CIA Unit 5 Part 3

Ace your homework & exams now with Quizwiz!

Which of the following would increase understanding of a complex and ambiguous situation confronted by an organization? Brainstorming. Polling. Lateral thinking.

1 and 3 only.

Which of the following is the elementary unit of data storage used to represent individual attributes of an entity?

Data field.

Which of the following are objectives for performing tests during system development? 1. System responds correctly to all kinds of inputs 2. System achieves the general result its stakeholders desire 3. System meets the requirements that guided its design and development 4. System performs its functions within an acceptable time

1,2,3,&4

Effective internal control for application development should provide for which of the following? 1 A project steering committee to initiate and oversee the system 2 A technical systems programmer to evaluate systems software 3 Feasibility studies to evaluate existing systems 4 The establishment of standards for systems design and programming

1,3, & 4

Vested, Inc., made some changes in operations and provided the following information: Year 2 Year 3 Operating revenues US $ 900,000 US $1,100,000 Operating expenses 650,000 700,000 Operating assets 1,200,000 2,000,000 What percentage represents the return on investment for Year 3?

25%

Query facilities for a database system would most likely include all of the following except

A data validity checker.

According to the Level 5 leadership model developed by Jim Collins and his associates, a leader at Level 5 is best described as

A leader without personal ambition who deflects credit.

Leaders may use influence tactics to achieve their goals. Influence most likely

Affects the attitudes of others.

Which of the following risks is more likely to be encountered in an end-user computing (EUC) environment as compared with a centralized environment?

Applications that are difficult to integrate with other information systems.

Two phases of systems planning are project definition and project initiation. All of the following are steps in the project initiation phase except

Assembling the project team. Informing managers and employees of the project. **Preparing the project proposal.** Training selected personnel.

A manager that manages "by the book" exhibits which form of leadership style?

Bureaucratic.

Information systems (IS) strategy is determined by

Business Needs

What is the correct ascending hierarchy of data in a system?

Character, field, record, file.

Which of the following is a primary function of a database management system (DBMS)?

Capability to create and modify the database.

An employee's self-actualization need would be met by

Challenging new job assignments.

After using the report writer for several months, the marketing analysts gained confidence in using it, but the marketing department manager became concerned. Whenever analysts revised reports they had written earlier, the coding errors kept reappearing in their command sequences. The manager was sure that all the analysts knew what the errors were and how to avoid them. The most likely cause of the reappearance of the same coding errors is inadequate

Change Control

During a post implementation review of an accounting information system (AIS), a CPA learned that an AIS with few customized features had been budgeted and scheduled to be installed over 9 months for US $3 million (including hardware, software, and consulting fees). An in-house programmer was assigned as the project manager and had difficulty keeping the project on schedule. The implementation took 18 months, and actual costs were 30% over budget. Many features were added to the system on an ad-hoc basis, with the project manager's authorization. The end-users are very satisfied with the new system. The steering committee, however, is dissatisfied about the scope creep and would like a recommendation to consider before approving initiation of another large project. Based on those findings, the CPA should recommend implementing a

Change Control System

Management of a company has a lack of segregation of duties within the application environment, with programmers having access to development and production. The programmers have the ability to implement application code changes into production without monitoring or a quality assurance function. This is considered a deficiency in which of the following areas?

Change control.

Which source of power is based on the fear or threat of punishment

Coercive Power

At what phase in the systems development process is a report generated that describes the content, processing flows, resource requirements, and procedures of a preliminary system design?

Conceptual systems design.

Ordinarily, the analysis tool for the systems analyst and steering committee to use in selecting the best system alternative is

Cost-benefit analysis.

An electronics company has decided to implement a new system through the use of rapid application development techniques. Which of the following would be included in the development of the new system?

Creating the system module by module until completed.

To trace data through several application programs, an auditor needs to know what programs use the data, which files contain the data, and which printed reports display the data. If data exist only in a database system, the auditor could probably find all of this information in a

Data Dictionary

Which of the following is the elementary unit of data storage used to represent individual attributes of an entity?

Data Field

An overall description of a database, including the names of data elements, their characteristics, and their relationship to each other, is defined by using a

Data definition Language

What language interface would a database administrator use to establish the structure of database tables?

Data definition language

A benefit of using computer-aided software engineering (CASE) technology is that it can ensure that

Data integrity rules are applied consistently.

The primary purpose of a database system is to have a single storage location for each

Data item.

