Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 1399 discussion

Actual exam question from Isaca's CISA
Question #: 1399
Topic #: 1
[All CISA Questions]

Which of the following would be of GREATEST concern to an IS auditor assessing the organizational risk associated with fraud?

  • A. Unauthorized changes to the production environment have been detected.
  • B. Periodic user access reviews to financial systems are inconsistent.
  • C. A major financial application is developed and maintained by the application team.
  • D. The organization does not require employees to take mandatory leave.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
PurpleParrot
2 months, 1 week ago
Selected Answer: A
Option A
upvoted 1 times
...
RS66
3 months, 1 week ago
Selected Answer: A
A. Unauthorized changes to the production environment have been detected.
upvoted 1 times
...
Swallows
5 months, 3 weeks ago
Selected Answer: B
Inconsistent periodic user access reviews to financial systems can pose significant risks related to fraud. Proper access controls are crucial in preventing unauthorized access to financial data and systems, which could be exploited by individuals intending to commit fraud. Inconsistent reviews may result in outdated user access permissions, potentially allowing unauthorized users to manipulate financial data or perform fraudulent activities without detection. This could lead to financial losses, regulatory compliance issues, and damage to the organization's reputation. Therefore, ensuring consistent and thorough user access reviews is critical for mitigating fraud risks within an organization.
upvoted 2 times
...
MJORGER
6 months, 1 week ago
Selected Answer: D
D is wright.
upvoted 1 times
...
MJORGER
8 months, 4 weeks ago
ChatGpt and page 99 from Cisa 27th Study Guide: D. The organization does not require employees to take mandatory leave. This practice, known as "mandatory leave" or "forced vacation," is a preventive control measure commonly used to mitigate the risk of fraud. Requiring employees to take time off allows for their work to be scrutinized by others in their absence, making it more difficult for fraudulent activities to go undetected. It serves as a deterrent to fraudulent behavior and provides an opportunity for irregularities or anomalies in employee activities to be identified.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...