Which of the following best describes a detective control designed to protect an organization from cyberthreats and attacks?
A. A list of trustworthy, good traffic and a list of unauthorized, blocked traffic.Which of the following differentiates a physical access control from a logical access control?
A. Physical access controls secure tangible IT resources, whereas logical access controls secure software and data internal to the IT system.Which of the following best describes the job design strategy used by the chief audit executive that encourages internal auditors to manage engagements from the beginning to the end?
A. Job sharing.An organization's account for office supplies on hand had a balance of $9,000 at the end of year one. During year two, the organization recorded an expense of $45,000 for purchasing office supplies. At the end of year two, a physical count determined that the organization has $11,500 in office supplies on hand. Based on this information, what would be recorded in the adjusting entry at the end of year two?
A. A debit to office supplies on hand for $2,500When auditing databases, which of the following risks would an Internal auditor keep in mind in relation to database administrators?
A. The risk that database administrators will disagree with temporarily preventing user access to the database for auditing purposes.Management has established a performance measurement focused on the accuracy of disbursements. The disbursement statistics, provided daily to all accounts payable and audit staff, include details of payments stratified by amount and frequency.
Which of the following is likely to be the greatest concern regarding this performance measurement?
A. Articulation of the data.An advisable strategy for a participant in a meeting of the employees would be to:
A. Read the agenda and supporting materials for the meeting during the early part of the meeting to prepare for later discussion.The internal auditor concluded there was a high likelihood that a significant wind farm development, worth $200 million, would be delayed from its approved schedule. As a result, electricity production would not start on time, leading to considerable financial penalties.
Which of the following should be added to the observation to support its clarity and completeness?
A. The effect of the observationWhich of the following cost of capital methods identifies the time period required to recover the cost of the capital investment from the annual inflow produced?
A. Cash payback technique.An internal auditor has completed the fieldwork of an assurance engagement on the organization's business continuity. The most significant finding is that business requirements were left up to the IT function to decide and implement. As a result, the time to recovery for some critical systems following a disruption is too long, while recovery time of non-critical systems is needlessly prioritized at a significant cost.
Which of the following is the most appropriate recommendation to include in the engagement report?
A. Management of business units should review and correct the recovery targetsNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only IIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your IIA-CIA-PART3 exam preparations and IIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.