exam questions

Exam IIA-CIA-Part2 All Questions

View all questions & answers for the IIA-CIA-Part2 exam

Exam IIA-CIA-Part2 topic 2 question 48 discussion

Actual exam question from IIA's IIA-CIA-Part2
Question #: 48
Topic #: 2
[All IIA-CIA-Part2 Questions]

An audit identified a number of weaknesses in the configuration of a critical client/server system. Although some of the weaknesses were corrected prior to the issuance of the audit report, correction of the rest will require between six and 18 months for completion. Consequently, management has developed a detailed action plan, with anticipated completion dates, for addressing the weaknesses. Which of the following is the most appropriate course of action for the chief audit executive to take?

  • A. Assess the adequacy of the action plan and monitor key dates and deliverables.
  • B. Schedule a follow-up audit engagement to assess the status of corrective action.
  • C. Reassign information systems auditors to assist the information technology department in correcting the weaknesses.
  • D. Evaluate statistics related to unplanned system outages, unauthorized access attempts, and denials of service to assess the effectiveness of corrections.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
[Removed]
1 month, 4 weeks ago
You only schedule follow up once corrective action has been completed.
upvoted 1 times
...
Prossyn
8 months ago
B is correct but the question is asking for the most appropriate course of action and in this case, the CAE must first assess the adequacy and effectiveness of the action plan before he/she considers following up
upvoted 2 times
...
gml0603
1 year, 5 months ago
B seems right to me
upvoted 1 times
...
whatup
1 year, 7 months ago
Why is A the correct answer. B seems right
upvoted 1 times
WZ
1 year, 6 months ago
becasue the need for a follow-up is included in option A. The management is going to create a plan and the auditors will assess its adequacy and "monitor" various dates.
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago