Free CISA Exam Braindumps (page: 41)

Page 41 of 457

A new privacy regulation requires a customer's privacy information to be deleted within 72 hours, if requested. Which of the following would be an IS auditor's
GREATEST concern regarding compliance to this regulation?

  1. Outdated online privacy policies
  2. End user access to applications with customer information
  3. Incomplete backup and retention policies
  4. Lack of knowledge of where customers' information is saved

Answer(s): D



A computer forensic audit is MOST relevant in which of the following situations?

  1. Inadequate controls in the IT environment
  2. Mismatches in transaction data
  3. Data loss due to hacking of servers
  4. Missing server patches

Answer(s): C



A month after a company purchased and implemented system and performance monitoring software, reports were too large and therefore were not reviewed or acted upon. The MOST effective plan of action would be to:

  1. evaluate replacement systems and performance monitoring software.
  2. use analytical tools to produce exception reports from the system and performance monitoring software.
  3. re-install the system and performance monitoring software.
  4. restrict functionality of system monitoring software to security-related events.

Answer(s): B



An organization seeks to control costs related to storage media throughout the information life cycle while still meeting business and regulatory requirements.
Which of the following is the BEST way to achieve this objective?

  1. Perform periodic tape backups.
  2. Utilize solid state memory.
  3. Stream backups to the cloud.
  4. Implement a data retention policy

Answer(s): D






Post your Comments and Discuss ISACA CISA exam with other Community members:

CISA Exam Discussions & Posts