ISACA CISA Exam (page: 8)
ISACA Certified Information Systems Auditor
Updated on: 25-Dec-2025

Viewing Page 8 of 366

Which of the following is the BEST indicator of the effectiveness of an organization's incident response program?

  1. Number of successful penetration tests
  2. Percentage of protected business applications
  3. Number of security vulnerability patches
  4. Financial impact per security event

Answer(s): D



An organization recently implemented a cloud document storage solution and removed the ability for end users to save data to their local workstation hard drives.
Which of the following findings should be the IS auditor's GREATEST concern?

  1. Mobile devices are not encrypted.
  2. Users are not required to sign updated acceptable use agreements.
  3. The business continuity plan (BCP) was not updated.
  4. Users have not been trained on the new system.

Answer(s): A



Which of the following security measures will reduce the risk of propagation when a cyberattack occurs?

  1. Data loss prevention (DLP) system
  2. Perimeter firewall
  3. Network segmentation O Web application firewall

Answer(s): C



An IS auditor notes that the previous year's disaster recovery test was not completed within the scheduled time frame due to insufficient hardware allocated by a third-party vendor. Which of the following provides the BEST evidence that adequate resources are now allocated to successfully recover the systems?

  1. Hardware change management policy
  2. An up-to-date RACI chart
  3. Vendor memo indicating problem correction
  4. Service level agreement (SLA)

Answer(s): D



When implementing Internet Protocol security (IPsec) architecture, the servers involved in application delivery:

  1. channel access only through the public-facing firewall.
  2. channel access through authentication.
  3. communicate via Transport Layer Security (TLS).
  4. block authorized users from unauthorized activities.

Answer(s): B



Viewing Page 8 of 366



Share your comments for ISACA CISA exam with other users:

Mike 8/20/2023 5:12:00 PM

the exam dumps are helping me get a solid foundation on the practical techniques and practices needed to be successful in the auditing world.
UNITED STATES


Sam 8/31/2023 10:32:00 AM

not bad but you question database from isaca
MALAYSIA


Deno 10/25/2023 1:14:00 AM

i failed the cisa exam today. but i have found all the questions that were on the exam to be on this site.
Anonymous