Free CISA Exam Braindumps (page: 11)

Page 10 of 457

An organization recently implemented a cloud document storage solution and removed the ability for end users to save data to their local workstation hard drives.
Which of the following findings should be the IS auditor's GREATEST concern?

  1. Mobile devices are not encrypted.
  2. Users are not required to sign updated acceptable use agreements.
  3. The business continuity plan (BCP) was not updated.
  4. Users have not been trained on the new system.

Answer(s): A



Which of the following security measures will reduce the risk of propagation when a cyberattack occurs?

  1. Data loss prevention (DLP) system
  2. Perimeter firewall
  3. Network segmentation O Web application firewall

Answer(s): C



An IS auditor notes that the previous year's disaster recovery test was not completed within the scheduled time frame due to insufficient hardware allocated by a third-party vendor. Which of the following provides the BEST evidence that adequate resources are now allocated to successfully recover the systems?

  1. Hardware change management policy
  2. An up-to-date RACI chart
  3. Vendor memo indicating problem correction
  4. Service level agreement (SLA)

Answer(s): D



When implementing Internet Protocol security (IPsec) architecture, the servers involved in application delivery:

  1. channel access only through the public-facing firewall.
  2. channel access through authentication.
  3. communicate via Transport Layer Security (TLS).
  4. block authorized users from unauthorized activities.

Answer(s): B






Post your Comments and Discuss ISACA CISA exam with other Community members:

CISA Exam Discussions & Posts