Of the following, the greatest advantage of a database (server) architecture is

Data redundancy can be reduced.

Which of the following is a benefit of decentralization?

Decisions are made on a more timely basis.

The function of a data dictionary is to

Describe and share information about objects and resources

What should a company do when seeking competitive advantages in planning for the implementation of a new software system?

Design an optimal process and then align the software.

An information system (IS) project manager is currently in the process of adding a systems analyst to the IS staff. The new systems analyst will be involved with testing the new computerized system. At which stage of the systems development life cycle will the analyst be primarily used?

Development

Which of the following conversion strategies is characterized by a manager removing the old system and installing the new system without the possibility of reverting to the original?

Direct changeover

Which of the following conversion strategies is characterized by a manager removing the old system and installing the new system without the possibility of reverting to the original?

Direct changeover.

Which method of expanding into international markets is most likely the riskiest?

Direct investment.

The accountant who prepared a spreadsheet model for workload forecasting left the company, and the accountant's successor was unable to understand how to use the spreadsheet. The best control for preventing such situations from occurring is to ensure that

Documentation standards exist and are followed.

The marketing department's proposal was finally accepted, and the marketing employees attended a class in using the report writer. Soon, the marketing analysts found that it was easier to download the data and manipulate it on their own desktop computers in spreadsheets than to perform all the data manipulation on the server. One analyst became highly skilled at downloading and wrote downloading command sequences for the other employees. When the analyst left the company for a better job, the department had problems making modifications to these command sequences. The department's problems are most likely due to inadequate

Documentation.

Organizational development (OD) is a structured process for assisting adaptation to environmental change. An objective of OD is to

Encourage a problem-solving approach.

Approved change requests are most likely to result from which project management process group?

Executing

In an inventory system on a database management system (DBMS), one stored record contains part number, part name, part color, and part weight. These individual items are called

Fields

Which of the following statements is not indicative of governance, risk, and compliance (GRC) systems?

GRC systems are not tasked with identifying the source of risks

Governance, risk, and compliance (GRC) systems are representative of all of the following statements except

GRC systems concentrate on an individual function within an organization.

Minimizing the likelihood of unauthorized editing of production programs, job control language, and operating system software can best be accomplished by

Good change control procedures

Gray-box testing involves

Having knowledge of internal data structures and algorithms for purposes of designing tests.

An IT manager has only enough resources to install either a new payroll system or a new data security system, but not both. Which of the following actions is most appropriate?

Having the information systems steering committee set the priority.

Which of the following elements of an organization requires people to be accountable to superiors?

Hierarchy of authority

Effective internal control for application development should provide for which of the following? A project steering committee to initiate and oversee the system A technical systems programmer to evaluate systems software Feasibility studies to evaluate existing systems The establishment of standards for systems design and programming

I, III, and IV only.

Which of the following is a correct statement regarding combinatorial test design?

Identifies the number of tests needed to get the coverage developers want.

Errors are most costly to correct during

Implementation

In which of the following phases of computer system development would training occur?

Implementation Phase

Which of the following should be reviewed before designing any system elements in a top-down approach to new systems development?

Information needs of managers for planning and control

CASE (computer-aided software engineering) is the use of the computer to aid in the development of computer-based information systems. Which of the following could not be automatically generated with CASE tools and techniques?

Information requirements determination.

Auditors making database queries often need to combine several tables to get the information they want. One approach to combining tables is known as

Joining

Each of the following will affect a company's return on investment, except

Maintaining the company's cost of capital at current levels.

Traditional information systems development procedures that ensure proper consideration of controls may not be followed by users developing end-user computing (EUC) applications. Which of the following is a prevalent risk in the development of EUC applications?

Management may place the same degree of reliance on reports produced by EUC applications as it does on reports produced under traditional systems development procedures.

After reviewing the end-user computing (EUC) policy of an organization, an internal auditor audits the actuarial function and notices that some minimum control requirements are missing. Which of the following is a risk of using potentially incorrect end-user developed files?

Management places the same degree of reliance on the files as they do on files generated from mainframe systems.

A claimed advantage of decentralizing is

Manager Development

Strategic management is a five-step process. In what order should the five steps be accomplished?

Mission and goals, SWOT analysis, strategy, implementation, controls and feedback.

When an organization depends to a great extent on its environment, which of the following statements best characterizes the relationship among an organization's environment, the level of uncertainty it faces, and its structure? The more dynamic and complex the environment, the

More uncertainty the organization will face and the more organic the structure should be.

ABC, Inc., assessed overall risks of IT systems projects on two standard criteria: technology used and design structure. The following systems projects have been assessed on these risk criteria. Which of the following projects holds the highest risk to ABC?

New Technology Sketchy Structure

Most large-scale computer systems maintain at least three program libraries: production library (for running programs); source code library (maintains original source coding); and test library (for programs which are being changed). Which of the following statements is correct regarding the implementation of sound controls over computer program libraries?

Only the program librarian should be allowed to make changes to the production library.

The least risky strategy for converting from a manual to a computerized accounts receivable system would be a

Parallel conversion.

Responsibility for the control of end-user computing (EUC) exists at the organizational, departmental, and individual user level. Which of the following should be a direct responsibility of the individual users?

Physical security of equipment.

Workwell Company operates in several regions, with each region performing its data processing in a regional data center. The corporate management information systems (MIS) staff has developed a database management system to handle customer service and billing. The director of MIS recommended that the new system be implemented in the Southwestern Region to ascertain if the system operates in a satisfactory manner. This type of conversion is called a

Pilot conversion.

The form of departmentation that most readily lends itself to use of profit centers is

Product

To be more responsive to its customers, a bank wants a system that will permit account representatives to consolidate information about all the accounts belonging to individual customers. Bank management is willing to experiment with different approaches because the requirements are evolving rapidly. The best development approach for this system is

Prototyping

An inventory clerk, using a computer terminal, views the following on screen: part number, part description, quantity on hand, quantity on order, order quantity, and reorder point for a particular inventory item. Collectively, these data make up a

Record

An inventory clerk, using a computer terminal, views the following on screen: part number, part description, quantity on hand, quantity on order, order quantity, and reorder point for a particular inventory item. Collectively, these data make up a

Record.

An important function of a database administrator is

Redefining and restructuring the database.

A database has three record types: (1) for suppliers, a type that contains a unique supplier number, a supplier name, and a supplier address; (2) for parts, a type that contains a unique part number, a part name, a description, and a location; and (3) for purchases, a type that contains a unique supplier number referencing the supplier number in the supplier record, a part number referencing the part number in the part record, and a quantity. This database has a

Relational structure.

All of the following are characteristics associated with direct cutover conversion except: Time-saving Safe Inexpensive Risky

Safe

An internal auditor encounters a batch-processed payroll in which each record contains the same type of data elements, in the same order, with each data element needing the same number of storage spaces. Which file structure most appropriately supports this set of records?

Single flat file structure.

The most appropriate data-gathering techniques for a system survey include interviews, quick questionnaires, observations, and

Systems documentation.

An insurance firm that follows the systems development life cycle concept for all major information system projects is preparing to start a feasibility study for a proposed underwriting system. Some of the primary factors the feasibility study should include are

Technology and related costs.

Which of the following database models is considered to be the most versatile?

The relational model

Which of the following database models is considered to be the most versatile?

The relational model.

A file-oriented approach to data storage requires a primary record key for each file. Which of the following is a primary record key?

The vendor number in an accounts payable master file.

All of the following are true statements about mission and vision statements except

The vision statement defines in a few sentences the organization's main purpose. **An IS strategic plan incorporates the organization's vision and mission to ensure the strategy employed matches the needs of a single department.** The goals outlined in the mission statement should provide guidance for the IT infrastructure to create a detailed strategic plan. The mission statement expands on the vision statement by communicating organization's goals.

A major disadvantage of the life cycle approach to system development is that it is not well-suited for projects that are

Unstructured

Which of the following is the final step before placing the system in live operation?

User acceptance testing.

All of the following are strategies for converting to a new system except

White-box Testing

Based only on the database file excerpt presented below, which one of the fields or combinations of fields is eligible for use as a key?

column III alone

One of the principal objectives of a database system is to

improve data consistency by reducing data redundancy.

Enabling users to have different views of the same data is a function of

the database management system.


Related study sets

Computer Session Java Programming

View Set

ACCT 450 - Chapter 14 Partnerships: Formation and Operation

View Set

ITExams - CompTIA A+ Core 1 Practice Test

View Set

PN PASSPOINT: THE NURSING PROCESS

View Set

A. Life Insurance Policy Riders -Guaranteed Insurability Rider (GIR)-

View Set

Ch. 7 Moral Development, Values, and Religion

View Set