Which of the following responsibilities does not come under the audit process?
A.
Reporting all facts and circumstances of the irregular and illegal acts.
B.
Planning the IT audit engagement based on the assessed level of risk.
C.
Reviewing the results of the audit procedures.
D.
Applying security policies.
The Answer Is:
A, B, C
This question includes an explanation.
Explanation:
According to the standards of ISACA, an auditor should hold the following responsibilities: Planning the IT audit engagement based on an assessed level of risk. Designing audit procedures of irregular and illegal acts. Reviewing the results of the audit procedures. Assuming that acts are not isolated. Determining why the internal control system failed for that act. Conducting additional audit procedures. Evaluating the results of the expanded audit procedures. Reporting all facts and circumstances of the irregular and illegal acts. Distributing the report to the appropriate internal parties, such as managers. Answer: D is incorrect. The auditor is not responsible for applying security policies.
GSNA PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"