ISACA CISA practice exam, Questions and answers, rated A+/ Examminable Questions and answers For 2024/25. Rated A+
ISACA CISA practice exam, Questions and answers, rated A+ 03. From an auditing perspective, which of the following standards most closely maps to a Plan-DoCheck-Act (PDCA) approach? a) HIPAA b) ISO 27001 c) Taguchi d) CMM - -Answer: b) ISO 27001 04. Where should an organization keep copies of the business continuity plan? a) Onsite only b) Offsite only c) Both onsite and offsite d) None of the above - -Answer: c) Both on-site and offsite 06. Observation and testing can be used effectively in which of the following areas? a) Separation of duties b) Error correction and control c) Input authorization d) All of the above - -Answer: d) All of the above 07. During which step of the audit life cycle does an auditor identify which skills are needed for the audit, how many auditors are required, and what other resources are needed? a) Audit objective b) Pre-audit planning c) Data gathering d) Results evaluation - -Answer: b) Pre-audit planning 08. In the NIST version of the SDLC process, the system or program performs the work for which it was designed in which waterfall phase? a) Operation/Maintenance b) Implementation c) Initiation d) Disposal - -Answer: a) Operation / Maintenance 09. Which database-related term refers to the process of combining several low-sensitivity items to produce a high-sensitivity data item? a) Relation b) Aggregation c) Granularity d) Foreign key - -Answer: b) Aggregation 10. When a system moves into production and changes are needed, which of the following is the final step in the change control process? a) Document the new configuration. b) Test the proposed change. c) Implement the change, if approved. d) Present the results to the change-control board. - -Answer: a) Document the new configuratio
Document information
- Uploaded on
- February 14, 2024
- Number of pages
- 30
- Written in
- 2023/2024
- Type
- Exam (elaborations)
- Contains
- Questions & answers