100%(7)7 out of 7 people found this document helpful
This preview shows page 1 - 3 out of 24 pages.
1. An IS auditor is using a statistical sample to inventory the tape library. What type of test would this be considered?A.SubstantiveB. ComplianceC. IntegratedD. Continuous auditAnswer: AUsing a statistical sample to inventory the tape library is an example of asubstantive test.2. Which of the following would prevent accountability for an action performed, thus allowing nonrepudiation?3. Which of the following is the MOST critical step in planning an audit?4. To properly evaluate the collective effect of preventative, detective, or corrective controls within a process, an IS auditor should be aware of which of the following? Choose the BEST answer.5. What is the recommended initial step for an IS auditor to implement continuous-monitoring systems?A. Document existing internal controlsB. Perform compliance testing on internal controlsC. Establish a controls-monitoring steering committee
D. Identify high-risk areas within the organizationAnswer: DWhen implementing continuous-monitoring systems, an IS auditor's first stepis to identify high-risk areas within the organization.6. What type of risk is associated with authorized program exits (trap doors)? Choose the BEST answer.