CISA Exam Question 336

Upon completion of audit work, an IS auditor should:
  • CISA Exam Question 337

    An IS auditor is reviewing an organization that performs backups on local database servers every two weeks and does not have a formal policy to govern data backup and restoration procedures. Which of the following findings presents the GREATEST risk to the organization?
  • CISA Exam Question 338

    An IS auditor has been tasked with auditing the inventory control process for a large organization that processes millions of data transactions. Which of the following is the BEST testing strategy to adopt?
  • CISA Exam Question 339

    An IS auditor has been asked to perform a post-implementation review of a newly developed system. When reviewing the testing phase results, the auditor observed that separate modules of the system tested correctly in the user acceptance testing (UAT) phase, but some features did not work as expected when moved to production. Which of the following was MOST likely omitted prior to implementation?
  • CISA Exam Question 340

    A small organization is experiencing rapid growth and plans to create a new information security policy.
    Which of the following is MOST relevant to creating the policy?