Which of the following are the Committee of Sponsoring Organisations (COSO) key principles of enterprise risk management?
Select ALL that apply.
Return on capital employed (ROCE) can be a useful measure of divisional performance. For which of the following types of company is ROCE likely to be most appropriate?
You have been assigned the role of lead internal auditor. Your task is to carry out the annual assessment of the production line maintenance department.
When planning for this audit, which of the following must be completed?
An oil company has entered into a joint venture with a competing oil company to develop a new oil field. The joint venture arrangement is intended to mitigate the risks associated with developing the oil field.
The following disclosure appears in the oil company's risk report:
"Many of our large projects and operations are conducted through joint ventures. These arrangements involve complex risk allocation and indemnification arrangements and we have less control over these activities than we would have if we had full ownership and control. Our partners may have economic or business interests that are opposed to ours, and may exercise the right to block key decisions or actions. We believe the joint arrangement is in our best interest."
Which of the following statements are correct?
A has an opportunity to invest $90,000 in a project that is expected to generate annual cash inflows of $60,000 for each of the next three years. The project's beta coefficient implies a discount rate of 12% for this project, based on a risk-free rate of return of 3%.
A is prepared to forego the expected cash flows from this project in return for a guaranteed payment of $50,000 at the end of year 1, $42,000 at the end of year 2 and $30,000 at the end of year 3.
What is the certainty equivalent value of this opportunity to A?
The management of U is reviewing internal controls throughout the company. It has noted the following:-
1. In the trade receivables section, journal adjustments are made by the clerks, without any reference to their supervisor. Journal adjustments may relate to sales returns, discounts allowed, or transfers between accounts.
2. In the purchasing department, the purchasing manager selects and approves all suppliers, as they are the only person with sufficient experience to do so. They use a very limited number of suppliers because they can rely on these suppliers to provide goods of the quality required at a competitive price. They do not keep any documents in relation to negotiations with other potential suppliers or other quotes obtained.
In relation to the above, which of the following statements are valid?
The safety guard on a piece of equipment was broken. The factory manager suspended an operator who refused to operate the equipment until it was repaired. The factory manager paid another operator a bonus for operating the damaged equipment until the safety guard could be repaired.
What does this incident say about the control environment within that factory?
B is a quoted construction company. Its Board consists of qualified and experienced engineers Which TWO of the following statements are correct?
WTW is a global company which produces high-tech equipment such as smart televisions and mobile phones The CFO has just resigned, having been offered a post at a competitor The CFO was well regarded and WTWs share price has fallen in response to the announcement
At a board meeting the production director commented that the share price fall is the fault of the nomination committee
Which THREE of the following statements are correct?
HJK is a retailer, with more than 40 shops around the country. The directors suspect that a serious fraud has occurred at one of the branches and a team of internal auditors has been sent to investigate.
An analytical review investigation shows that sales revenue is in line with budget, but overtime payments to shop staff exceed budget by 20%.
How should the internal audit team proceed?
You have just been employed as a management accountant in a small business with an annual turnover of $0.5 million.
You have a wide range of duties because the business is small.
Which of the following is an ethical risk?
TTO is seeking to recruit a new non-executive director TTO produces high quality women's clothing, which it sells to retailers Some clothing is sold under the retailer's own brand names, some is made on behalf of recognised clothing designers TTO is a well regarded company and its products are of a very high quality.
Several applications have been received, and the Board is seeking to make a shortlist by eliminating unsuitable candidates
Which THREE of the following would make a candidate unsuitable for appointment to the post?
The Head of IT Security has been asked to conduct a detailed forensic analysis of a suspected data breach that ted to customer credit card details being intercepted.
Which TWO of the following would be suitable objectives for such a forensic analysis?
H is a departmental manager in a private college. The main measure of performance used to assess the Department Manager's effectiveness is meeting the college budgets. The budget for each year is based on the actual expenditure of the previous year adjusted for specific one-off items.
Which of the following would arise from using the meeting of this type of budget as a performance measurement?
Which method of quantifying risk exposure can be used to calculate the maximum loss on a portfolio occurring within a period of time with a given probability?
SDF is a quoted company that has a large internal audit department.
Which of the following would impair the independence of SDF's internal audit?
Identify, from the list provided, which category of business risk most accurately describes the events detailed below.
CDE an online ticket sales agent, has unwittingly become an accomplice in cyber crime and is suffering attacks on its own business as a result CDE's website was poorly designed and cyber-attackers have managed to inject the site with malware, so that it collects all of CDE's customer log-in information and enables the cyber-attackers to retrieve it.
The cyber-attackers subsequently use this information to set up Botnet agents in the customers' devices which are then used in a Distributed Denial of Service (DDoS) attack whenever very popular tickets are being placed on sale such as international football matches.
The cyber-attackers secure access to a single portal on the site and buy multiple tickets for subsequent sale on the black market while the DDoS causes all other portals to be overloaded preventing real fans acquiring the tickets at face value.
Which TWO of the following apply in this scenario?
SQH manufactures mobile phones SQH's Board is currently undertaking a long-term planning exercise as part of the process of strategy development The Board is considering expanding the number of countries it currently exports products to.
Which THREE of the following could cause difficulty in forecasting accurately'?
A UK manufacturing company has simultaneously:
• purchased a put option to sell USD 1million at an exercise price of GBP1.00 = USD1.65
• sold a call option that grants the option holder the right to buy USD 1million at a price of GBP1.00 = USD1.61 (this option has the same maturity date as the put).
Which of the following is a valid explanation for entering into these option positions?
A government department is conducting a value for money audit on a school.
The school's pupils sit leaving exams. Classify each of the audit tests as either economy and efficiency or effectiveness.
The managers of a company are agents for the shareholders tasked with increasing shareholders' wealth. Which of the following will usually increase shareholders' wealth?
X Company M has lost 25% of its revenue in the last three months due to bad debts. One of the receivables written off was from a long standing customer and the other three were from new customers. The management accountant has warned the sales team that the company cannot survive any more substantial bad debts.
Which of the following internal controls should be put in place to try and prevent further bad debts?
VBN uses a balanced scorecard to monitor the performance of its divisions.
Classify each of the following decisions taken by a division's management team as either commercially sound or dysfunctional.
YHJ is considering an investment in a project that will cost $20 million. Annual fixed costs will be $12 million per year, excluding depreciation. Annual sales are forecast at 5 million units, with a contribution per unit of $8. After five years the equipment will be worn out and YHJ will have to spend $50 million on disposal costs. The discount rate is 10%.
Calculate the sensitivity of the net present value of this project to a 20% increase in the disposal costs.
B is a family run security company with a number of prestigious clients who rely on it to maintain online access to their CCTV and alarm systems and respond to any detected intrusions or malfunctions.
It designs and installs security systems for a number of UHNW (Ultra High Net Worth) individuals who may have several seasonal and city residences largely unoccupied for many months of the year.
B's reputation as 100% secure is crucial to its on-going success in this very specialised marketplace.
Select THREE factors which should be given prominence in B's fraud risk management strategy.
Zia is an accountant and wishes to take out a Forward Rate Agreement (FRA) as a hedging instrument. The company treasurer has advised that a short-term interest rate (STIR) future would be better.
Which of the following is true of an STIR?
ABC is an online retail chain which operates on a 24/7 basis It has been updating its Cyber Security processes and has implemented a centralised monitoring process to track activity through its web access portal
Which of the following activities will increase the awareness of its cyber security risk most effectively?
SDF has a variable rate loan of $100 million on which it is paying interest of LIBOR + 2%.
SDF entered into a swap with CV bank to convert this to a fixed rate 7% loan. CV bank charges an annual commission of 0.3% for making this arrangement.
Calculate the net payment from SDF to CV bank at the end of the first year if LIBOR was 3% throughout the year.
Give your answer in $ million, to one decimal place.
G plc has decided to move its production plant to overseas Country A. This would make the product cheaper to produce. The technology used to make the product is very advanced and some of the staff would have to move to Country A.
The Production Director has identified that there are some political risks in moving to Country A.
Match the methods of reducing the political risks associated with the move to Country A with the corresponding risks.
ABC has recently appointed a Chief Information Officer who has announced that he wants to start a major clean up starting with all desktop and laptop equipment.
Which THREE of the following measures should be adopted to help enhance security'?
