100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

Domain 2 ISACA Questions & 100% Correct Answers

Rating
-
Sold
-
Pages
17
Grade
A+
Uploaded on
09-09-2024
Written in
2024/2025

As results of profitability pressure, senior management of an enterprise decided to keep investments in information security at an inadequate level, which of the following is the BEST recommendation of an auditor? Request that the senior management accept the risk :~~ Senior management determines resource allocations. Having established that the level of security is inadequate, it is imperative that the senior management accepts the risk resulting from their decisions. To support an organizations goals, and IT department should have: long and short term plans :~~ to ensure contribution to the realization of an organizations overall goals, the IT department should have long and short term range plans that are consistent with the organizations broader strategic plans for attaining its goals. Which of the following is the BEST reference for an auditor to determine a vendors ability to meet SLA agreement requirements for a critical IT security service? Agreed on key performance indicators 2 | P a g e | © copyright 2024/2025 | Grade A+ Master01 | September, 2024/2025 | Latest update :~~ KPI's are metrics that allow for a means to measure performance. SLAs are statements related to an expected service level. For ex- an internet service provider may guarantee that their service will be available 99% of the time - results of a BCP tests typically are included as part of due dilligance review When implementing an IT governance framework in an organization the MOST important objective is: IT alignment with business :~~ The goals of IT governance are to improve IT performance, deliver optimum business value, and ensure regulatory compliance. The key practice in support of these goals is the strategic alignment of IT with the business. To achieve alignment, all other choices need to be tied to business practices and strategies. When reviewing the development of information security policies, the PRIMARY focus of an auditor should be on assuring that these policies: strike a balance between business and security requirements :~~ Because information security policies must be aligned with an organizations business and security objectives, this is the primary focus of the IS auditor when reviewing the development of information security policies. 3 | P a g e | © copyright 2024/2025 | Grade A+ Master01 | September, 2024/2025 | Latest update - its essential that the policies are approved; however, that is not the primary focus during the development of the policies Which of the following is responsible for the approval of an information security policy? board of directors :~~ normally approval of an information systems security policy is the responsibility of top management or the board of directors. Which of the following is the most important element for the successful implementation of IT governance? identifying organizational strategies :~~ The key objective of an IT governance program is to support the business; therefore, the identification of organizations strategies is necessary to ensure alignment between IT and corporate governance. Without identification of organizational strategies the other choices would be ineffective. - a formal sec policy is a key part of sec p

Show more Read less
Institution
Domain 2 ISACA
Course
Domain 2 ISACA










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Domain 2 ISACA
Course
Domain 2 ISACA

Document information

Uploaded on
September 9, 2024
Number of pages
17
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

1 | P a g e | © copyright 2024/2025 | Grade A+




Domain 2 ISACA Questions & 100%
Correct Answers
As results of profitability pressure, senior management of an enterprise decided to

keep investments in information security at an inadequate level, which of the

following is the BEST recommendation of an auditor? Request that the senior

management accept the risk

✓ :~~ Senior management determines resource allocations. Having

established that the level of security is inadequate, it is imperative that the

senior management accepts the risk resulting from their decisions.




To support an organizations goals, and IT department should have: long and short

term plans

✓ :~~ to ensure contribution to the realization of an organizations overall

goals, the IT department should have long and short term range plans that

are consistent with the organizations broader strategic plans for attaining its

goals.




Which of the following is the BEST reference for an auditor to determine a vendors

ability to meet SLA agreement requirements for a critical IT security service?

Agreed on key performance indicators




Master01 | September, 2024/2025 | Latest update

, 2 | P a g e | © copyright 2024/2025 | Grade A+


✓ :~~ KPI's are metrics that allow for a means to measure performance. SLAs

are statements related to an expected service level. For ex- an internet

service provider may guarantee that their service will be available 99% of

the time




- results of a BCP tests typically are included as part of due dilligance review




When implementing an IT governance framework in an organization the MOST

important objective is: IT alignment with business

✓ :~~ The goals of IT governance are to improve IT performance, deliver

optimum business value, and ensure regulatory compliance. The key

practice in support of these goals is the strategic alignment of IT with the

business. To achieve alignment, all other choices need to be tied to business

practices and strategies.




When reviewing the development of information security policies, the PRIMARY

focus of an auditor should be on assuring that these policies: strike a balance

between business and security requirements


✓ :~~ Because information security policies must be aligned with an

organizations business and security objectives, this is the primary focus of

the IS auditor when reviewing the development of information security

policies.




Master01 | September, 2024/2025 | Latest update

, 3 | P a g e | © copyright 2024/2025 | Grade A+


- its essential that the policies are approved; however, that is not the primary

focus during the development of the policies




Which of the following is responsible for the approval of an information security

policy? board of directors

✓ :~~ normally approval of an information systems security policy is the

responsibility of top management or the board of directors.




Which of the following is the most important element for the successful

implementation of IT governance? identifying organizational strategies

✓ :~~ The key objective of an IT governance program is to support the

business; therefore, the identification of organizations strategies is

necessary to ensure alignment between IT and corporate governance.

Without identification of organizational strategies the other choices would

be ineffective.




- a formal sec policy is a key part of sec program implementation, but even the

policy must be based on organizational strategies.




By evaluating application development projects against the capability maturity

model, an auditor should be able to verify that: predictable software processes are

followed




Master01 | September, 2024/2025 | Latest update

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Graders University Of New Hampshire
View profile
Follow You need to be logged in order to follow users or courses
Sold
508
Member since
2 year
Number of followers
167
Documents
27095
Last sold
17 hours ago
Study Smart

Your one-stop resource for high-quality, exam-focused study materials. Here, you'll find expertly crafted summaries, past exam papers, notes, and assignments tailored to help you succeed in your courses. Every document is written with clarity, accuracy, and exam performance in mind—saving you hours of studying and helping you boost your grades. ✅ Clear and well-structured content ✅ Covers key exam topics and common questions ✅ Trusted by students for academic success ✅ Instant downloads and affordable prices Whether you're cramming for finals or just staying ahead in class, my materials are designed to make your studying smarter, not harder. Take a look around and get the edge you need!

Read more Read less
3.8

121 reviews

5
54
4
26
3
21
2
4
1
16

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions