CISA Exam Question 381

Which of the following is the PRIMARY benefit of adopting an industry-level standard when developing an organization's cybersecurity program?
  • CISA Exam Question 382

    Which of the following should be the PRIMARY objective of conducting an audit follow-up of management action plans?
  • CISA Exam Question 383

    Which of the following is the BEST way to determine the adequacy of controls for detecting inappropriate network activity in an organization?
  • CISA Exam Question 384

    Which of the following should be the PRIMARY consideration when incorporating user training and awareness into a data loss prevention (DLP) strategy?
  • CISA Exam Question 385

    An IS auditor discovers a box of hard drives in a secured location that are overdue for physical destruction.
    The vendor responsible for this task was never made aware of these hard drives.
    Which of the following is the BEST course of action to address this issue?