Which of the following best describes the type of risk that an adequately designed and effectively operating system of internal controls should mitigate?
Which of the following best describes the type of risk that an adequately designed and effectively operating system of internal controls should mitigate?
A . Net.
B . Controllable.
C . inherent,
D . Residual.
Answer: C
Explanation:
The type of risk that an adequately designed and effectively operating system of internal controls should mitigate is "Residual" risk. Residual risk is what remains after internal controls are applied to inherent risk. This is the primary focus of most internal control systems, which are intended to reduce risks to an acceptable level.
Reference: Risk management frameworks and internal control literature, such as COSO and the Institute of Internal Auditors (IIA) guidance.
Latest IIA-CIA-Part1 Dumps Valid Version with 566 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund