ISACA CISA Exam (page: 12)
ISACA Certified Information Systems Auditor
Updated on: 25-Dec-2025

Viewing Page 12 of 366

Which of the following would be of GREATEST concern when reviewing an organization's security information and event management (SIEM) solution?

  1. SIEM reporting is ad hoc.
  2. SIEM reporting is customized.
  3. SIEM configuration is reviewed annually.
  4. The SIEM is decentralized.

Answer(s): D



A manager identifies active privileged accounts belonging to staff who have left the organization. Which of the following is the threat actor in this scenario?

  1. Hacktivists
  2. Deleted log data
  3. Terminated staff
  4. Unauthorized access

Answer(s): C



An IS auditor is evaluating the access controls for a shared customer relationship management (CRM) system. Which of the following would be the GREATEST concern?

  1. Audit logging is not enabled.
  2. Single sign-on is not enabled.
  3. Complex passwords are not required.
  4. Security baseline is not consistently applied.

Answer(s): A



Which of the following findings from an IT governance review should be of GREATEST concern?

  1. IT value analysis has not been completed.
  2. All IT services are provided by third parties.
  3. IT supports two different operating systems.
  4. The IT budget is not monitored.

Answer(s): B



What would be an IS auditor's BEST course of action when an auditee is unable to close all audit recommendations by the time of the follow-up audit?

  1. Ensure the open issues are retained in the audit results.
  2. Recommend compensating controls for open issues.
  3. Evaluate the residual risk due to open issues.
  4. Terminate the follow-up because open issues are not resolved.

Answer(s): C



Viewing Page 12 of 366



Share your comments for ISACA CISA exam with other users:

Mike 8/20/2023 5:12:00 PM

the exam dumps are helping me get a solid foundation on the practical techniques and practices needed to be successful in the auditing world.
UNITED STATES


Sam 8/31/2023 10:32:00 AM

not bad but you question database from isaca
MALAYSIA


Deno 10/25/2023 1:14:00 AM

i failed the cisa exam today. but i have found all the questions that were on the exam to be on this site.
Anonymous