Free CISA Exam Braindumps (page: 30)

Page 30 of 457

Which of the following is the PRIMARY purpose of a post-implementation review?

  1. To ensure project resources were optimized
  2. To ensure project deliverables were provided on time
  3. To determine whether expected benefits were realized from a project
  4. To calculate a project's actual cost against the projected cost

Answer(s): C



An organization's security policy mandates that all new employees must receive appropriate security awareness training. Which of the following metrics would
BEST assure compliance with this policy?

  1. Number of new hires who have violated enterprise security policies
  2. Percentage of new hires that have completed the training
  3. Number of reported incidents by new hires
  4. Percentage of new hires who report incidents

Answer(s): B



Which of the following business continuity activities prioritizes the recovery of critical functions?

  1. Business impact analysis (BIA)
  2. Risk assessment
  3. Business continuity plan (BCP) testing
  4. Disaster recovery plan (DRP) testing

Answer(s): A



An IS auditor found that a company executive is encouraging employee use of social networking sites for business purposes. Which of the following recommendations would BEST help to reduce the risk of data leakage?

  1. Requiring policy acknowledgment and nondisclosure agreements (NDAs) signed by employees
  2. Monitoring employees' social networking usage
  3. Establishing strong access controls on confidential data
  4. Providing education and guidelines to employees on use of social networking sites

Answer(s): D






Post your Comments and Discuss ISACA CISA exam with other Community members:

CISA Exam Discussions & Posts