IT (Computer) Auditing Flashcards

1
Q

What is a disadvantage to IT?

What is an advantage to IT?

A
  • Separation of duties
  • Audit trail may be lacking

Advantage:
- Computer processing is uniform- computers don’t have “good days” and “bad days”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the two major categories of computer related controls?

A

1) General Controls- Have widespread impact on the specific applications
2) Application controls- affect particular data processing tasks (payroll, cash disbursements, etc)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the 5 categories of general controls

A

1) Organization and operation
2) system development & documentation
3) Hardware and software
4) Access
5) Data and procedures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does organization and operation controls focus on?

A

Segregation of duties (within company and within within the IT department)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Within the IT department, what are the segregation of duties?

A
  • System analyst (designs the system)
  • Programer (develops code)
  • Operator (runs the system)
  • Librarian (keeps track of programs & data)
  • Security (safeguards system including programs & data files)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the controls related to systems development & documentation?

A
  • Must adequately document the initial system

- Must document any changes (and all changes must be appropriately authorized)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the hardware & software (built in controls)

A
  • Parity check- between hardware components
  • Echo check: transmission over phone lines
  • Diagnostic routines: affecting hardware
  • Boundary protection: separating multiple jobs
  • Operating system: built into system software
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

access to data, software, and hardware should be limited to….l?

A

Authorized personnel

How well did you know this?
1
Not at all
2
3
4
5
Perfectly