CIA Exam Part 3 IIA-CIA-Part3 Exam Questions - Business Knowledge for Internal Auditing

  Edina  10-19-2021

2019 Certified Internal Auditor (CIA) Exam Syllabus

As the only globally recognized internal audit certification, becoming a Certified Internal Auditor® (CIA®) is the optimum way to communicate knowledge, skills, and competencies to effectively carry out professional responsibilities for any internal audit, anywhere in the world.The CIA exam has 3 parts required.

  • Part 1 – Essentials of Internal Auditing (IIA-CIA-Part1)
  • Part 2 – Practice of Internal Auditing (IIA-CIA-Part2)
  • Part 3 – Business Knowledge for Internal Auditing (IIA-CIA-Part3)

​2019 CIA Exam Syllabus, Part 3 – Business Knowledge for Internal Auditing

The CIA exam Part 3 includes four domains focused on business acumen, information security, information technology, and financial management. Part 3 is designed to test candidates' knowledge, skills, and abilities particularly as they relate to these core business concepts.​Part 3 has the same format as Part 2 of the CIA exam: 100 multiple-choice questions to be answered in two hours of total testing time. This combination of questions and time gives you 1.2 minutes to complete each question.

Exam Domains

I. Business Acumen (35%)
II. Information Security (25%)
III. Information Technology (20%)
IV. Financial Management (20%)

View Online CIA Exam Part Three: Business Knowledge for Internal Auditing IIA-CIA-Part3 Free Questions

1.Technological uncertainty, subsidy, and spin-offs are usually characteristics of:
A. Fragmented industries.
B. Declining industries.
C. Mature industries.
D. Emerging industries.
Answer: D

2.An internal auditor is reviewing physical and environmental controls for an IT organization.
Which control activity should not be part of this review?
A. Develop and test the organization's disaster recovery plan.
B. Install and test fire detection and suppression equipment.
C. Restrict access to tangible IT resources.
D. Ensure that at least one developer has access to both systems and operations.
Answer: D

3.Which of the following does not provide operational assurance that a computer system is operating properly?
A. Performing a system audit.
B. Making system changes.
C. Testing policy compliance.
D. Conducting system monitoring.
Answer: B

4.Which of the following stages of group development is associated with accepting team responsibilities?
A. Forming stage.
B. Performing stage.
C. Norming stage.
D. Storming stage.
Answer: C

5.Which of the following standards would be most useful in evaluating the performance of a customer-service group?
A. The average time per customer inquiry should be kept to a minimum.
B. Customer complaints should be processed promptly.
C. Employees should maintain a positive attitude when dealing with customers.
D. All customer inquiries should be answered within seven days of receipt.
Answer: D

6.An internal auditor has been asked to conduct an investigation involving allegations of independent contractor fraud.
Which of the following controls would be least effective in detecting any potential fraudulent activity?
A. Exception report identifying payment anomalies.
B. Documented policy and procedures.
C. Periodic account reconciliation of contractor charges.
D. Monthly management review of all contractor activity.
Answer: B