HBN is a service company that offers cloud-based data storage and management on behalf of clients HBN pays an independent accountancy firm to review its cybersecurity arrangements, conduct penetration tests and report to HBN's Board on the results
Which TWO of the following are correct?
An electricity company owns and operates a nuclear power station located ten miles from a large city. A recent and very extensive engineering examination of the power station concludes with the estimate that the probability of a major nuclear disaster within the next 20 years is 0.2%.
Which of the following best explains the relevance of quantifying the risk in that way?
JKL makes large export sales to customers in country X, whose currency fluctuates significantly against JKL's home currency JKL also makes large purchases from suppliers in countrrOC All of these transactions are in country X's currency
JKL's treasurer does not actively hedge currency risks because there is a natural hedge in place due to the company making both sales and purchases in the same currency
JKL's board has instructed the treasurer to put active hedging measures in place because the risk report would otherwise have to disclose the fact that JKL has a currency risk which is not actively hedged
Which of the following statements are correct? Select ALL that apply.
The management of U is reviewing internal controls throughout the company. It has noted the following:-
1. In the trade receivables section, journal adjustments are made by the clerks, without any reference to their supervisor. Journal adjustments may relate to sales returns, discounts allowed, or transfers between accounts.
2. In the purchasing department, the purchasing manager selects and approves all suppliers, as they are the only person with sufficient experience to do so. They use a very limited number of suppliers because they can rely on these suppliers to provide goods of the quality required at a competitive price. They do not keep any documents in relation to negotiations with other potential suppliers or other quotes obtained.
In relation to the above, which of the following statements are valid?
In terms of Cyber Security, which THREE of the following represent Personally Identifiable Information (Pll)?
They key objective of maximizing shareholders wealth would indicates that a capital investment project with a large positive BPV should be accepted.
Which THREE of the following statements are correct?
S Doc is an out-of-hours service provided by a country's government. The service allows members of the public to call and speak to a nurse who can advise on medical situations which are not obviously emergencies. Depending on the situation the caller can be referred to the full emergency services, or be advised to go to Accident and Emergency at the nearest hospital. Alternatively, a callout from a general practitioner (GP) can be organised; the caller can be advised of where GP services are available; advice can be given over the phone; or a decision can be taken that no further action is required at least until normal services resume on the next working day.
There has been a suggestion that the nurses who take these calls could be replaced by suitably trained operatives who have available to them a specially designed expert system.
Which of the following are advantages of using an expert system instead of nurses?
A Firewall is an element of a company's Information Technology infrastructure.
Which THREE of the following are characteristics of a Firewall?
N, a large company in the food production industry, has grown over the years by the acquisition of several smaller rivals. The company has ten branches located in its home country and has just opened a foreign branch for the first time. It has recently made some changes to the structure and implementation of its control system.
Which TWO of these would be most likely to improve the overall control system?
The shares of a company have a beta factor of 1.15. Therefore, which of the following must be true?
T has its computer facilities in a building adjacent to its headquarters Severe structural problems have been discovered with this building and T has been advised that the only option is demolition and rebuild This leaves T with strategic decisions to make about its IT provision and it has decided to investigate the outsourcing of its services.
Which TWO of the following factors should T consider as most important at this stage?
Division A of X plc produced the following results in the last financial year.
Net profit $200,000 Gross capital employed $1,000,000
For evaluation purposes all divisional assets are valued at original cost.
The division is considering a project that has a positive NPV, will increase annual net profit by $15,000, but will require average inventory levels to increase by $50,000 and non-current assets to increase by $50,000.
X plc imposes a 16% capital charge on its divisions. Given these circumstances, will the evaluation criteria of return on investment (ROI) and residual income (RI) motivate division A managers to accept the project?
M plc is an IT company that bids for large contracts to sell computer systems and also to service existing systems. M plc's senior management has always set budgets which are hard to achieve and have made no allowances for the recession.
The economy has improved and M plc's senior managers have made the budget even more optimistic. The budgeted sales target has been increased by 40%.
In the past, sales staff have not tried to achieve the budget sales because it was generally believed that the targets were impossible to reach.
M plc has recently appointed a new Sales Director who has decided that sales staff will be dismissed if they fail to meet sales targets for three successive months. He is also looking for higher sales margins than were achieved before.
What are the likely consequences of the new Sales Director's policy?
C Ltd is a private, family-owned company which is hoping to become listed on a recognised Stock Exchange within the next two years. At the moment, the Board of Directors comprises five directors; four of whom are from the founding family and all of whom are involved in the day-to-day running of the business. The remaining director obtained a seat on the Board three years ago as a condition of an investment by a venture capital fund.
The Board meets in half-day sessions once a fortnight and the Board meetings are reasonably well run. All decisions are taken by the Board as a whole. There are no sub-committees.
Which of the following steps would it be appropriate for C Ltd to take in the light of the proposed listing?
R is a manufacturer of biscuits. The market for biscuits is extremely competitive with many companies competing for contracts with large supermarkets. The intensity of the competition means that prices are kept low; and the buyers can demand higher levels of quality, and greater flexibility in supply arrangements.
Which of the following represent ways that the use of an Information System could help R to win and retain supermarket contracts in such a competitive market?
BCD has set up a number of functions within its security operations centre (SOC) One of these is a Hunt team. Which of the following is the primary function of a Hunt team?
Division A of X plc produced the following results in the last financial year.
Net profit $200,000 Gross capital employed $1,000,000
For evaluation purposes all divisional assets are valued at original cost.
The division is considering a project that has a positive NPV, will increase annual net profit by $15,000, but will require average inventory levels to increase by $50,000 and non-current assets to increase by $50,000.
X plc imposes a 16% capital charge on its divisions. Given these circumstances, will the evaluation criteria of return on investment (ROI) and residual income (RI) motivate division A managers to accept the project?
Amber selects appropriate suppliers and places purchase orders.
Brian passes invoices for payment and submits payment instructions to the bank.
Chris checks incoming inventory and unpacks goods from their containers.
Dirwan posts purchase invoices and files invoices and supporting documents.
Which member of staff could most easily commit fraud?
R plc is considering an investment of $1,100,000 in a new machine which is expected to have substantial cash inflows over the next five years.
The annual cash flows from this investment and their probability are shown below:
Annual cash flow ($) Probability
200,000 0.4
280,000 0.5
350,000 0.1
At the end of its five-year life, the asset is expected to sell for $100,000. The cost of capital is 5%.
What is the Expected Net Present Value?
Give your answer to the nearest whole $.
A project has a net present value of $2 million.
Total cash outflows of this project have a present value of $14 million, which includes staff costs of $10 million.
What is the project's sensitivity to staff costs?
J plc is a wholesale building supply business. It has a large warehouse where some of its materials are stored. Last month three accidents occurred where employees were slightly injured whilst moving items from the 5th shelf. The 5th shelf is located 15 metres up from the ground.
This is a health and safety risk and could also be a reputation risk in the longer term.
Which of the following risk mitigations should the company employ?
AB is a manufacturing company which relies heavily on its computerised systems for customer management
Which of the following is the most important factor which will enable AB to continue to operate after an incident which destroys its central computer*?
Which of the following scenarios might be relevant stress tests for a potential lender to conduct? Which TWO of the following answers are correct?
When a new computer system is being implemented there are several possible methods for managing the changeover from the old system to the new system.
Which THREE of the following are true?
Company A's gross profit percentage has fallen from 70% to 61 % Which of the following possible explanations would most concern the internal auditors?
V buys vegetables and fruit from three farms located in a different part of V's country and sells them to large supermarket chains.
A recent newspaper magazine had an article on these farms showing that the farms employ illegal immigrants whose status was used by the factory's owners to force them to work for low wages and in unpleasant conditions. They are forced to live in small overcrowded caravans with no running water. They are also given meals which are cold and poor quality. These farms are located in a developed country with strong labour laws.
Classify each of the following statements as true or false.
M is a multinational IT company with headquarters in Asia and with operations in all continents.
It is now trying to expand its operations in Europe. This is seen as a major challenge as the European market is very well developed with established players in fierce competition against each other.
As well as developing and producing its own products, it sources products across Asia, America and Europe as part of infrastructure deals which have to include as much of its own equipment as possible. In doing this, transfer prices can be set in YEN, USD, EURO, GBP. Transfer prices are revised every month in line with production times as most goods are made on short order times with sales cycles running at 3-4 months.
The longer sales cycle against committed transfer pricing presents problems as customers expect quotes to be valid for 90 days whereas M's suppliers reserve the right to revise pricing at the end of every month with quotes only valid for 8 days in the following month.
How should M deal with this problem?
Physical access controls can greatly enhance the security of company assets.
Select THREE methods by which physical access security can be significantly enhanced.
D has decided to invest in a new factory at a cost of $6,000,000. The discount rate of the project is 22% and the PV of tax shield is $80,000.
What is the IRR?
Give your answer to two decimal places.
M, a manufacturing company, has had some problems with defects in one of the main products it produces. This product has been made by the company for many years and is very profitable. Last month it had over 300 defects reported by customers which is more than 15% of products sold. This is a reputation risk for M and is also affecting profitability.
Which of the following controls could M introduce to reduce defects and also increase profitability?
K is a large mining company. In its risk report it states that there is a risk of accidents and injury because of the nature of the industry. It states that it has staff training in place and complies with all Health and Safety regulations but in spite of this there will still be a residual risk that accidents and injuries may occur.
Which of the following statements are correct?
CH makes a popular type of chocolate bar The bars are made on a production line and are scanned for size and shape as they move along the line Wrong sized and misshapen bars are rejected as being poor quality. The scanner detects 90% of poor quality bars. If CH wants to reduce the risk of poor quality bars being sold to the public it can add a further check by a person scanning the production line as well. this check would detect 80% of poor quality bars
If the further check was implemented what percentage of poor quality bars would still get through the checking process?
You are the management accountant for YY a food manufacturing company with an annual sales revenue of $6 million
You discover that the production manager's records are inconsistent Raw materials purchased do not agree with the total recorded for transfers to production plus wastage There is an average shortfall of 2% of purchases
You have investigated and discovered that there are often errors made during manufacturing that results in food that is safe to eat but. because of visual flaws, cannot be sold
The production manager is supposed to scrap all such damaged products and write all such losses off as waste You have discovered however that he has been giving the damaged food to a charity that assists homeless people No records are made of such gifts in order to conceal the losses due to manufacturing errors
Which of the following actions should you take? Select ALL that apply
YGH has recently completed a post completion audit on a five year contract that has only recently come to a conclusion. The main finding was that the project delivered most of the expected benefits, but that it cost significantly more to implement than had been anticipated at the project appraisal stage. YGH would not have proceeded if the true cost had been known at that stage.
The project was the responsibility of the production department, which is presently managed by G.
When the project was proposed, the production department was managed by H. H is now YGH's Director of Operations.
How should the finding from this post completion audit be interpreted?
The managers of a company are agents for the shareholders tasked with increasing shareholders' wealth. Which of the following will usually increase shareholders' wealth?
B is a horticultural retailer with limited funds available to acquire new retail property.
B's Finance Manager has analysed two potential property investments. Investing in property P shows an IRR of 21% while the IRR on property Q is 17%.
The Finance Manager has also advised that the NPV for property P is $750K, while the NPV of property Q is $850K.
The Board needs to choose between the two properties as it has insufficient funds for both. Based purely on the Finance Manager's analysis, which of the following is true?
SC is a professional football club which is currently listed on a recognised stock exchange. There is a proposal that it builds a new stadium at a location a considerable distance from its current stadium.
There is strong support within the club for the move as the current ground is now over 40 years old and has not been extensively modernised in that time.
However, there is a lot of opposition to the move in the area where it is proposed to locate the new stadium. Objectors claim that the new stadium will increase traffic and pollution in the area and will adversely affect the value of their properties.
Which of the following statements about the responsibility of the board of SC is correct?
QAW is a quoted building company QAW has detailed rules relating to the wording of its contracts and the need to seek Board approval for any changes to the standard wording
The Convener of the Audit Committee has just received a copy of an internal audit report relating to the QAW Land Reclamation subsidiary The subsidiary has signed several construction contracts over the past two years that have made significant changes to the standard wording, with no attempt to seek approval from QAW's Board
The internal audit report quotes the manager in charge of QAW Land Reclamation as refusing to accept that there is a compliance error at the subsidiary The manager stated that the nature of the business done by QAW Land Reclamation would make it inappropriate to use the standard contract terms and that it would be impractical to seek permission for every one of the many changes that are necessary
Which of the following would be an appropriate response to this item by QAW's Board?
