedures. Assuming that acts are not isolated. Determining why the internal control system failed for that act. Conducting additional audit procedures. Evaluating the results of the expanded audit procedures. Reporting all facts and circumstances of the irregular and illegal acts. Distributing the report to the appropriate internal parties, such as managers. Answer: D is incorrect. The auditor is not responsible for applying security policies.
Topics
Community Discussion
No community discussion yet for this question.