Operating system security involves policies, procedures, and controls that determine who can access the operating system. User access privileges are assigned to individuals and to entire workgroups authorized to use the system.The way access privileges are assigned influences system security. Priviliges should be carefully administered and closely monitored for compliance with organizational policy. Choose one of the options below, that is not a test of control of the audit objective relating to access privileges.  a. Review employee records to determine whether users have formally acknowledged their responsibility to maintain the confidentiality of company data. b. Review the privileges of a selection of user groups and individuals to determine if their access rights are appropriate for their job descriptions and positions. c. The auditor should verify that individuals are granted access to data and programs based on their need to know. d. Review the account lockout policy and procedures

Auditing: A Risk Based-Approach (MindTap Course List)
11th Edition
ISBN:9781337619455
Author:Karla M Johnstone, Audrey A. Gramling, Larry E. Rittenberg
Publisher:Karla M Johnstone, Audrey A. Gramling, Larry E. Rittenberg
Chapter3: Internal Control Over Financial Reporting: Responsibilities Of Management And The External Auditor
Section: Chapter Questions
Problem 23CYBK
icon
Related questions
Question
100%

Operating system security involves policies, procedures, and controls that determine who can access the operating system. User access privileges are assigned to individuals and to entire workgroups authorized to use the system.The way access privileges are assigned influences system security. Priviliges should be carefully administered and closely monitored for compliance with organizational policy. Choose one of the options below, that is not a test of control of the audit objective relating to access privileges. 

a. Review employee records to determine whether users have formally acknowledged their responsibility to maintain the confidentiality of company data.
b. Review the privileges of a selection of user groups and individuals to determine if their access rights are appropriate for their job descriptions and positions.
c. The auditor should verify that individuals are granted access to data and programs based on their need to know.
d. Review the account lockout policy and procedures

Explain your answer in 100 - 150 words. Why did you choose your answer and why not choose others 

Expert Solution
trending now

Trending now

This is a popular solution!

steps

Step by step

Solved in 2 steps

Blurred answer
Knowledge Booster
Audit Report
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, accounting and related others by exploring similar questions and additional content below.
Similar questions
Recommended textbooks for you
Auditing: A Risk Based-Approach (MindTap Course L…
Auditing: A Risk Based-Approach (MindTap Course L…
Accounting
ISBN:
9781337619455
Author:
Karla M Johnstone, Audrey A. Gramling, Larry E. Rittenberg
Publisher:
Cengage Learning
Accounting Information Systems
Accounting Information Systems
Accounting
ISBN:
9781337619202
Author:
Hall, James A.
Publisher:
Cengage Learning,
Pkg Acc Infor Systems MS VISIO CD
Pkg Acc Infor Systems MS VISIO CD
Finance
ISBN:
9781133935940
Author:
Ulric J. Gelinas
Publisher:
CENGAGE L
Auditing: A Risk Based-Approach to Conducting a Q…
Auditing: A Risk Based-Approach to Conducting a Q…
Accounting
ISBN:
9781305080577
Author:
Karla M Johnstone, Audrey A. Gramling, Larry E. Rittenberg
Publisher:
South-Western College Pub
Contemporary Auditing
Contemporary Auditing
Accounting
ISBN:
9781337650380
Author:
KNAPP
Publisher:
Cengage