1. An IS auditor has completed an audit on the organization's IT strategic planning process. Which of the following findings should be given the HIGHEST priority?
A) The IT strategic plan was completed prior to the formulation of the business strategic plan B) Assumptions in the IT strategic plan have not been communicated to business stakeholders C) The IT strategic plan was formulated based on the current IT capabilities D) The IT strategic plan does not include resource requirements for implementation
2. Which of the following would provide the BEST evidence of successfully completed batch uploads?
A) Sign-off on the batch journal B) Using sequence controls C) Enforcing batch cut-off times D) Reviewing process logs
3. An IS auditor is conducting a review of a healthcare organization's IT policies for handling medical records. Which of the following is MOST important to verify?
A) A documented policy approval process is in place B) Policy writing standards are consistent C) The policies comply with regulatory requirements D) IT personnel receive ongoing policy training
4. Audit management has just completed the annual audit plan for the upcoming year, which consists entirely of high-risk processes. However, it is determined that there are insufficient resources to execute the plan. What should be done NEXT?
A) Remove audits from the annual plan to better match the number of resources available B) Reduce the scope of the audits to better match the number of resources available C) Present the annual plan to the audit committee and ask for more resources D) Review the audit plan and defer some audits to the subsequent year
5. If concurrent update transactions to an account are not processed properly, which of the following will be affected?
A) Integrity B) Confidentiality C) Availability D) Accountability
Leave a comment