Weekend Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sale65best

Free IIA IIA-CIA-Part3 Practice Exam with Questions & Answers | Set: 2

Questions 16

According to IIA guidance, whose input must be considered when developing the annual internal audit plan?

Options:
A.

Operational management

B.

External auditors

C.

The CEO

D.

Internal assurance providers

IIA IIA-CIA-Part3 Premium Access
Questions 17

Which of the following is a primary driver behind the creation and prioritization of new strategic initiatives established by an organization?

Options:
A.

Risk tolerance.

B.

Performance.

C.

Threats and opportunities.

D.

Governance.

Questions 18

What is the primary purpose of an integrity control?

Options:
A.

To ensure data processing is complete, accurate, and authorized

B.

To ensure data being processed remains consistent and intact

C.

To monitor the effectiveness of other controls

D.

To ensure the output aligns with the intended result

Questions 19

Which of the following is the best example of a compliance risk that is likely to arise when adopting a bring-your-own-device (BYOD) policy?

Options:
A.

The risk that users try to bypass controls and do not install required software updates

B.

The risk that smart devices can be lost or stolen due to their mobile nature

C.

The risk that an organization intrusively monitors personal information stored on smart devices

D.

The risk that proprietary information is not deleted from the device when an employee leaves

Questions 20

Which of the following authentication device credentials is the most difficult to revoke when an employee's access rights need to be removed?

Options:
A.

A traditional key lock.

B.

A biometric device.

C.

A card-key system.

D.

A proximity device.

Questions 21

Which of the following is an advantage of a decentralized organizational structure, as opposed to a centralized structure?

Options:
A.

Greater cost-effectiveness

B.

Increased economies of scale

C.

Larger talent pool

D.

Strong internal controls

Questions 22

A motivational technique generally used to overcome monotony and job-related boredom is:

Options:
A.

Job specification.

B.

Job objectives.

C.

Job rotation.

D.

Job description.

Questions 23

Which of the following is the most appropriate way to record each partner’s initial investment in a partnership?

Options:
A.

At the value agreed upon by the partners

B.

At book value

C.

At fair value

D.

At the original cost

Questions 24

With regard to disaster recovery planning, which of the following would most likely involve stakeholders from several departments?

Options:
A.

Determining the frequency with which backups will be performed.

B.

Prioritizing the order in which business systems would be restored.

C.

Assigning who in the IT department would be involved in the recovery procedures.

D.

Assessing the resources needed to meet the data recovery objectives.

Questions 25

At which fundamental level of a quality assurance and improvement program is an opinion expressed about the entire spectrum of the internal audit function’s work?

Options:
A.

At the external perspective level

B.

At the internal audit function level

C.

At the internal audit engagement level

D.

At the self-assessment activity level

Questions 26

In an organization with a poor control environment, which of the following indicators would help an internal audit function measure its ability to provide risk-based assurance?

Options:
A.

The value of potential cost savings, or prevented losses, identified per year

B.

The percentage of observations that can be linked to significant organizational risks

C.

The extent of data mining or data analytics used during assurance engagements

D.

The amount of time dedicated to organization-wide risk assessments

Questions 27

According to IIA guidance on IT, which of the following strategies would provide the most effective access control over an automated point-of-sale system?

Options:
A.

Install and update anti-virus software.

B.

Implement data encryption techniques.

C.

Set data availability by user need.

D.

Upgrade firewall configuration

Questions 28

Which of the following is the most appropriate beginning step of a work program for an assurance engagement involving smart devices?

Options:
A.

Train all employees on bring-your-own-device (BYOD) policies.

B.

Understand what procedures are in place for locking lost devices

C.

Obtain a list of all smart devices in use

D.

Test encryption of all smart devices

Questions 29

An analytical model determined that on Friday and Saturday nights the luxury brands stores should be open for extended hours and with a doubled number of employees

present; while on Mondays and Tuesdays costs can be minimized by reducing the number of employees to a minimum and opening only for evening hours Which of the

following best categorizes the analytical model applied?

Options:
A.

Descriptive.

B.

Diagnostic.

C.

Prescriptive.

D.

Prolific.

Questions 30

Capital budgeting involves choosing among various capital projects to find the one(s) that will maximize a company's return on its financial investment. Which of the following parties approves the capital budget?

Options:
A.

Board of directors.

B.

Senior management.

C.

Chief financial officer.

D.

Accounting personnel.