An IS auditor determines elevated administrator accounts for servers that are not properly checked out and then back in after each use. Which of the following is the MOST appropriate sampling technique to determine the scope of the problem?
A. Haphazard samplingAn IS auditor finds that irregularities have occurred and that auditee management has chosen to ignore them. If reporting to external authorities is required which of the following is the BEST action for the IS auditor to take?
A. Submit the report to appropriate regulators immediately.An IS auditor has been tasked with auditing the inventory control process for a large organization that processes millions of data transactions. Which of the following is the BEST testing strategy to adopt?
A. Continuous monitoringWhich control type would provide the MOST useful input to a root cause analysis?
A. CompensatingA vendor requires privileged access to a key business application. Which of the following is the BEST recommendation to reduce the risk of data leakage?
A. Implement real-time activity monitoring for privileged rolesWhich of the following would be MOST useful to an IS auditor when making recommendations to enable continual improvement of IT processes over time?
A. IT incident logAn IS auditor has identified deficiencies within the organization's software development life cycle policies. Which of the following should be done NEXT?
A. Document the findings in the audit report.Which of the following would BEST manage the risk of changes in requirements after the analysis phase of a business application development project?
A. Expected deliverables meeting project deadlinesA contract bid is digitally signed and electronically mailed. The PRIMARY advantage to using a digital signature is that:
A. the bid cannot be forged even if the keys are compromised.An IS auditor is reviewing desktop software profiles and notes that a user has downloaded and installed several games that are not approved by the company. Which of the following is the MOST significant risk that could result from this situation?
A. Violation of user's privacyNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Isaca exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CISA exam preparations and Isaca certification application, do not hesitate to visit our Vcedump.com to find your solutions here.