CISA Exam Question 371

When auditing third-party service providers, an IS auditor should be concerned with which of the following?
  • CISA Exam Question 372

    In which of the following database model is the data organized into a tree-like structure, implying a single parent for each record?
  • CISA Exam Question 373

    During an audit, an IS auditor notes that an organization's business continuity plan (BCP) does not adequately address information confidentiality during a recovery process. The IS auditor should recommend that the plan be modified to include:
  • CISA Exam Question 374

    In the IT department where segregation of duties is not feasible due to a limited number of resources, a team member is performing the functions of computer operator and reviewer of application logs. Which of the following would be the IS auditor's BEST recommendation?
  • CISA Exam Question 375

    Which of the following is the BEST key performance indicator (KPI) for determining how well the IT policy is aligned to the business requirements?