Basics
SOX
RCM
SOX Methodology
Potpourri
100

Internal Audit is this line of defense.

What is the 3rd line of defense.

100

We use this model for evaluating internal controls.

What is COSO?

100

Controls are designed to do this.

What is mitigate risk?

100

These are the audit phases we use.

What is Design and Evaluation, Operating Effectiveness, and Roll Forward?

100

This is the acronym for the criteria we use to evaluate action plans.

What is SMART?

200

This governing body sets the deadline for public company financial statement reporting.

What is the Securities Exchange Commission (SEC)?

200

Insider trading is an example of a criminal enhancement under what SOX section?

What is 902?

200

Inherent risk is determined by these two factors.

What is impact and likelihood?

200

We use these benchmarks to determine materiality.

What are Total Assets, Net Revenue, and Loss Before Income Tax?

200

Reporting happens when?

What is continuously?

300

IPO Readiness projects support this IA priority.

What is Strengthen Uber’s financial integrity?

300

This is the year the Sarbanes-Oxley Act was passed.  

What is 2002?

300

These are three ways inherent risk can be mitigated.

What is accept, control, avoid?

300

We utilize this method of sample selection.

What is haphazard?

300

Mergers, Acquisitions and Divestitures is an example of this type of risk.

What is strategic?

400

AS1101 is the standard for this area.  

What is Audit Risk?

400

The CEO and CFO have this many days to evaluate of the internal control effectiveness as of date prior to the report.

What is 90 days?

400

Review of Xchange Leasing India financial statement flux analysis is an example of this type of control?

What is a management review control (MRC)?

400

A review of OFAC hits for each vendor is an example of this type of aggregation.

What is low?

400

When performing OE validation, the remediation sample size should equal this.

What is the original sample size?

500

This framework is the authoritative guidance of internal auditors.  

What is the International Professional Practices Framework (IPPF)?

500

SOX is also know as this act.

What is the Corporate Responsibility Act of 2002?

500

A company owned server recorded as a receivable and at cost, not net book value affects this assertion.

What is presentation and disclosure?

500

These are the 4 elements of a gap.

What are condition, criteria, root cause, and effect?

500

This is the number of instances a remediated weekly controls should be in operation.

What is 5?