Audit Part I, Section II Flashcards

1
Q

Absolute Risk

A

The risk derived from the environment without the mitigating effects of internal controls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Acceptable Risk

A

A type of risk that revolves around the business impact that would be experienced if certain risks were realized.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Acceptable risk level

A

A risk level derived from an organization’s legal and regulatory compliance responsibilities, its threat profile, and its business drivers and impacts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Active control

A

A type of control that prevents or detects a deviation from the approved procedure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Adequate control

A

A level of control that is present if management has planned and organized in a manner that provides reasonable assurance that the organization’s risks shave been managed effectively and that the organization’s goals and objectives will be achieved efficiently and economically.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Application control

A

An IT control related to the specific functioning of an application system that supports a specific business process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Benchmarking

A

The comparison of an organization or project to similar internal or external organizations or projects, for the purpose of determining areas for potential improvement and to identify best practices. May also be used to assess likelihood and impact of potential events across an industry.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Brainstorming

A

An activity in which a group generates new ideas; ideas are accepted without criticism and are then evaluated together.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Pervasive Risk

A

The type of risk found throughout the environment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Positive conflict

A

A type of conflict that leads to beneficial results; can transform the way sin which individuals interact and improve the quality of conflict outcomes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Process-flow analysis

A

A two-dimensional graphic representation of an operation in terms of the flow of activity through the process. Examines the combination of inputs, tasks, and responsibilities that comprise a process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Processing controls

A

Automated error checks built into computer processing as well as segregation of duties such as controlling programmers’ access to files and records. They check that data processing tasks are accurate, complete, and valid.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Residual risk

A

The risk remaining after management takes action to reduce the impact and likelihood of an adverse event, including control activities in responding to a risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Risk

A

The possibility of an event occurring that will have an impact on the achievement of objectives; measured in terms of impact and likelihood.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Risk analysis

A

The identification of risk, the measurement of risk, and the process of prioritizing risk or selecting alternatives based on risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Risk appetite

A

The amount of risk an organization is willing to accept in pursuit of value.

17
Q

Risk assessment

A

The identification of risk, the measurement of risk, and the process of prioritizing risk (considering likelihood and impact) or selecting alternatives based on risk.