A company has a sound system of internal controls that have been reviewed by the internal audit department.
Which TWO of the following correctly identify reasons why the company's control system might fail to prevent or detect an irregularity?
Internal controls are designed to provide reasonable assurance of which of the following?
VBN's home currency is the V$. On 1 January, VBN must make a payment of C$2 million on 31 March of that same year.
On 1 January the spot exchange rate was V$1 = C$0.4.
On 1 January VBN paid $180,000 for a call option to buy C$2 million for V$5.5 million on 31 March. VBN's cost of borrowing was 8% per year.
On 31 March the spot rate was V$1 = C$0.45.
What was the total cost, including the cost of the option, of settling the payable?
GUJ A small but rapidly expanding company has recently opened several branches in locations far away from the Head Office. All of the branches are relatively small with no one branch accounting for more than 5% of turnover. Management has decided that the company is not yet large enough to install an Internal Audit function but is, nonetheless, concerned about maintaining adequate control and monitoring at the branches whilst allowing Branch Managers the opportunity to react to local circumstances as appropriate.
Which of the following measures would assist Head Office management in maintaining appropriate monitoring and control at the branches?
W plc is a large international supermarket chain. It has many thousands of suppliers and many thousands of others competing for "shelf space" in its supermarkets.
Which of the following would be appropriate provisions for W plc to include in its Ethical Code in relation to its suppliers?
Which THREE of the following are key elements of cyber security risk governance?
The shares of a company have a beta factor of 1.15. Therefore, which of the following must be true?
Which of the following best describes the conflict between maximising profit and maximising shareholder wealth?
TYU is a retailer selling televisions. The company is financed wholly by equity.
Why might TYU be exposed to interest rate risk?
Which THREE of the following are true with regard to managing the changeover from an old to a new computer system?
The senior manager in the accounts department is going on annual leave for three weeks and Jo, a supervisor is being put in charge of the department for that time.
Which TWO of the following statements are correct?
An electricity company owns and operates a nuclear power station located ten miles from a large city. A recent and very extensive engineering examination of the power station concludes with the estimate that the probability of a major nuclear disaster within the next 20 years is 0.2%.
Which of the following best explains the relevance of quantifying the risk in that way?
The board of OKN is considering an investment opportunity that will require the company to borrow a large amount in month 10 of the current financial year and to invest it immediately in property, plant and equipment. This investment has a positive net present value that justifies the risk, but the directors are reluctant to invest in the project.
Why might the directors be reluctant?
R plc is considering an investment of $1,100,000 in a new machine which is expected to have substantial cash inflows over the next five years.
The annual cash flows from this investment and their probability are shown below:
Annual cash flow ($) Probability
200,000 0.4
280,000 0.5
350,000 0.1
At the end of its five-year life, the asset is expected to sell for $100,000. The cost of capital is 5%.
What is the Expected Net Present Value?
Give your answer to the nearest whole $.
James owns a small company which sometimes suffers from credit risk.
Which of the following measures should he put in place to help reduce this risk?
H Ltd is a company providing postal and courier services to small businesses. Customers pay a monthly or annual subscription fee to use the service, plus a very small fee for each item delivered.
A year ago, H employed a new sales team. Their remuneration is dependent on the number of new customers they sign up. Sales increased dramatically in the first six months, but now difficulties are emerging such as new customers dropping their subscription once the initial period has expired; subscriber direct debits being returned unpaid; subscribers going out of business and other similar issues.
Which of the following would be appropriate to help resolve these problems?
JNH is a major corporation that stores its customer database in the Cloud JNH has suffered a data breach that has led to customer credit card details being made available for sale on the internet JNH's Head of Security wishes to analyse network traffic at the cloud-based server in order to gain a better understanding of the manner in which the data was intercepted, but has been refused access.
Which of the following is the most likely explanation for the third-party owner's refusal to assist JNH's Head of Security?
P sells mobile phones and accessories The directors of P are concerned that there is a high risk of fraud being carried out by employees in the retail stores. There is a high turnover of employees in the shops as the sales targets are difficult to meet
Which TWO of the following controls would reduce this risk?
HGY is a major global corporation that has decided to implement the COSO Enterprise Risk Management Framework and integrate management practices throughout the organisation
Which THREE of the following would be appropriate for HGY?