itexamable.com

CISA Exam-Test 30

/30
318

CISA EXAM-TEST 30

1 / 30

1. Which of the following is of GREATEST concern to an IS auditor when performing an audit of a client relationship management (CRM) system migration project?

2 / 30

2. Which of the following BEST mitigates the risk of backup media containing irreplaceable information being lost or stolen while in transit?

3 / 30

3. Which of the following BEST ensures the quality and integrity of test procedures used in
audit analytics?

4 / 30

4. A new application will require multiple interfaces. Which of the following testing methods
can be used to detect interface errors early in the development life cycle1?

5 / 30

5. With respect to the outsourcing of IT services, which of the following conditions should be of GREATEST concern to an IS auditor?

6 / 30

6. When developing a risk management program, what is the FIRST activity to be performed?

7 / 30

7. When evaluating the recent implementation of an intrusion detection system (IDS), an IS
auditor should be MOST concerned with inappropriate:

8 / 30

8. Recovery procedures for an information processing facility are BEST based on:

9 / 30

9. Of the following alternatives, the FIRST approach to developing a disaster recovery strategy would be to assess whether:

10 / 30

10. Which of the following issues should be the GREATEST concern to the IS auditor when reviewing an IT disaster recovery test?

11 / 30

11. During an IS audit of the disaster recovery plan (DRP) of a global enterprise, the auditor observes that some remote offices have very limited local IT resources. Which of the following observations would be the MOST critical for the IS auditor?

12 / 30

12. An organization has a business process with a recovery time objective (RTO) equal to zero and a recovery point objective (RPO) close to one minute. This implies that the process can tolerate:

13 / 30

13. During a disaster recovery test, an IS auditor observes that the performance of the disaster recovery site's server is slow. To find the root cause of this, the IS auditor should FIRST review the:

14 / 30

14. While conducting an audit of a service provider, an IS auditor observes that the service provider has outsourced a part of the work to another provider. Since the work involves confidential information,the IS auditor's PRIMARY concern should be that the

15 / 30

15. The MOST effective audit practice to determine whether the operational effectiveness of controls is properly applied to transaction processing is:

16 / 30

16. In a disaster recovery situation, which of the following is the MOST important metric to ensure that data are synchronized between critical systems?

17 / 30

17. It is MOST appropriate to implement an incremental backup scheme when:

18 / 30

18. Which of the following is the BEST information source for management to use as an aid in the identification of assets that are subject to laws and regulations?

19 / 30

19. The frequent updating of which of the following is key to the continued effectiveness of a disaster recovery plan (DRP)?

20 / 30

20. If the recovery time objective (RTO) increases:

21 / 30

21. Which of the following is the MOST important difference between end-user computing
(EUC) applications and traditional applications?

22 / 30

22. A lower recovery time objective (RTO) results in:

23 / 30

23. Due to changes in IT, the disaster recovery plan (DRP) of a large organization has been changed. What is the PRIMARY risk if the new plan is not tested?

24 / 30

24. When developing a disaster recovery plan (DRP), the criteria for determining the acceptable downtime should be the:

25 / 30

25. When preparing to evaluate the effectiveness of an organizations IT strategy, an IS auditor
should FIRST review:

26 / 30

26. After a disaster declaration, the media creation date at a warm recovery site is based on the:

27 / 30

27. Which of the following groups is the BEST source of information for determining the criticality of application systems as part of a business impact analysis (BIA)?

28 / 30

28. An organization has outsourced its help desk activities. An IS auditor's GREATEST concern when reviewing the contract and associated service level agreement (SLA) between the organization and vendor should be the provisions for:

29 / 30

29. An IS auditor is reviewing an organization's disaster recovery plan (DRP) implementation. The project was completed on time and on budget. During the review, the auditor uncovers several areas of concern. Which of the following presents the GREATEST risk?

30 / 30

30. During an audit of a small company that provides medical transcription services, an IS auditor observes several issues related to the backup and restore process. Which of the following should be the auditor's GREATEST concern?