100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

CISA Exam 400 + Comprehensive Study Guide Questions and Correct Answers

Rating
-
Sold
-
Pages
105
Grade
A+
Uploaded on
10-12-2025
Written in
2025/2026

CISA Exam 400 + Comprehensive Study Guide Questions and Correct Answers Most important step in risk analysis is to identify a. Competitors b. controls c. vulnerabilities d. liabilities c. vulnerabilities In a risk-based audit planning, an IS auditor's first step is to identify: a. responsibilities of stakeholders b. high-risk areas within the organization c. cost Centre d. profit Centre b. high-risk areas within the organization When developing a risk-based audit strategy, an IS auditor should conduct a risk assessment to ensure that: a. segregation of duties to mitigate risks is in place b. all the relevant vulnerabilities and threats are identified c. regularity compliance is adhered to d. business is profitable b. all the relevant vulnerabilities and threats are identified Which of the following sit he role of IT steering committee? a. Issuance of Purchase Order (PO) to empaneled vendor b. providing hardware support c. prioritization of IT projects as per business requirement d. advises board on IT strategy c. prioritization of IT projects as per business requirement The chairperson for steering committee who can have significant impact on a business area would be the : a. board member b. executive level officer c. chief information officer (CIO) d. Business analyst b. executive level officer An IS steering committee should constitute of: a. board members b. user management c. key executives and representatives from user management d. members from IT dept. c. key executives and representatives from user management Which of the following is a PRIME role of an IT steering committee? a. IT support tot user management b. monitoring IT proprieties and milestones c. monitoring IT vendors d. Advise board members about new projects b. monitoring IT proprieties and milestones An IT steering committee should review the IT process to determine: a. alignment of IT processes with business requirement b. capacity management c. functionality of existing software d. stability of installed technology a. alignment of IT processes with business requirement Which of the following is a function of an IS steering committee? a. monitoring change management and control testing b. monitoring role conflict assessment c. approving and monitoring major projects, the sautés of IS plans and budgets d. monitoring service level agreements with third party vendors. c. approving and monitoring major projects, the sautés of IS plans and budgets IS department is in process of floating the request for proposal (RFP) for the acquisition of an application system. Who would MOST likely to approve content of RFP: a. project steering committee b. project sponsor c. project manager d. IS strategy committee a. project steering committee The prime objective of review of information systems buy IT steering committee should be to assess: a. alignment of IT processes as per business requirement b. alignment t of business process as per IT requirement c. The capacity of existing software d. the capacity of installed technology a. alignment of IT processes as per business requirement An IS auditor is reviewing an organization's IT strategic plan. He should FIRST review? a. Alignment of IT processes as per business requirement b. the business plan c. the capacity of installed technology d. latest technology trends b. the business plan

Show more Read less
Institution
CISA - Certified Information Systems Auditor
Course
CISA - Certified Information Systems Auditor











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CISA - Certified Information Systems Auditor
Course
CISA - Certified Information Systems Auditor

Document information

Uploaded on
December 10, 2025
Number of pages
105
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

CISA Exam 400 + Comprehensive Study Guide Questions and Correct
Answers
Most important step in risk analysis is to identify

a. Competitors
b. controls
c. vulnerabilities
d. liabilities
c. vulnerabilities
In a risk-based audit planning, an IS auditor's first step is to identify:

a. responsibilities of stakeholders
b. high-risk areas within the organization
c. cost Centre
d. profit Centre
b. high-risk areas within the organization
When developing a risk-based audit strategy, an IS auditor should conduct a risk
assessment to ensure that:

a. segregation of duties to mitigate risks is in place
b. all the relevant vulnerabilities and threats are identified
c. regularity compliance is adhered to
d. business is profitable
b. all the relevant vulnerabilities and threats are identified
Which of the following sit he role of IT steering committee?

a. Issuance of Purchase Order (PO) to empaneled vendor
b. providing hardware support
c. prioritization of IT projects as per business requirement
d. advises board on IT strategy
c. prioritization of IT projects as per business requirement

,The chairperson for steering committee who can have significant impact on a
business area would be the :

a. board member
b. executive level officer
c. chief information officer (CIO)
d. Business analyst
b. executive level officer
An IS steering committee should constitute of:

a. board members
b. user management
c. key executives and representatives from user management
d. members from IT dept.
c. key executives and representatives from user management
Which of the following is a PRIME role of an IT steering committee?

a. IT support tot user management
b. monitoring IT proprieties and milestones
c. monitoring IT vendors
d. Advise board members about new projects
b. monitoring IT proprieties and milestones
An IT steering committee should review the IT process to determine:


a. alignment of IT processes with business requirement
b. capacity management
c. functionality of existing software
d. stability of installed technology
a. alignment of IT processes with business requirement

,Which of the following is a function of an IS steering committee?

a. monitoring change management and control testing
b. monitoring role conflict assessment
c. approving and monitoring major projects, the sautés of IS plans and budgets
d. monitoring service level agreements with third party vendors.
c. approving and monitoring major projects, the sautés of IS plans and budgets
IS department is in process of floating the request for proposal (RFP) for the
acquisition of an application system. Who would MOST likely to approve content
of RFP:

a. project steering committee
b. project sponsor
c. project manager
d. IS strategy committee
a. project steering committee
The prime objective of review of information systems buy IT steering committee
should be to assess:

a. alignment of IT processes as per business requirement
b. alignment t of business process as per IT requirement
c. The capacity of existing software
d. the capacity of installed technology
a. alignment of IT processes as per business requirement
An IS auditor is reviewing an organization's IT strategic plan. He should FIRST
review?


a. Alignment of IT processes as per business requirement
b. the business plan
c. the capacity of installed technology
d. latest technology trends

, b. the business plan
Information security governance requires strategic alignment in terms of:

a. enterprise requirements are the basis for security requirements
b. security requirements are the basis for enterprise requirements
c. current technology trend
d. benchmarking with industry standards
a. enterprise requirements are the basis for security requirements
As a part of effective IT governance, IT plan should be consistent with the
organization's:

a. business plan
b. information security plan
c. business continuity plan
d. risk management plan
a. business plan
Best way to determine that whether IS functions support the organization's
business objective is to ensure that:

a. IS has latest available equipment’s
b. IS plans are designed as per business objectives
c. all resources are utilized effectively and efficiently
d. IS has proper control over outsourcing partners
b. IS plans are designed as per business objectives
To improve the IS alignment with business, which of the following tis the best
practice?

a. outsourcing risks are managed
b. use of latest technology to operate business
c. structured way of sharing of business information
R260,55
Get access to the full document:

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached

Get to know the seller
Seller avatar
NurseQueen1
4,7
(3)

Get to know the seller

Seller avatar
NurseQueen1 Teachme2-tutor
Follow You need to be logged in order to follow users or courses
Sold
4
Member since
1 year
Number of followers
0
Documents
202
Last sold
1 week ago
NurseQueen

Welcome to top Grade Exam for high quality study materials, exam guides and notes that will help you ace your exams and stay ahead in your studies. I offer detailed study notes ,w ell elaborated comprehensive answers and well organized summaries across a range of subjects including ,nursing,mental health, medical surgeon,economics,arts,business management and many others. Whether you're preparing for final exams or looking for help with assignments, you will find the resources you need here. With years of experience as a student and a dedicated tutor, I ensure that each document is carefully crafted ,accurate and easy to understand. Browse through my collection today and start studying smarter. I'm here to help you succeed.

Read more Read less
4,7

3 reviews

5
2
4
1
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can immediately select a different document that better matches what you need.

Pay how you prefer, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card or EFT and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions