CISA Exam Question 291

When an IS audit reveals that a firewall was unable to recognize a number of attack attempts, the auditor's BEST recommendation is to place an intrusion detection system (IDS) between the firewall and:
  • CISA Exam Question 292

    Which task should an IS auditor complete FIRST during the preliminary planning phase of a database security review?
  • CISA Exam Question 293

    Which of the following BEST ensures the quality and integrity of test procedures used in audit analytics?
  • CISA Exam Question 294

    An IT governance body wants to determine whether IT service delivery is based on consistently effective processes. Which of the following is the BEST approach?
  • CISA Exam Question 295

    Which type of review is MOST important to conduct when an IS auditor is informed that a recent internal exploitation of a bug has been discovered in a business application?