CISA Exam Question 511

An IS auditor has learned that access privileges are not periodically reviewed or updated. Which of the following would provide the BEST evidence to determine whether transactions have been executed by authorized employees?
  • CISA Exam Question 512

    Which of the following is the BEST testing approach to facilitate rapid identification of application interface errors?
  • CISA Exam Question 513

    An IS auditor finds ad hoc vulnerability scanning is in place with no clear alignment to the organization's wider security threat and vulnerability management program.
    Which of the following would BEST enable the organization to work toward improvement in this area?
  • CISA Exam Question 514

    Which of the following types of firewalls provides the GREATEST degree of control against hacker intrusion?
  • CISA Exam Question 515

    Which of the following should be used as the PRIMARY basis for prioritizing IT projects and initiatives?