ISACA CISA Exam Questions
Certified Information Systems Auditor (Page 38 )

Updated On: 24-Feb-2026

When evaluating the management practices at a third-party organization providing outsourced services, the IS auditor considers relying on an independent auditor's report. The IS auditor would FIRST:

  1. review the objectives of the audit.
  2. examine the independent auditor's workpapers.
  3. discuss the report with the independent auditor.
  4. determine if recommendations have been implemented.

Answer(s): A



What is the BEST control to address SQL injection vulnerabilities?

  1. Digital signatures
  2. Input validation
  3. Unicode translation
  4. Secure Sockets Layer (SSL) encryption

Answer(s): B



In a typical network architecture used for e-commerce, a load balancer is normally found between the:

  1. routers and the web servers.
  2. mail servers and the mail repositories.
  3. users and the external gateways.
  4. databases and internal firewalls.

Answer(s): A



During an audit of a financial application, it was determined that many terminated users' accounts were not disabled. Which of the following should be the IS auditor's NEXT step?

  1. Perform a review of terminated users' account activity.
  2. Conclude that IT general controls are ineffective.
  3. Communicate risks to the application owner.
  4. Perform substantive testing of terminated users' access rights.

Answer(s): C



When developing metrics to measure the contribution of IT to the achievement of business goals, the MOST important consideration is that the metrics:

  1. measure the effectiveness of IT controls in the achievement of IT strategy.
  2. provide quantitative measurement of IT initiatives in relation with business targets.
  3. are expressed in terms of how IT risk impacts the achievement of business goals.
  4. are used by similar industries to measure the effect of IT on business strategy.

Answer(s): B






Post your Comments and Discuss ISACA CISA exam dumps with other Community members:

Join the CISA Discussion