CPA Business Environment and Concepts (BEC)

Help Questions

CPA Auditing and Attestation (AUD) › CPA Business Environment and Concepts (BEC)

Questions 1 - 10
1

Per the COSO ICIF, the main purpose of monitoring internal controls is to confirm that the internal control system can adequately address changes in:

Risk Assessment

Control Environment

Monitoring

Information and communication

Explanation

Risks constantly change in terms of likelihood and severity. Internal controls should be created and upheld to address changes in risks.

2

Per the COSO ICIF, the main purpose of monitoring internal controls is to confirm that the internal control system can adequately address changes in:

Risk Assessment

Control Environment

Monitoring

Information and communication

Explanation

Risks constantly change in terms of likelihood and severity. Internal controls should be created and upheld to address changes in risks.

3

Per the COSO ICIF, the main purpose of monitoring internal controls is to confirm that the internal control system can adequately address changes in:

Risk Assessment

Control Environment

Monitoring

Information and communication

Explanation

Risks constantly change in terms of likelihood and severity. Internal controls should be created and upheld to address changes in risks.

4

A company's management is experiencing a lack of segregation of duties within its application environment as its programmers have access to both development and production. The programmers have the ability to implement changes in code in production without monitoring or quality assurance. This is a deficiency in which area?

Change control

Data integrity

Computer operations

Management override

Explanation

Programmers who have access to both instructions and live data can undermine management's control of data and their ability to verify that all changes have been performed in a manner consistent with their instructions.

5

A company's management is experiencing a lack of segregation of duties within its application environment as its programmers have access to both development and production. The programmers have the ability to implement changes in code in production without monitoring or quality assurance. This is a deficiency in which area?

Change control

Data integrity

Computer operations

Management override

Explanation

Programmers who have access to both instructions and live data can undermine management's control of data and their ability to verify that all changes have been performed in a manner consistent with their instructions.

6

A company's management is experiencing a lack of segregation of duties within its application environment as its programmers have access to both development and production. The programmers have the ability to implement changes in code in production without monitoring or quality assurance. This is a deficiency in which area?

Change control

Data integrity

Computer operations

Management override

Explanation

Programmers who have access to both instructions and live data can undermine management's control of data and their ability to verify that all changes have been performed in a manner consistent with their instructions.

7

Of the following positions, which best describes the nature of a company's Board of Directors in relation to the company?

Agent

Fiduciary

Representative

Executive

Explanation

A company's board of directors has a fiduciary duty to act on behalf of and in the best interest of a corporation.

8

Of the following positions, which best describes the nature of a company's Board of Directors in relation to the company?

Agent

Fiduciary

Representative

Executive

Explanation

A company's board of directors has a fiduciary duty to act on behalf of and in the best interest of a corporation.

9

Of the following positions, which best describes the nature of a company's Board of Directors in relation to the company?

Agent

Fiduciary

Representative

Executive

Explanation

A company's board of directors has a fiduciary duty to act on behalf of and in the best interest of a corporation.

10

According to COSO, which of the following is included in the assess and report phase of an effective approach to monitoring internal controls?

Prioritize findings

Tone at the top

Identify controls

Prioritize risks

Explanation

Findings result from monitoring internal controls.

Page 1 of 74