100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

CISA Study Guide – Questions With Definite Solutions

Rating
-
Sold
-
Pages
149
Grade
A+
Uploaded on
07-01-2026
Written in
2025/2026

CISA Study Guide – Questions With Definite Solutions

Institution
CISA - Certified Information Systems Auditor
Course
CISA - Certified Information Systems Auditor











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CISA - Certified Information Systems Auditor
Course
CISA - Certified Information Systems Auditor

Document information

Uploaded on
January 7, 2026
Number of pages
149
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

CISA Study Guide – Questions With Definite
Solutions

Save




Terms in this set (402)



NO.1 Which of the following B
observations should be of GREATEST
concern to an IS auditor reviewing
a large organization's virtualization
environment?
A. An unused printer has been left
connected to the host system.
B. Guest tools have been installed
without sufficient access control,
C. A rootkit was found on the host
operating system
D. Host inspection capabilities have
been disabled


NO.2 An IS auditor is reviewing a B. Change log
recent security incident and is seeking
information about the
approval of a recent modification to a
database system's security settings
Where would the auditor
MOST likely find this information?
A. System event correlation report
B. Change log
C. Database log
D. Security incident and event
management (SIEM) report

,NO.3 An IS auditor wants to C
understand the collective effect of the
preventive, detective, and
corrective controls for a specific
business process. Which of the
following should the auditor focus on
FIRST?
A. The formal documentation of the
process and how adherence is
measured
B. Whether the existence of preventive
controls causes corrective controls to
become unnecessary
C. Whether segregation of duties is in
place when two controls are applied
simultaneously
D. The various points in the process
where controls are exercised


NO.4 Which of the following is the A
BEST way to minimize the impact of a
ransomware attack?
A. Perform more frequent system
backups.
B. Maintain a regular schedule for
patch updates.
C. Provide user awareness training on
ransomware attacks.
D. Grant system access based on least
privilege.


NO.5 Which of the following group is A
MOST likely responsible for the
implementation of IT projects?
A. IT steering committee
B. IT strategy committee
C. IT compliance committee
D. IT governance committee

,NO.6 Which of the following is MOST A
influential when defining disaster
recovery strategies?
A. Annual loss expectancy
B. Maximum tolerable downtime
IT Certification Guaranteed, The Easy
Way!
2
C. Data classification scheme
D. Existing server redundancies


NO.7 When aligning IT projects with C
organizational objectives, it is MOST
important to ensure that
the:
A. percentage of growth in project
intake is reviewed.
B. overall success rate of projects is
high.
C. business cases have been clearly
defined for all projects.
D. project portfolio database is
updated when new systems are
acquired.


NO.8 An IS auditor determines that a C
business continuity plan has not been
reviewed and approved
by management.
Which of the following is the MOST
significant risk associated with this
situation?
A. Continuity planning may be subject
to resource constraints.
B. The plan may not be aligned with
industry best practice.
C. Critical business processes may not
be addressed adequate.
D. The plan has not been reviewed by
risk management

, NO.9 Which of the following is an IS C
auditor's BEST guidance regarding the
use of IT frameworks?
A. To ensure consistency throughout
the organization, management should
adopt a single
comprehensive framework.
B. Frameworks provide standards that
enable management to benchmark
against peer organizations
.
C. Frameworks encourage efficiency,
provide a way to measure
effectiveness, and allow for
improvements
D. Industry-specific frameworks, when
available, are preferred over the more
generic comprehensive
frameworks.


NO.10 Which of the following provides B
an IS auditor with the BEST evidence
that a system has been
assessed for known exploits?
A. Patch cycle report
B. Vulnerability scanning report
C. Black box testing report
D. White box testing report

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
LeCrae Harvard University
View profile
Follow You need to be logged in order to follow users or courses
Sold
2044
Member since
3 year
Number of followers
1407
Documents
21310
Last sold
1 day ago
Valuable Notes, Secure Learning

Welcome to ScholarVault—your ultimate destination for premium study materials and academic resources designed to unlock your full potential. As a passionate student myself, I understand how critical it is to have the right tools to excel in your studies. That's why I've curated a collection of high-quality notes, guides, and exam preparation materials that are tailored to help you achieve academic success. At ScholarVault, I believe that knowledge is power, but access to the right knowledge is key. My mission is to provide you with organized, comprehensive, and easy-to-understand study resources that make your learning journey smoother and more effective. Whether you're preparing for exams, reviewing class notes, or tackling tough concepts, you can count on me to deliver valuable, well-crafted content that aligns with your academic goals. Each resource has been carefully created with the intention to simplify complex topics, boost your confidence, and save you time. I aim to provide not just notes, but tools that truly make a difference in how you approach your studies. Explore the vault and discover everything you need to succeed—whether it’s detailed notes, in-depth study guides, or concise exam tips, everything is stored here for your academic growth. Thank you for trusting ScholarVault to be part of your learning experience. I’m excited to help you unlock your academic potential and achieve the success you deserve.

Read more Read less
4.0

433 reviews

5
202
4
106
3
70
2
16
1
39

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions