ISACA CISA Exam (page: 27)
ISACA Certified Information Systems Auditor
Updated on: 25-Dec-2025

Viewing Page 27 of 366

Which of the following development practices would BEST mitigate the risk associated with theft of user credentials transmitted between mobile devices and the corporate network?

  1. Enforce the validation of digital certificates used in the communication sessions.
  2. Release mobile applications in debugging mode to allow for easy troubleshooting.
  3. Embed cryptographic keys within the mobile application source code.
  4. Allow persistent sessions behveen mobile applications and the corporate network.

Answer(s): A



Which of the following is MOST useful for determining whether the goals of IT are aligned with the organization's goals?

  1. Enterprise architecture (EA)
  2. Key performance indicators (KPIs)
  3. Balanced scorecard
  4. Enterprise dashboard

Answer(s): C



Which of the following cloud deployment models would BEST meet the needs of a startup software development organization with limited initial capital?

  1. Community
  2. Hybrid
  3. Private
  4. Public

Answer(s): D



Which of the following is MOST effective in detecting an intrusion attempt?

  1. Using packet filter software
  2. Using smart cards with one-time passwords
  3. Installing biometrics-based authentication
  4. Analyzing system logs

Answer(s): D



The MOST important reason why an IT risk assessment should be updated on a regular basis is to:

  1. utilize IT resources in a cost-effective manner.
  2. react to changes in the IT environment.
  3. comply with data classification changes.
  4. comply with risk management policies.

Answer(s): B



Viewing Page 27 of 366



Share your comments for ISACA CISA exam with other users:

Mike 8/20/2023 5:12:00 PM

the exam dumps are helping me get a solid foundation on the practical techniques and practices needed to be successful in the auditing world.
UNITED STATES


Sam 8/31/2023 10:32:00 AM

not bad but you question database from isaca
MALAYSIA


Deno 10/25/2023 1:14:00 AM

i failed the cisa exam today. but i have found all the questions that were on the exam to be on this site.
Anonymous