What is the first step on performing a risk assessment under the COSO Internal Control Framework?
A.
identification of risks
B.
defining internal control objectives
C.
review of prior audit findings
D.
setting risk tolerance levels
The Answer Is:
B
This question includes an explanation.
Explanation:
Risk Assessment Under COSO Framework:
The first step in a COSO-based risk assessment is defining internal control objectives. This establishes what the organization aims to achieve, providing a framework for identifying risks and ensuring controls align with objectives.
Risk assessment focuses on evaluating the likelihood and impact of risks that could hinder these objectives.
Explanation of Answer Choices:
A. Identification of risks: Identifying risks follows the definition of internal control objectives.
B. Defining internal control objectives: Correct. Objectives must be defined first to provide a basis for identifying and assessing risks.
C. Review of prior audit findings: Important, but it’s not the starting point for a risk assessment under COSO.
D. Setting risk tolerance levels: This occurs later, after risks have been identified and evaluated.
[:, COSO,Internal Control - Integrated Framework., GAO,Standards for Internal Control in the Federal Government (Green Book)., ]
GFMC PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"