Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 9 pages
Other

ACG 4401 FINAL EXAM VERIFIED STUDY GUIDE

Document preview thumbnail
Preview 2 out of 9 pages

ACG 4401 FINAL EXAM VERIFIED STUDY GUIDE

Content preview

ACG 4401 FINAL EXAM VERIFIED STUDY GUIDE


preventive controls - Answers - Controls that deter problems before they arise. Ex:
qualified personnel, segregation of duties, control access

detective controls - Answers - Controls designed to discover control problems that were
not prevented. Ex: duplicate checking of calculations, monthly balances

corrective controls - Answers - Controls designed to make sure an organization's
information system and control environment is stable and well managed. Ex: security,
maintenance

belief system - Answers - System that describes how a company creates value, helps
employees understand management's vision communicates company core values, and
inspires employees to live by those values

boundary system - Answers - System that helps employees act ethically by setting
boundaries on complete behavior

diagnostic control system - Answers - System that measures, monitors, and compares
actual company progress to budgets and performance goals

interactive control system - Answers - System that helps managers to focus
subordinates' attention on key strategic issues and to be more involved in their
decisions

Foreign Corrupt Practices Act (FCPA) - Answers - Legislation passed to prevent
companies from bribing foreign officials to obtain business; also requires all publicly
owned corporations maintain a system of internal accounting controls

Sarbanes-Oxley Act (SOX) - Answers - Legislation intended to prevent financial
statement fraud, make financial reports more transparent, provide protection to
investors, strengthen internal controls at public companies, and punish executives who
perpetrate fraud

COBIT5 Principles (5) - Answers - 1. Meeting stakeholder needs
2. Covering the enterprise end-to-end
3. Applying a single, integrated framework
4. Enabling a holistic approach
5. Separating governance from management

Internal Control-Integrated Framework (IC) - Answers - A COSO framework that defines
internal controls and provides guidance for evaluating and enhancing internal control
systems

, Enterprise Risk Management - Integrated Framework (ERM) - Answers - A COSO
framework that improves the risk management process by expanding (adds three
additional elements) COSO's Internal Control - Integrated

internal environment - Answers - 1.Management's philosophy, operating style, and risk
appetite
2.Commitment to integrity, ethical values, and competence
3.Internal control oversight by Board of Directors
4.Organizing structure
5.Methods of assigning authority and responsibility
6.Human resource standards

Risk Assessment - Answers - Inherent- risk that exists before plans are made to control
it
Residual- risk that is left over after you control it

Cost Benefit Analysis - Answers - Expected Loss = Impact x Likelihood
Impact- estimate potential loss if event occurs
Likelihood- probability that the event will occur

Risk Response - Answers - Reduce- Implement effective internal control
Accept- Do nothing, accept likelihood, and impact of risk
Share- Buy insurance, outsource, or hedge
Avoid- Do not engage in the activity

Control Activities - Answers - 1.Proper authorization of transactions and activities
2.Segregation of duties
3.Project development and acquisition controls
4.Change management controls
5.Design and use of documents and records
6.Safeguarding assets, records, and data
7.Independent checks on performance

Trust Services Framework - Answers - -Security: access to the system and data is
controlled and restricted to legitimate users
-Confidentiality: sensitive organizational data is protected
-Privacy: personal information about trading partners, investors, and employees are
protected
-Processing Integrity: data are processed accurately, completely, in a timely manner,
and only with proper authorization
-Availability: system and information are available

Security Life Cycle - Answers - 1. assess threats and select risk response
2. develop and communicate policy
3. acquire and implement solutions

Document information

Uploaded on
July 27, 2026
Number of pages
9
Written in
2025/2026
Type
Other
Person
Unknown
$13.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
GEEKA
3.8
(361)
Sold
2137
Followers
1449
Items
58602
Last sold
3 days ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions