ISACA CISA Exam (page: 45)
ISACA Certified Information Systems Auditor
Updated on: 25-Dec-2025

Viewing Page 45 of 366

When conducting a requirements analysis for a project, the BEST approach would be to:

  1. conduct a control self-assessment (CSA).
  2. test operational deliverables.
  3. prototype the requirements.
  4. consult key stakeholders.

Answer(s): D



When evaluating information security governance within an organization, which of the following findings should be of MOST concern to an IS auditor?

  1. An information security governance audit was not conducted with in the past year.
  2. Information security policies are updated annually.
  3. The data center manager has final sign-off on security projects.
  4. The information security department has difficulty filling vacancies.

Answer(s): C



During a post-implementation review, an IS auditor learns that while benefits were realized according to the business case, complications during implementation added to the cost of the solution. Which of the following is the auditor's BEST course of action?

  1. Design controls that will prevent future added costs.
  2. Verify that lessons learned were documented for future projects.
  3. Determine if project deliverables were provided on time
  4. Ensure costs related to the complications were subtracted from realized benefits.

Answer(s): B



When reviewing an organization's IT governance processes, which of the following provides the BEST indication that information security expectations are being met at all levels?

  1. Achievement of established security metrics
  2. Approval of the security program by senior management
  3. Utilization of an internationally recognized security standard
  4. Implementation of a comprehensive security awareness program

Answer(s): A



When assessing whether an organization's IT performance measures are comparable to other organizations in the same industry, which of the following would be
MOST helpful to review?

  1. Balanced scorecard
  2. IT governance frameworks
  3. Benchmarking surveys
  4. Utilization reports

Answer(s): C



Viewing Page 45 of 366



Share your comments for ISACA CISA exam with other users:

Mike 8/20/2023 5:12:00 PM

the exam dumps are helping me get a solid foundation on the practical techniques and practices needed to be successful in the auditing world.
UNITED STATES


Sam 8/31/2023 10:32:00 AM

not bad but you question database from isaca
MALAYSIA


Deno 10/25/2023 1:14:00 AM

i failed the cisa exam today. but i have found all the questions that were on the exam to be on this site.
Anonymous