Chapter 5 - Internal Control Flashcards

1
Q

ICs are designed to provide reasonable assurance in the following categories

A
  1. reliability of financial reporting
  2. effectiveness and efficiency of operations
  3. compliance with laws and regulations
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

ICFR objective is to see the…

A

reliability of financial reporting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

limitations of IC include…

A

human error, collusion, management override (limitation of control, and cost/benefit analysis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

there is often a trade off between the cost and ____ of ICs

A

effectiveness

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

the concept of reasonable assurance recognizes…

A

that the cost of ICs should not exceed the benefits

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

two types of controls

A

detective, preventive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

why do we always asses iC even if we dont test it?

A

helps guide decisions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

for each fruad risk, auditors must evaluate whether…

A

controls are in place to mitigate the fraud risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

must assess control risk to…

A

determine the nature, timing, and extent of substantial procedures to be performed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

less reliance on control risk mean ____ CR, ____ RMM, ____ detected risk

A

higher, higher, lower

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

more reliance on control risk means ____ CR, ____ RMM, and ____ detection risk

A

lower, lower, higher

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

with more reliance on control risk, how do we adjust the nature?

A

more effective test

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

with more reliance on control risk, how do we adjust timing?

A

testing performed at year end

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

with more reliance on control risk, how do we adjust extent?

A

higher sample size

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

COSO is used by…

A

auditors and management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

control environment sets the…

A

“tone at the top”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

control environment is the…

A

foundation for all other components

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

audit committee is a…

A

subcommittee of the board that is generally composed of 3-6 “outside members”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

audit committee provides a…

A

buffer between the audit team and operating management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

all members of the audit committee must be…

A

financially literate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

one member of the audit committee must be…

A

a financial expert

22
Q

risk assessment is from the ___ perspective

A

managements

23
Q

risk assessment is the…

A

management’s identification, analysis, and management of relevent risks to achievement of its objectives

24
Q

one way to do risk assessment is through…

A

COSO’s ERM framework

25
we want a control to assess a _____ risk
specific
26
occurance always goes with
vouching
27
completeness always goes with
tracing
28
who used accounts recieveable aging reports?
CEO
29
who used new hire reports?
payroll clerk
30
four types of functional responsibilities that should be segregated
1. authorization 2. recording transactions 3. custody of assets involved 4. periodic reconciliation
31
the auditor cannot ever rely on info produced by the company's info system without...
investigation
32
"audit trail"
trail of activities information systems provide
33
a well functioning monitoring system includes...
ongoing and separate evaluations and reporting deficiencies
34
phase 1 of internal control evaluation is
undertand and document
35
phase2 of evaluation is
asses the control risk (preliminary)
36
phase 3 of evaluation is
Identify controls to test and perform test of controls
37
entirety level controls are...
pervasive to the internal control system and the reliability of financial statements taken as a whole
38
entity level controls are not...
transaction specific
39
a narrative is..
in writing from start to finish including control
40
in phase 2 assessing cost risk, we consider..
cost effectiveness of reliance and testing
41
two reasons auditor may choose to not test controls
1. Ic systems is TOO EFFECTIVE in preventing or detecting misstatements to rely upon to justify reductions in substantive testing 2. it may take more time to test controls than to just perform more substance testing
42
for non public, how do we know ICS are not effective
1. walkthrough discrepancy 2. already tested internally
43
when we assess risk, we do not...
test every control
44
for efficiency, if we test audit controls it is ____ audit more
less
45
we want to test the _____ level controls we can
highest
46
exception testing is...
testing all items in a population
47
audit sampling is...
taking a sample from a population
48
lowest level of support for a control is...
inquiry
49
for testing of controls, direction...
does not matter
50
if an IC is design deficient..
do nto proceed
51
if IC is not design deficient...
test operating deficient
52
what serious IC deficiencies do we report to audit committee?
material weakness and significant dificeni