CISA Exam Question 26

During an external review, an IS auditor observes an inconsistent approach in classifying system criticality within the organization. Which of the following should be recommended as the PRIMARY factor to determine system criticality?
  • CISA Exam Question 27

    What should an IS auditor evaluate FIRST when reviewing an organization's response to new privacy legislation?
  • CISA Exam Question 28

    Which of the following is the PRIMARY objective of performing quality assurance (QA) in a system development process?
  • CISA Exam Question 29

    An IS auditor notes that several employees are spending an excessive amount of time using social media sites for personal reasons. Which of the following should the auditor recommend be performed FIRST?
  • CISA Exam Question 30

    Which of the following measures BEST mitigates the risk of data exfiltration during a cyberattack?