Following an IT systems audit, management agreed to implement a specific control in one of the IT systems. After a period, the internal auditor followed up and learned that management had not implemented the agreed management action due to the decision to move to another IT system that has built-in controls, which may address this risks highlighted by the Internal audit Which of the following Is the most appropriate action to address the outstanding audit recommendation?
What is the best course of action for a chief audit executive if an internal auditor identifies in the early stage of an audit that some employees have inappropriate access to a key system?
When taken by a chief audit executive, which of the following actions would be most likely to prevent division management from exaggerating sales reports
1.Announcing a series of internal audit engagements focusing on compliance with corporate sales-reporting policies.
2.Asking the president and the board to issue a statement of corporate policy stressing the importance of accurate management reporting and the negative consequences of intentional misreporting
3.Setting up a hotline for employees to report fraudulent behavior anonymously.
4.Assisting the controller in developing and monitoring a series of business process indicators, which are historically correlated with, but independent of. sales.
If there is a significant error or omission in the final audit report that was communicated to management, which of the following is the key action for the internal audit activity?