An internal audit team is performing an audit of workplace accident claims.
Which of the following actions by the audit team best demonstrates due professional care?
A
A credit card company detects potential errors in credit card numbers by checking whether all
entered numbers contain the correct amount of digits. This is an example of which of the following IT
controls?
A
Which two of the following are preventive controls in a check disbursement process?
1. Daily reconciliation of the bank account used for check disbursements and prompt follow-up of un-
reconciled items.
2. Segregation of the following duties: establishing new vendors, approving checks, and reconciling
the bank account.
3. An activity report detailing who accesses the check disbursement system and the nature of any
action taken in the system.
4. Evidence of strong access controls ensuring that authorized individuals have access only to the
functions related to their responsibilities.
D
A large trucking organization wants to reduce traffic accidents by improving its system of internal
controls.
Which of the following controls is correctly classified?
1. Review of speeding violations to identify repetitive locations and drivers is an example of a
preventive control.
2. Defensive driver training is an example of a directive control.
3. The installation of tracking devices in delivery vehicles is an example of a corrective control.
4. Providing a vehicle driver handbook is an example of a detective control.
A
Which segregation of duties would best reduce the risk of payroll fraud?
A
An organization is beginning to implement an enterprise risk management program. One of the first
steps is to develop a common risk language. Which of the following statements about a common risk
language is true?
C
An organization invests its savings in a volatile stock with the potential for high gains rather than a
mutual fund with a lower expected return and lower volatility. This best describes which of the
following risk concepts?
D
Which of the following best describes the misdirection of payments on accounts receivable to an
employee's bank account?
C
When auditing the award of a major contract, which of the following should an internal auditor
suspect as a red flag for a bidding fraud scheme?
1. Subsequent change orders increase requirements for low-bid items.
2. Material contract requirements are different on the actual contract than on the request for bids.
3. A high percentage of employees are charged to indirect accounts.
4. Losing bidders are hired as subcontractors.
D
Which of the following combinations of conditions is most likely a red flag for fraud?
C