Free CISA Exam Braindumps (page: 24)

Page 24 of 457

Which of the following should be the FIRST step when developing a data loss prevention (DLP) solution for a large organization?

  1. Create the DLP policies and templates.
  2. Conduct a threat analysis against sensitive data usage.
  3. Conduct a data inventory and classification exercise.
  4. Identify approved data workflows across the enterprise.

Answer(s): C



Which of the following activities would allow an IS auditor to maintain independence while facilitating a control self-assessment (CSA)?

  1. Implementing the remediation plan
  2. Developing the remediation plan
  3. Developing the CSA questionnaire
  4. Partially completing the CSA

Answer(s): C



Which of the following is MOST important for an IS auditor to confirm when reviewing an organization's plans to implement robotic process automation (RPA) to automate routine business tasks?

  1. A benchmarking exercise of industry peers who use RPA has been completed.
  2. The end-to-end process is understood and documented.
  3. A request for proposal (RFP) has been issued to qualified vendors.
  4. Roles and responsibilities are defined for the business processes in scope.

Answer(s): B



Which of the following BEST facilitates the legal process in the event of an incident?

  1. Right to perform e-discovery
  2. Preserving the chain of custody
  3. Results of a root cause analysis
  4. Advice from legal counsel

Answer(s): B






Post your Comments and Discuss ISACA CISA exam with other Community members:

CISA Exam Discussions & Posts