itexamable.com

CISA Exam-Test 7

/30
355

CISA Exam-Test 7

1 / 30

1. A key IT systems developer has suddenly resigned from an enterprise. Which of the following will be the MOST important action?

2 / 30

2. In reviewing the IT short-range (tactical) plan, an IS auditor should determine whether:

3 / 30

3. When segregation of duties concerns exist between IT support staff and end users, what would be a suitable compensating control?

4 / 30

4. Involvement of senior management is MOST important in the development of:

5 / 30

5. In a review of the human resources policies and procedures within an organization, an IS auditor would be MOST concerned with the absence of a:

6 / 30

6. An IS auditor reviewing an organization that uses cross-training practices should assess the risk of:

7 / 30

7. Which of the following is MOST important for an IS auditor to verify when evaluating an
organization's firewall?

8 / 30

8. Which of the following would BEST provide assurance of the integrity of new staff?

9 / 30

9. In a database management system (DBMS) normalization is used to:

10 / 30

10. Which of the following audit procedures would be MOST conclusive in evaluating the
effectiveness of an e-commerce application system's edit routine?

11 / 30

11. From a control perspective, the key element in job descriptions is that they:

12 / 30

12. What is the FIRST line of defense against criminal insider activities?

13 / 30

13. Which of the following is the BEST criterion for evaluating the adequacy of an organization's security awareness program?

14 / 30

14. An IS auditor of a large organization is reviewing the roles and responsibilities for the IT function and has found some individuals serving multiple roles. Which one of the following combinations of roles should be of GREATEST concern for the IS auditor?

15 / 30

15. An IS auditor would MOST likely recommend that IT management use a balanced scorecard to:

16 / 30

16. Which of the following is MOST likely to be included in computer operating procedures in a large data center?

17 / 30

17. Which of the following is the GREATEST concern associated with migrating computing
resources to a cloud virtualized environment?

18 / 30

18. An organization has outsourced many application development activities to a third party that uses contract programmers extensively. Which of the following would provide the BEST assurance that the third party’s contract programmers comply with

19 / 30

19. Many organizations require an employee to take a mandatory vacation (holiday) of a week or more to:

20 / 30

20. An IS audit department is planning to minimize its dependency on key individuals. Activities that contribute to this objective are documented procedures, knowledge sharing, cross-training and:

21 / 30

21. When an employee is terminated from service, the MOST important action is to:

22 / 30

22. Which of the following is normally a responsibility of the chief information security officer (CISO)?

23 / 30

23. Which of the following activities performed by a database administrator (DBA) should be performed by a different person?

24 / 30

24. A local area network (LAN) administrator normally would be restricted from:

25 / 30

25. To support an organization's goals, an IT department should have:

26 / 30

26. A financial services enterprise has a small IT department, and individuals perform more than one role. Which of the following practices represents the GREATEST risk?

27 / 30

27. Which of the following controls would an IS auditor look for in an environment where duties cannot be appropriately segregated?

28 / 30

28. An IT governance framework provides an organization with:

29 / 30

29. Which of the following is the MOST important factor when an organization is developing information security policies and procedures?

30 / 30

30. A long-term IT employee with a strong technical background and broad managerial experience has applied for a vacant position in the IS audit department. Determining whether to hire this individual for this position should be PRIMARILY based on the individual's experience and: