SlideShare a Scribd company logo
CA. R Vittal Raj
1
This Webcast
On Current Syllabi
Also Discuss Shortcomings Found by
Examiners - Points to Take Care
New Syllabus – Study Material Would be Hosted in Sep, 13 (First Week)
Applicable from November, 2014 Exams
Details available on Institute Website -
http://220.227.161.86/30545bos20300.pdf
2
Relevance of the Paper in CA Final Course
Understanding layout of topics
Some key perspective to topics
General pattern of Exam Questions & Exam Preparation tips
Fundamentals you should know before you start
3
1
• Information Systems Concepts
2
• Systems Development Life Cycle Methodology
3
• Control Objectives
4
• Testing – General & Automated Controls
5
• Risk Assessment Methodologies and Applications
6
• Business Continuity Planning and Disaster Recovery Planning
7
• Overview of ERP: IS Auditing Standards, Guidelines and Best Practices
8
• IS Auditing Standards, Guidelines , Best Practices
9
• Drafting of IS Security Policy, Audit Policy, IS Audit Reporting - A Practical Perspective
10
• Information Technology (Amendment) Act, 2008
4
Before You Start!
5
Value of Information to Business
IT – not mere enabler but a business driver
Business risks arising from use of IT
Need for managing multi risks from IT
6
Role of IT in effectively achieving business as well as governance
objectives
Auditors’ Role in providing assurance
Audit Risk arising from ignorance/ inappropriate understanding of
impact of IT in planning, designing and performing audit procedures
7
Two Volumes
• Volume 1 – Study Material
• Volume 2 – Practice Manual
Topics – 10
Learning Objective
Sub topics
8
Not merely conceptual knowledge but applied knowledge
A final student is expected to have conceptual knowledge but also applied knowledge
& capability
Conceptual Knowledge – Volume 1 & Other sources
Applied Knowledge - Volume 2, other sources and
Practical exposure, field visits, ‘look beyond’
Pre-supposes knowledge of IT fundamental concepts (IPCC Material)
Jargons! Technical! Managerial/Control Concepts
9
From Exam Perspective
10
Key Topics:
• Definition of a System
• Types of System
• Systems Model & Environment
• Information
• Information Systems role in management
• Operational Support Systems - TPS, MIS, ERP,
• Management Support Systems – DSS, EIS, Expert Systems,
• Office Automation Systems
11
Overview of Learning Objective:
Expert understanding of information, systems, their elements, types and their
application in day to day business life
Key Topics:
• Systems Development Process
• Systems Development Methodologies
• Systems Development Life Cycle
• In Depth understanding of Phases
• Preliminary Study, Systems Requirements Analysis, Systems Design,
Systems Acquisition, Systems Development, Systems Testing,
Systems Implementation, Post Implementation Review and Systems
Maintenance, Documentation
• Auditors Role in SDLC
12
Overview of Learning Objective:
In depth understanding of concepts, and approaches in SDLC, Phases, tools,
Auditors Role in SDLC
Key Topics:
• IS Controls and their need
• Considerations arising from use of computers – Internal Control &
Audit perspective
• Overview of IS Audit Process, audit objectives vs. control objectives
• IS Control Techniques, types, roles and responsibilities
• End User Controls
• Controls in SDLC - Systems Development and Acquisition, Change
Management, Quality Assurance, Systems Implementation &
Maintenance
13
Overview of Learning Objective:
In depth understanding of Internal Controls , control objectives, controls &
techniques of control across various facets of systems protection, role of IS audit
Key Topics:
• Controls over Data Integrity, Privacy and Security
• Security concepts and techniques
• Data Security and Public Networks, Unauthorised
Intrusion, Hacking
• Logical Access Controls, Malware & related controls
• Physical & Environmental Controls
14
Key Topics:
• Testing – Concepts, need and types
• Audit Planning Considerations for testing
• Audit Testing – IS Controls identification, Prioritising, Performing tests
• General Controls vs. Application Controls
• Audit Testing techniques
• Testing of Technical Controls – Hardware, Systems Software, Network
• Concurrent or Continuous Audit and Embedded Audit Module
• Audit Reporting
15
Overview of Learning Objective:
Expert Knowledge of testing concepts, types, methods, audit planning
Key Topics:
• Indepth understanding of Risk Management Concepts
• Asset, Threats, Vulnerabilities, Severity and Likelihood,
Exposure, Countermeasures, Acceptable Risk, Residual
Risk
• Understanding of Threats in Computerised Environments
• Risk Assessment vs. Risk Management
• Risk Identification, Ranking, Mitigation and role of Controls
16
Overview of Learning Objective:
Working Knowledge on concepts and application of Risk Management,
components thereof and phases in Risk Management, Controls
Key Topics:
• Goals and objectives of BCP
• Steps to developing a BCP
• Types of Plans
• Emergency, Backup, Recovery
• Business Impact Analysis & Risk Assessment
• Backup Techniques
• Full, Incremental, Differential, Mirror
• Alternate Processing Arrangements
• Cold, Hot, Warm Site, Reciprocal Arrangement
• Disaster Recovery Procedures
• Insurance
• BCP Testing Objectives and Steps
• Audit of Disaster Recovery/Business Resumption Plan
17
Overview of Learning Objective:
In depth understanding of purpose and objectives of BCP/DRP, phases thereof
and role of audit
Key Topics:
• ERP Fundamentals
• Definition, Evolution, Features, Benefits
• Business Process Re-Engineering
• A Critical success factor for ERP,
• ERP Implementation
• Key considerations, Methodology, Phases
• Post Implementation Issues
• Risk Governance Issues in ERP
• ERP & E-Commerce
• Overview of some popular products and Case studies
18
Overview of Learning Objective:
Role of ERP in business, Goals & Benefits, Challenges and Risks, Phases in
Implementation, Importance of BPR
Key Topics:
• ICAI Standards – SA 315, SA 330
• ISO 27001 – Information Security Management Standard
• Capability Maturity Model (CMM)
• COBIT – IT Governance Framework
• CoCo Guidance – Criteria of Control Model (CICA)
• ITIL (IT Infrastructure Library)
• Systrust and Webtrust from AICPA
• HIPAA
• SA 402
19
Overview of Learning Objective:
Gain overview and relevance of global standards in IS Control, Security,
Audit and It Governance
Key Topics:
• Importance of Information Security to Enterprise
• Information Security Policy
• Purpose, scope, types, allocation of roles and responsibilities
• Asset Classification, Access Control, Physical Security, SDLC, BCP
• Audit Policy
• Purpose, Scope, Competence, Audit Framework, Testing Approach, Frequency,
Linkage to IT Governance Framework, Audit Communication
• Audit Working Papers and Documentation
• Planning Documentation, Gathering and Organising Information, Writing
Documentation
• IS Audit Reports
• Structure, Format, Distribution, Context, Objectives, Findings, Opinion,
Substantiation, Evidence
20
Overview of Learning Objective:
Expert knowledge in drafting of Information Systems Security Policy, Audit
Policy and Audit Documentation and Reporting
Key Topics:
• IT Act 2000 & the Amendment Act, 2008
• Purpose, Definitions
• Authentication, Digital & Electronic Signature
• Obligations of Subscribers, Body Corporates, Intermediaries and users
• Electronic Governance
• Electronic Contracts
• Certifying Authorities
• Penalties, Adjudication and Authorities under the Act
• Offences
21
Overview of Learning Objective:
Working Knowledge on Purpose of the Act, knowledge of key provisions,
application of certain provisions
Don’t rule out any topic, Questions may test concepts across chapters.
Marks weightage may vary by chapter (not necessarily a set
pattern)
Questions may test concepts as well as applied understanding
One Question may test concepts from more than one chapter
Both conceptual as well as applied knowledge is tested
22
Total Marks – 100
No. of Questions – 7. One Compulsory Question and 5 out of 6 others to be answered
Hours - 3
Questions based on Scenario/Brief Case Study
Questions directly testing conceptual understanding
Questions testing practical application
Short notes ( 4 of 5 Questions)
23
Cyberphobia and allergy with technical terms/jargons!
Technical perspective than risk perspective
Inability to relate the IT concept to Business & Audit Risk
Last moment rushing through material without reading and seeing it apply in real life
Memorising concepts without understanding
Reading material without devoting adequate time to solving sample/past question
papers
Writing lengthy/irrelevant answers, not answering to the point and not organising
your answers
24
25
26

More Related Content

PDF
apidays LIVE Paris 2021 - APIs and Privacy in the European Legal Context by M...
PPTX
Marsden Interoperability European Parliament 13 October
PPTX
Legal Tech Ethics
DOCX
International Journal of Ad hoc, Sensor & Ubiquitous Computing (IJASUC)
PDF
Cloud Mobility SIG
PPTX
Intrusion detection and prevention systems market is expected to grow $7.1 bi...
PPTX
Privacy and mobile apps - status 2013 Belgium
PDF
Data Security and Data Governance: Foundation and Case Studies - November 4, ...
apidays LIVE Paris 2021 - APIs and Privacy in the European Legal Context by M...
Marsden Interoperability European Parliament 13 October
Legal Tech Ethics
International Journal of Ad hoc, Sensor & Ubiquitous Computing (IJASUC)
Cloud Mobility SIG
Intrusion detection and prevention systems market is expected to grow $7.1 bi...
Privacy and mobile apps - status 2013 Belgium
Data Security and Data Governance: Foundation and Case Studies - November 4, ...

What's hot (17)

PDF
BDVe Webinar Series - Making GDPR for SMEs
PPTX
Penetration testing market is expected to grow $4.5 billion by 2025
PPTX
Technology Law: Regulations on the Internet and Emerging Technologies
PDF
Data- and database security & GDPR: end-to-end offer
PPTX
Wearable technologies, privacy and intellectual property rights
PDF
Data Portability and Interoperability – SWIRE – June 2021 OECD discussion
PPTX
Physical identity and access management market vendors by share & growth ...
PPTX
Wearable technologies and remote patient remote monitoring system
PDF
INNA POLIAKOVA «5 key legal issues of outsourcing agreements to be negotiated...
PPTX
Real world data engineering practices for GDPR
PDF
Explainable AI: Building trustworthy AI models?
PPT
Remote patient monitoring system
PPTX
Solving Compliance Issues for Office365/Exchange Online Environments
PDF
U.S. Approach to Cybersecurity Governance
PPTX
An American Legal Perspective
PPT
Experience and perspective_of_security_installation
PPT
Aditech Customer Meet-2015
BDVe Webinar Series - Making GDPR for SMEs
Penetration testing market is expected to grow $4.5 billion by 2025
Technology Law: Regulations on the Internet and Emerging Technologies
Data- and database security & GDPR: end-to-end offer
Wearable technologies, privacy and intellectual property rights
Data Portability and Interoperability – SWIRE – June 2021 OECD discussion
Physical identity and access management market vendors by share & growth ...
Wearable technologies and remote patient remote monitoring system
INNA POLIAKOVA «5 key legal issues of outsourcing agreements to be negotiated...
Real world data engineering practices for GDPR
Explainable AI: Building trustworthy AI models?
Remote patient monitoring system
Solving Compliance Issues for Office365/Exchange Online Environments
U.S. Approach to Cybersecurity Governance
An American Legal Perspective
Experience and perspective_of_security_installation
Aditech Customer Meet-2015
Ad

Viewers also liked (13)

PPT
Pm02 system design
PDF
Presentation 5, System based audit approach - what is it about?, Workshop on ...
PPTX
System design
PPT
Systems Analysis And Design 2
PPTX
System Design Presentation
PPT
System analysis and design
PPT
6. Integrity and Security in DBMS
PPTX
Audit presentation
PPTX
System Analysis and Design (SAD)
DOCX
Introduction to system analysis and design
PPT
System design
PPT
Data integrity
PPT
data resource management
Pm02 system design
Presentation 5, System based audit approach - what is it about?, Workshop on ...
System design
Systems Analysis And Design 2
System Design Presentation
System analysis and design
6. Integrity and Security in DBMS
Audit presentation
System Analysis and Design (SAD)
Introduction to system analysis and design
System design
Data integrity
data resource management
Ad

Similar to Auditing (20)

PPTX
Chapter 02
PPT
Identifying the Identity Managers
PPTX
Chapter 2 Analyzing the Business Case .pptx
PDF
chapter02-120827115348-phpapp01.pdf
PDF
CNIT 160: Ch 2b: Security Strategy Development
PPT
ch11.ppt
PPTX
C2M2 V2.1 Self-Evaluation Workshop Kickoff Presentation -- July 2023.pptx
PPTX
Cyber Security_Consultant_Nial Lande.pptx
PDF
Module 6 - Systems Planning bak.pptx.pdf
PPTX
Professional Designations IT Assurance
PPTX
2014-1-Intro-GRC-and-COBIT5 notes fin.pptx
PPTX
C2M2 V2.1 Self-Evaluation Workshop Kickoff.pptx
PPTX
Governance and management of IT.pptx
PPTX
CompTIA Security+.pptx
PPTX
10 - Project Management
PPT
metrics Overview from ITIL to Holistic ICT
PPTX
603941183-Unit-1-Introduction-to-Product-Life-Cycle-Management.pptx
PPT
ISA 3 COBIT
PPTX
Software development o & c
DOC
Fehmida Sayed - IT Head, Senior Manager-Infra and Infosec
Chapter 02
Identifying the Identity Managers
Chapter 2 Analyzing the Business Case .pptx
chapter02-120827115348-phpapp01.pdf
CNIT 160: Ch 2b: Security Strategy Development
ch11.ppt
C2M2 V2.1 Self-Evaluation Workshop Kickoff Presentation -- July 2023.pptx
Cyber Security_Consultant_Nial Lande.pptx
Module 6 - Systems Planning bak.pptx.pdf
Professional Designations IT Assurance
2014-1-Intro-GRC-and-COBIT5 notes fin.pptx
C2M2 V2.1 Self-Evaluation Workshop Kickoff.pptx
Governance and management of IT.pptx
CompTIA Security+.pptx
10 - Project Management
metrics Overview from ITIL to Holistic ICT
603941183-Unit-1-Introduction-to-Product-Life-Cycle-Management.pptx
ISA 3 COBIT
Software development o & c
Fehmida Sayed - IT Head, Senior Manager-Infra and Infosec

Recently uploaded (20)

PDF
3rd Neelam Sanjeevareddy Memorial Lecture.pdf
PDF
grade 11-chemistry_fetena_net_5883.pdf teacher guide for all student
PDF
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
PPTX
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PPTX
PPT- ENG7_QUARTER1_LESSON1_WEEK1. IMAGERY -DESCRIPTIONS pptx.pptx
PPTX
Week 4 Term 3 Study Techniques revisited.pptx
PPTX
Final Presentation General Medicine 03-08-2024.pptx
PDF
TR - Agricultural Crops Production NC III.pdf
PPTX
Microbial diseases, their pathogenesis and prophylaxis
PPTX
Introduction_to_Human_Anatomy_and_Physiology_for_B.Pharm.pptx
PDF
Basic Mud Logging Guide for educational purpose
PPTX
BOWEL ELIMINATION FACTORS AFFECTING AND TYPES
PDF
102 student loan defaulters named and shamed – Is someone you know on the list?
PDF
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
PDF
Origin of periodic table-Mendeleev’s Periodic-Modern Periodic table
PPTX
IMMUNITY IMMUNITY refers to protection against infection, and the immune syst...
PDF
Microbial disease of the cardiovascular and lymphatic systems
PDF
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
PDF
Classroom Observation Tools for Teachers
PPTX
master seminar digital applications in india
3rd Neelam Sanjeevareddy Memorial Lecture.pdf
grade 11-chemistry_fetena_net_5883.pdf teacher guide for all student
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PPT- ENG7_QUARTER1_LESSON1_WEEK1. IMAGERY -DESCRIPTIONS pptx.pptx
Week 4 Term 3 Study Techniques revisited.pptx
Final Presentation General Medicine 03-08-2024.pptx
TR - Agricultural Crops Production NC III.pdf
Microbial diseases, their pathogenesis and prophylaxis
Introduction_to_Human_Anatomy_and_Physiology_for_B.Pharm.pptx
Basic Mud Logging Guide for educational purpose
BOWEL ELIMINATION FACTORS AFFECTING AND TYPES
102 student loan defaulters named and shamed – Is someone you know on the list?
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
Origin of periodic table-Mendeleev’s Periodic-Modern Periodic table
IMMUNITY IMMUNITY refers to protection against infection, and the immune syst...
Microbial disease of the cardiovascular and lymphatic systems
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
Classroom Observation Tools for Teachers
master seminar digital applications in india

Auditing

  • 1. CA. R Vittal Raj 1
  • 2. This Webcast On Current Syllabi Also Discuss Shortcomings Found by Examiners - Points to Take Care New Syllabus – Study Material Would be Hosted in Sep, 13 (First Week) Applicable from November, 2014 Exams Details available on Institute Website - http://220.227.161.86/30545bos20300.pdf 2
  • 3. Relevance of the Paper in CA Final Course Understanding layout of topics Some key perspective to topics General pattern of Exam Questions & Exam Preparation tips Fundamentals you should know before you start 3
  • 4. 1 • Information Systems Concepts 2 • Systems Development Life Cycle Methodology 3 • Control Objectives 4 • Testing – General & Automated Controls 5 • Risk Assessment Methodologies and Applications 6 • Business Continuity Planning and Disaster Recovery Planning 7 • Overview of ERP: IS Auditing Standards, Guidelines and Best Practices 8 • IS Auditing Standards, Guidelines , Best Practices 9 • Drafting of IS Security Policy, Audit Policy, IS Audit Reporting - A Practical Perspective 10 • Information Technology (Amendment) Act, 2008 4
  • 6. Value of Information to Business IT – not mere enabler but a business driver Business risks arising from use of IT Need for managing multi risks from IT 6
  • 7. Role of IT in effectively achieving business as well as governance objectives Auditors’ Role in providing assurance Audit Risk arising from ignorance/ inappropriate understanding of impact of IT in planning, designing and performing audit procedures 7
  • 8. Two Volumes • Volume 1 – Study Material • Volume 2 – Practice Manual Topics – 10 Learning Objective Sub topics 8
  • 9. Not merely conceptual knowledge but applied knowledge A final student is expected to have conceptual knowledge but also applied knowledge & capability Conceptual Knowledge – Volume 1 & Other sources Applied Knowledge - Volume 2, other sources and Practical exposure, field visits, ‘look beyond’ Pre-supposes knowledge of IT fundamental concepts (IPCC Material) Jargons! Technical! Managerial/Control Concepts 9
  • 11. Key Topics: • Definition of a System • Types of System • Systems Model & Environment • Information • Information Systems role in management • Operational Support Systems - TPS, MIS, ERP, • Management Support Systems – DSS, EIS, Expert Systems, • Office Automation Systems 11 Overview of Learning Objective: Expert understanding of information, systems, their elements, types and their application in day to day business life
  • 12. Key Topics: • Systems Development Process • Systems Development Methodologies • Systems Development Life Cycle • In Depth understanding of Phases • Preliminary Study, Systems Requirements Analysis, Systems Design, Systems Acquisition, Systems Development, Systems Testing, Systems Implementation, Post Implementation Review and Systems Maintenance, Documentation • Auditors Role in SDLC 12 Overview of Learning Objective: In depth understanding of concepts, and approaches in SDLC, Phases, tools, Auditors Role in SDLC
  • 13. Key Topics: • IS Controls and their need • Considerations arising from use of computers – Internal Control & Audit perspective • Overview of IS Audit Process, audit objectives vs. control objectives • IS Control Techniques, types, roles and responsibilities • End User Controls • Controls in SDLC - Systems Development and Acquisition, Change Management, Quality Assurance, Systems Implementation & Maintenance 13 Overview of Learning Objective: In depth understanding of Internal Controls , control objectives, controls & techniques of control across various facets of systems protection, role of IS audit
  • 14. Key Topics: • Controls over Data Integrity, Privacy and Security • Security concepts and techniques • Data Security and Public Networks, Unauthorised Intrusion, Hacking • Logical Access Controls, Malware & related controls • Physical & Environmental Controls 14
  • 15. Key Topics: • Testing – Concepts, need and types • Audit Planning Considerations for testing • Audit Testing – IS Controls identification, Prioritising, Performing tests • General Controls vs. Application Controls • Audit Testing techniques • Testing of Technical Controls – Hardware, Systems Software, Network • Concurrent or Continuous Audit and Embedded Audit Module • Audit Reporting 15 Overview of Learning Objective: Expert Knowledge of testing concepts, types, methods, audit planning
