Valid IIA-CIA-Part1 Dumps shared by EduDump.com for Helping Passing IIA-CIA-Part1 Exam! EduDump.com now offer the newest IIA-CIA-Part1 exam dumps, the EduDump.com IIA-CIA-Part1 exam questions have been updated and answers have been corrected get the newest EduDump.com IIA-CIA-Part1 dumps with Test Engine here:
Which of the following is an indicator of ineffective third-party risk management?
Correct Answer: C
Effective third-party risk management involves conducting thorough due diligence before entering into a contract to ensure that the third party meets the organization's standards and requirements. Conducting due diligence only after contract signing is a significant red flag, as it indicates that the organization might be engaging with third parties without fully understanding the associated risks. This can lead to inadequate risk management and potential issues with compliance, performance, and security. References: The IIA's International Standards for the Professional Practice of Internal Auditing (Standards), specifically Standard 2210 - Engagement Objectives, and COSO's Enterprise Risk Management - Integrating with Strategy and Performance.