itexamable.com

CISA Exam-Test 10

/30
305

CISA EXAM-TEST 10

1 / 30

1. The PRIMARY control purpose of required vacations or job rotations is to:

2 / 30

2. Which of the following should be the MOST important consideration when deciding on areas of priority for IT governance implementations?

3 / 30

3. An organization's disaster recovery plan (DRP) should address early recovery of:

4 / 30

4. An IS auditor is reviewing IT projects for a large company and wants to determine whether the IT projects undertaken in a given year are those which have been assigned the highest priority by the business and which will generate the greatest business value. Which of the following would be MOST relevant?

5 / 30

5. The risk associated with electronic evidence gathering would MOST likely be reduced by an email:

6 / 30

6. An IT steering committee assists the board of directors to fulfill IT governance duties by

7 / 30

7. Which of the following should an IS auditor recommend to BEST enforce alignment of an IT project portfolio with strategic organizational priorities?

8 / 30

8. The PRIMARY objective of implementing corporate governance is to:

9 / 30

9. Which of the following is MOST indicative of the effectiveness of an information security awareness program?

10 / 30

10. When reviewing a contract for a disaster recovery hot site, which of the following would be
the MOST significant omission?

11 / 30

11. Post-implementation testing is an example of which of the following control types?

12 / 30

12. The cost of ongoing operations when a disaster recovery plan (DRP) is in place, compared to not having a disaster recovery plan, will MOST likely:

13 / 30

13. Which of the following situations is addressed by a software escrow agreement?

14 / 30

14. Which of the following is MOST important for the IS auditor to verify when reviewing the development process of a security policy?

15 / 30

15. Which of the following is the MOST important function to be performed by IT management when a service has been outsourced?

16 / 30

16. Which of the following areas of responsibility would cause the GREATEST segregation of
duties conflict if the individual who performs the related tasks also has approval authority?

17 / 30

17. A small organization is experiencing rapid growth and plans to create a new information security policy. Which of the following is MOST relevant to creating the policy?

18 / 30

18. Which of the following BEST supports the prioritization of new IT projects?

19 / 30

19. .A large number of exceptions to an organization's information security standards have been granted after senior management approved a bring your own device program. To address this situation, it is MOST important for the information security manage to

20 / 30

20. During a feasibility study regarding outsourcing IT processing, the relevance for the IS auditor of reviewing the vendor's business continuity plan (BCP) is to:

21 / 30

21. In the context of effective information security governance, the primary objective of value delivery is to:

22 / 30

22. The MAJOR consideration for an IS auditor reviewing an organization's IT project portfolio is the:

23 / 30

23. Which of the following can provide assurance that an IT project has delivered its planned benefits?

24 / 30

24. After the merger of two organizations, multiple self-developed legacy applications from both organizations are to be replaced by a new common platform. Which of the following would be the GREATEST risk?

25 / 30

25. Which of the following is the BEST way to minimize the impact of a ransomware attack?

26 / 30

26. 5 year audit plan provides for general audits every year and application audits on
alternating years. To achieve higher efficiency, the IS audit manager would MOST likely:

27 / 30

27. A benefit of open system architecture is that it:

28 / 30

28. The initial step in establishing an information security program is the:

29 / 30

29. An IS auditor reviewing an outsourcing contract of IT facilities would expect it to define the:

30 / 30

30. IS control objectives are useful to IS auditors because they provide the basis for understanding the:

Juco Bags in Dubai | Juco Bags in Sharjah | Juco Bags in UAE