exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 256 discussion

Actual exam question from Isaca's CISA
Question #: 256
Topic #: 1
[All CISA Questions]

A chief information officer (CIO) has asked an IS auditor to implement several security controls for an organization's IT processes and systems. The auditor should:

  • A. refuse due to independence issues.
  • B. communicate the conflict of interest to audit management.
  • C. perform the assignment and future audits with the due professional care.
  • D. obtain approval from executive management for the implementation.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
1Naa
3 days, 12 hours ago
Selected Answer: B
Auditors should maintain independence and objectivity, which means they should not take on operational responsibilities (like implementing controls) because doing so could compromise their ability to provide an unbiased audit opinion.
upvoted 1 times
...
PurpleParrot
4 months, 1 week ago
Selected Answer: B
While refusing to perform the task is one way to handle the situation, communicating the conflict ensures that the issue is formally acknowledged and managed according to organizational policies. This approach helps in maintaining professional standards and ensuring that the audit function remains effective and unbiased.
upvoted 3 times
...
55555hk
5 months, 2 weeks ago
Selected Answer: A
Because IS auditor should be implement security controls for the organisation's IT processes & systems, it should be the responsibilities of IT dept/IT Manager.
upvoted 2 times
...
RS66
5 months, 3 weeks ago
Selected Answer: C
I will go with ChatGPT, i choose C. Option C (perform the assignment and future audits with the due professional care) is the most appropriate choice because it acknowledges the conflict of interest but implies that the auditor should proceed with the assignment while maintaining professional standards and integrity. This includes ensuring that the audit is conducted objectively and independently, despite the potential conflict posed by the CIO’s request.
upvoted 1 times
choboanon
3 months ago
Chatgpt says B lol
upvoted 1 times
...
...
Swallows
6 months, 3 weeks ago
Selected Answer: B
While it's essential for IS auditors to maintain independence and objectivity in their work, outright refusal may not always be necessary or practical. By communicating the conflict of interest to audit management, the auditor can ensure that appropriate steps are taken to address the situation while still fulfilling the organization's needs.
upvoted 3 times
...
Swallows
8 months, 2 weeks ago
Selected Answer: A
The correct decision for an auditor would be to reject the request due to independence issues.
upvoted 2 times
...
Changwha
1 year, 5 months ago
C. perform the assignment and future audits with the due professional care.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago