An enterprise operating an integrated computerized accounting system discovered that posted financial ledger figures were altered directly within the database master files, completely bypassing the application interface and leaving no automated audit log entry. Which component breakdown of the computerized accounting system directly permitted this internal control breach?
- Procedures and peopleware, because internal control rules failed to enforce proper access privileges and segregation of duties between database management and user accounting roles.Answer
- BHardware, because peripheral input devices failed to validate the physical data signals transmitted to the central processing unit.
- CSystem software, because operating systems are inherently incapable of recognizing double-entry accounting concepts and conventions.
- DApplication software, because computerized accounting packages automatically eliminate management override and fraudulent database entries without human intervention.
Answer
The correct option is the one stating that procedures and peopleware failed, because internal control rules failed to enforce proper access privileges and segregation of duties between database management and user accounting roles.
In a computerized accounting system, procedures define internal control policies, authorization levels, and operational rules, while peopleware encompasses the human roles (such as database administrators and accountants). When database records are modified directly outside the application interface, it demonstrates a structural failure in procedures (lack of access protocols) and peopleware (failure to segregate database management duties from accounting entry functions).
Step-by-Step Solution
Key Concept
Interdependence and security functions of computerized accounting system components, specifically Procedures and Peopleware.