CISA Exam Question 26
Internal audit reports should be PRIMARILY written for and communicated to:
CISA Exam Question 27
An organization has implemented a disaster recovery plan. Which of the following steps should be carried
out next?
out next?
CISA Exam Question 28
An investment advisor e-mails periodic newsletters to clients and wants reasonable assurance that no one
has modified the newsletter. This objective can be achieved by:
has modified the newsletter. This objective can be achieved by:
CISA Exam Question 29
Which of the following would BEST provide an information security manager with sufficient assurance that
a service provider complies with organization's information security requirements?
a service provider complies with organization's information security requirements?
CISA Exam Question 30
Which of the following should be included in an organization's IS security policy?