  • 16. Key Topics: • Indepth understanding of Risk Management Concepts • Asset, Threats, Vulnerabilities, Severity and Likelihood, Exposure, Countermeasures, Acceptable Risk, Residual Risk • Understanding of Threats in Computerised Environments • Risk Assessment vs. Risk Management • Risk Identification, Ranking, Mitigation and role of Controls 16 Overview of Learning Objective: Working Knowledge on concepts and application of Risk Management, components thereof and phases in Risk Management, Controls
  • 17. Key Topics: • Goals and objectives of BCP • Steps to developing a BCP • Types of Plans • Emergency, Backup, Recovery • Business Impact Analysis & Risk Assessment • Backup Techniques • Full, Incremental, Differential, Mirror • Alternate Processing Arrangements • Cold, Hot, Warm Site, Reciprocal Arrangement • Disaster Recovery Procedures • Insurance • BCP Testing Objectives and Steps • Audit of Disaster Recovery/Business Resumption Plan 17 Overview of Learning Objective: In depth understanding of purpose and objectives of BCP/DRP, phases thereof and role of audit
  • 18. Key Topics: • ERP Fundamentals • Definition, Evolution, Features, Benefits • Business Process Re-Engineering • A Critical success factor for ERP, • ERP Implementation • Key considerations, Methodology, Phases • Post Implementation Issues • Risk Governance Issues in ERP • ERP & E-Commerce • Overview of some popular products and Case studies 18 Overview of Learning Objective: Role of ERP in business, Goals & Benefits, Challenges and Risks, Phases in Implementation, Importance of BPR
  • 19. Key Topics: • ICAI Standards – SA 315, SA 330 • ISO 27001 – Information Security Management Standard • Capability Maturity Model (CMM) • COBIT – IT Governance Framework • CoCo Guidance – Criteria of Control Model (CICA) • ITIL (IT Infrastructure Library) • Systrust and Webtrust from AICPA • HIPAA • SA 402 19 Overview of Learning Objective: Gain overview and relevance of global standards in IS Control, Security, Audit and It Governance
  • 20. Key Topics: • Importance of Information Security to Enterprise • Information Security Policy • Purpose, scope, types, allocation of roles and responsibilities • Asset Classification, Access Control, Physical Security, SDLC, BCP • Audit Policy • Purpose, Scope, Competence, Audit Framework, Testing Approach, Frequency, Linkage to IT Governance Framework, Audit Communication • Audit Working Papers and Documentation • Planning Documentation, Gathering and Organising Information, Writing Documentation • IS Audit Reports • Structure, Format, Distribution, Context, Objectives, Findings, Opinion, Substantiation, Evidence 20 Overview of Learning Objective: Expert knowledge in drafting of Information Systems Security Policy, Audit Policy and Audit Documentation and Reporting
  • 21. Key Topics: • IT Act 2000 & the Amendment Act, 2008 • Purpose, Definitions • Authentication, Digital & Electronic Signature • Obligations of Subscribers, Body Corporates, Intermediaries and users • Electronic Governance • Electronic Contracts • Certifying Authorities • Penalties, Adjudication and Authorities under the Act • Offences 21 Overview of Learning Objective: Working Knowledge on Purpose of the Act, knowledge of key provisions, application of certain provisions
  • 22. Don’t rule out any topic, Questions may test concepts across chapters. Marks weightage may vary by chapter (not necessarily a set pattern) Questions may test concepts as well as applied understanding One Question may test concepts from more than one chapter Both conceptual as well as applied knowledge is tested 22
  • 23. Total Marks – 100 No. of Questions – 7. One Compulsory Question and 5 out of 6 others to be answered Hours - 3 Questions based on Scenario/Brief Case Study Questions directly testing conceptual understanding Questions testing practical application Short notes ( 4 of 5 Questions) 23
  • 24. Cyberphobia and allergy with technical terms/jargons! Technical perspective than risk perspective Inability to relate the IT concept to Business & Audit Risk Last moment rushing through material without reading and seeing it apply in real life Memorising concepts without understanding Reading material without devoting adequate time to solving sample/past question papers Writing lengthy/irrelevant answers, not answering to the point and not organising your answers 24
  • 25. 25
  • 26. 26