CISA Exam Details

  • Exam Code
    :CISA
  • Exam Name
    :Certified Information Systems Auditor
  • Certification
    :Isaca Certifications
  • Vendor
    :Isaca
  • Total Questions
    :2178 Q&As
  • Last Updated
    :May 26, 2026

Isaca CISA Online Questions & Answers

  • Question 351:

    A senior IS auditor suspects that a PC may have been used to perpetrate fraud in a finance department. The auditor should FIRST report this suspicion to:

    A. audit management.
    B. the police.
    C. the audit committee.
    D. auditee line management.

  • Question 352:

    An IS auditor is reviewing the process followed in identifying and prioritizing the critical business processes. This process is part of the:

    A. balanced scorecard.
    B. business impact analysis (BIA).
    C. operations component of the business continuity plan (BCP).
    D. enterprise risk management plan.

  • Question 353:

    An IS auditor suspects an organization's computer may have been used to commit a crime. Which of the following is the auditor's BEST course of action?

    A. Examine the computer to search for evidence supporting the suspicions.
    B. Advise management of the crime after the investigation.
    C. Contact the incident response team to conduct an investigation.
    D. Notify local law enforcement of the potential crime before further investigation.

  • Question 354:

    Which of the following BEST facilitates the successful implementation of IT performance monitoring?

    A. Determining goals for IT resources and processes
    B. Identifying tools to automate performance measurement
    C. Establishing templates for periodic reporting to management
    D. Adopting global standards and measurement norms

  • Question 355:

    An IS auditor wants to verify alignment of the organization's business continuity plan (BCP) with the business strategy. Which of the following would be MOST helpful to review?

    A. Disaster recovery plan (DRP) testing results
    B. Business impact analysis (BIA)
    C. Corporate risk management policy
    D. Key performance indicators (KPIs)

  • Question 356:

    Which of the following is MOST useful for determining whether the goals of IT are aligned with the organization's goals?

    A. Balanced scorecard
    B. Enterprise dashboard
    C. Enterprise architecture (EA)
    D. Key performance indicators (KPIs)

  • Question 357:

    Which of the following would BEST indicate the effectiveness of a security awareness training program?

    A. Results of third-party social engineering tests
    B. Employee satisfaction with training
    C. Increased number of employees completing training
    D. Reduced unintentional violations

  • Question 358:

    Which of the following will provide the GREATEST assurance to IT management that a quality management system (QMS) is effective?

    A. A high percentage of stakeholders satisfied with the quality of IT
    B. Ahigh percentage of incidents being quickly resolved
    C. Ahigh percentage of IT processes reviewed by quality assurance (QA)
    D. Ahigh percentage of IT employees attending quality training

  • Question 359:

    Which of the following is the BEST sampling method when performing an audit test to determine the number of access requests without approval signatures?

    A. Attribute sampling
    B. Judgment sampling
    C. Stratified sampling
    D. Stop-or-go sampling

  • Question 360:

    Which of the following is an estimation technique where the results can be measure by the functional size of an information system based on the number and complexity of input, output, interface and queries?

    A. Functional Point analysis
    B. Gantt Chart
    C. Time box management
    D. Critical path methodology

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Isaca exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CISA exam preparations and Isaca certification application, do not hesitate to visit our Vcedump.com to find your solutions here.