COSO, COBIT, and Manual Internal Control Questions
COSO, COBIT, and Manual Internal Control Questions
By:
• COSOç
4. What component of internal control involves a dynamic and iterative process for identifying
and assessing risks to the achievement of objectives?
A. Control Activities
B. Risk Avoidance
C. Risk Assessment
D. Risk Technique
6. This internal control objective pertains to the adherence to laws and regulations to which the
entity is subject.
A. Compliance Objective
B. Operations Objective
C. Strategic Objective
D. Reporting Objective
7. The following are some of the fundamental concepts of internal control, except:
A. Able to provide reasonable assurance
B. Adaptable to entity structure
C. Not effected by people
D. Geared to the achievement of objectives not only in one category but can also be in more
categories
10. These pertains to the effectiveness and efficiency of the entity’s operations including
operational and financial goals and safeguarding asses against loss;
A. Strategic Objective
B. Operations Objective
C. Compliance Objective
D. Reporting Objectives
• COBIT
1. It is a framework for the governance and management of enterprise information and
technology, aimed at the whole enterprise.
a. Control Objectives for Information Systems and Technologies Framework
b. Control Objectives for Information and Related Technologies Framework
c. Control Objectives for Information and Related Terminologies Framework
d. None of the above
2. COBIT 5 Framework was issued in __
a. 2010
b. 2011
c. 2012
d. 2013
3. COBIT 2019 Framework was developed by __
a. Information Systems Audit and Control Association
b. Information Technologies Audit and Control Association
c. Committee of Sponsoring Organizations
d. Committee of Sponsoring Operations
4. It ensures that enterprise objectives are achieved by evaluating stakeholder needs, conditions
and options; setting direction through prioritization and decision making; and monitoring
performance, compliance and progress against agreed-on direction and objectives.
a. Management
b. Board of Directors
c. Executives
d. Governance
5. This is a set of best practices for Information Technology management
a. Enterprise Risk Management
b. IT environment
c. Control Objectives for Information and Related Technology
d. Information Systems Audit and Control Association
6. The following are the benefits of Information and Technology to enterprises, except:
a. Bring order to complex standards and frameworks
b. Address all stakeholders’ needs and maximize value of corporate information
c. Protect and drive enterprise value
d. Minimize value from information chaos
7. All of the following are COBIT 5 principles, except:
a. Enabling a holistic approach
b. Covering the enterprise end-to-end
c. Control Environment and activities
d. Meeting Stakeholder needs
8. Required for keeping the organization running and well governed, but at the operational level.
It is very often the key product of the enterprise itself.
a. Processes
b. Information
c. Organizational structures
d. Principles, policies and frameworks
9. COBIT stands for:
a. Commission on Objectives of Information Technology
b. Control Objectives for Information Technology
c. Commission on Objectives of Information and Related Technology
d. Control Objectives for Information and Related Technology
10. Stakeholder needs include the following, except
a. benefits realisation
b. resource optimisation
c. shareholder value
d. risk optimization
11. What is the common function between governance and management?
a. direct
b. monitor
c. plan
d. evaluate
12. Under COBIT 2019, what component of governance system relates to information
technology?
a. Services, Infrastructure and Application
b. Information
c. Processes
d. Organizational Structure
13. Governance monitors _______, while management monitors _______.
a. management; personnel
b. shareholders; management
c. shareholders; personnel
d. management; shareholders
14. The following are COBIT 2019 components of governance system, except:
a. People, Skills and Competencies
b. Stakeholder Drivers and Needs
c. Culture, Ethics and Behavior
d. Organization Structures
15. The COBIT 5 goals cascade translates ___________ into specific, actionable and customized
goals within the context of the enterprise, IT-related goals and enabler goals.
a. Governance and Management Objectives
b. Enterprise Goals
c. Alignment Goals
d. Stakeholder Needs
4. Using checklist for receiving deliveries and conducting physical count of inventories is an
example of...
a. Computerized internal control
b. Manual internal control
c. Application control
d. General control
7. Internal control is geared towards the achievement of the entity’s objectives in the
following categories, except
a. Strategic planning and control
b. Effectiveness and efficiency of operations
c. Reliability of financial reporting
d. Compliance with laws and regulations
9. Which of the following techniques is not useful for obtaining an understanding of internal
controls?
a. Make inquiries of the client’s personnel
b. Examine documents and records
c. Read industry magazine
d. Observe client activities and operations
10. To obtain evidential matter about control risk, an auditor selects test form a variety of
techniques including
a. Inquiry
b. Analytical procedure
c. Calculation
d. Confirmation