100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4,6 TrustPilot
logo-home
Exam (elaborations)

CISA Mock Test 1 QUESTIONS WITH VERIFIED SOLUTIONS

Rating
-
Sold
-
Pages
46
Grade
A+
Uploaded on
01-11-2025
Written in
2025/2026

CISA Mock Test 1 QUESTIONS WITH VERIFIED SOLUTIONS

Institution
CISA
Course
CISA











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CISA
Course
CISA

Document information

Uploaded on
November 1, 2025
Number of pages
46
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

CISA Mock Test 1 QUESTIONS WITH
VERIFIED SOLUTIONS

Who is accountable for ensuring relevant controls over IS resources? - ANS ✔✔Resource owners



The primary consideration of an IS auditor when evaluating a fraudulent transaction
is_______________. - ANS ✔✔To ensure that the integrity of the evidence is maintained.



An IS auditor observes that an enterprise has outsourced software development to a startup
company or a third party. To ensure that the enterprise's investment in software is protected,
which of the following should be recommended by the IS auditor? - ANS ✔✔There should be a
source code escrow agreement in place.



An IS auditor finds a small number of user access requests that managers had not authorised
through the normal predefined workflow steps and escalation rules. The IS auditor should
_________________. - ANS ✔✔Perform an additional analysis



Responsibility of granting access to data with the help of security officer resides
with________________. - ANS ✔✔The data owners



An IS auditor is reviewing the physical security controls of a data center and notices several
areas for concern. Which of the following areas is the most important? - ANS ✔✔The
emergency exit door is blocked.



Which of the following choices best helps information owners to classify data correctly? - ANS
✔✔Training on organisational policies and standards.

,A test that is conducted when a system is in the development phase is_______________. - ANS
✔✔A unit test



An enterprise's risk appetite is best established by_________________. - ANS ✔✔The steering
committee



Which of the following is the best performance indicator for the effectiveness of an incident
management program? - ANS ✔✔Incident resolution meantime.



Backups will most effectively minimise a disruptive incident's impact on a business if they
are__________________. - ANS ✔✔Scheduled according to the service delivery objectives.



An IS audit reveals that an organisation is not proactively addressing known vulnerabilities.
Which of the following should the IS auditor recommend the organisation does first? - ANS
✔✔Assess the security risks to the business.



An IS auditor has completed the fieldwork phase of a network security review and is preparing
the initial draft of the audit report. Which of the following findings should be ranked as the
highest risk? - ANS ✔✔The network device inventory is incomplete.



Which of the following is the primary advantage of parallel processing for a new system
implementation? - ANS ✔✔Assurance that the new system meets functional requirements.



During an internal audit of automated controls, an IS auditor identifies that the integrity of data
transfer between systems has not been tested since its successful implementation two years
ago. Which of the following should the auditor do next? - ANS ✔✔Review relevant system
changes.



The MAIN benefit of using an integrated test facility (ITF) as an online auditing technique is that
it enables________________. - ANS ✔✔Auditors to test without impacting production data.

,Which of the following should be the MOST important consideration when conducting a review
of IT portfolio management? - ANS ✔✔Controls to minimise risk and maximise value for the IT
portfolio



Which of the following would BEST facilitate the successful implementation of an IT-related
framework? - ANS ✔✔Involving appropriate business representation within the framework.



What is the MAIN reason to use incremental backups? - ANS ✔✔To minimise the backup time
and resources



When auditing the security architecture of an online application, an IS auditor should FIRST
review the_________________. - ANS ✔✔Configuration of the firewall.



An organisation is planning an acquisition and has engaged an IS auditor to evaluate the IT
governance framework of the target company. Which of the following would be MOST helpful in
determining the effectiveness of the framework? - ANS ✔✔Recent third-party IS audit reports



The IT Assurance Framework consists of all of the following except _______________. - ANS
✔✔ISACA Audit Job Practice



An audit project has been taking far too long, and management is beginning to ask questions
about its schedule and completion. This audit may be lacking________________. - ANS
✔✔Effective project management



Which of the following is true about the ISACA Audit Standards and Audit Guidelines? - ANS
✔✔ISACA Audit Standards are mandatory.



For the purposes of audit planning, can an auditor rely upon the audit client's risk assessment? -
ANS ✔✔Yes, if the risk assessment was performed by a qualified external entity.

, An auditor is auditing the user account request and fulfilment process. The event population
consists of hundreds of transactions, so the auditor cannot view them all. The auditor wants to
view a random selection of transactions, as well as some of the transactions for privileged
access requests. This type of sampling is known as_____________. - ANS ✔✔Judgmental
sampling



An auditor is developing an audit plan for an accounts payable function. Rather than randomly
selecting transactions to examine, the auditor wants to select transactions from low, medium,
and large payment amounts. Which sample methodology is appropriate for this approach - ANS
✔✔Stratified sampling



What is the objective of the ISACA audit standard on organisational independence? - ANS
✔✔The auditor's placement in the organisation should ensure the auditor can act
independently.



Which of the following audit types is appropriate for a financial services provider such as a
payroll service? - ANS ✔✔SSAE18



An auditor is auditing an organisation's personnel onboarding process and is examining the
background check process. The auditor is mainly interested in whether background checks are
performed for all personnel and whether background check results lead to no-hire decisions.
Which of the following evidence-collection techniques will support this audit objective? - ANS
✔✔Request the background check ledger that includes the candidates' names, results of
background checks, and hire/no-hire decisions.



According to ISACA Audit Standard 1202, which types of risks should be considered when
planning an audit? - ANS ✔✔Business risk



Which of the following is the best example of a control self-assessment of a user account
provisioning process? - ANS ✔✔Reconciliation of all user account changes against approved
requests in the ticketing system.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
BravelRadon Havard School
Follow You need to be logged in order to follow users or courses
Sold
890
Member since
4 year
Number of followers
540
Documents
43704
Last sold
4 days ago
EXAM HUB

Welcome to Exam Hub Are you looking for high-quality, exam-ready notes, past papers, Test Banks, and well-researched study materials to boost your grades? You’re in the right place! I create and upload detailed, easy-to-understand, and well-structured documents across multiple subjects. All my materials are designed to help you study , save time, and excel in your coursework and exams! On this page NURSING EXAMS,STUDY GUIDES,TESTBANKS AND QUALITY EXAMS IS THE KEY TO STUDENTS CAREER EXCELLENCE, you find all documents, package deals, and flashcards offered by BravelRadon (EXAM HUB STORES!)....kindly recommend a friend for A+ GARANTEEd either you are a first-year student or final-year graduation! best of luck!

Read more Read less
3,5

158 reviews

5
57
4
30
3
32
2
8
1
31

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can immediately select a different document that better matches what you need.

Pay how you prefer, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card or EFT and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions