Free ISACA CISA Exam Braindumps (page: 54)

When implementing a new IT maturity model, which of the following should occur FIRST?

  1. Determine the model elements to be evaluated.
  2. Benchmark with industry peers.
  3. Define the target IT maturity level.
  4. Develop performance metrics.

Answer(s): A



When reviewing an organization's information security policies, an IS auditor should verify that the policies have been defined PRIMARILY on the basis of:

  1. an information security framework.
  2. past information security incidents.
  3. a risk management process.
  4. industry best practices.

Answer(s): C



An organization that has suffered a cyberattack is performing a forensic analysis of the affected users' computers. Which of the following should be of GREATEST concern for the IS auditor reviewing this process?

  1. The chain of custody has not been documented.
  2. An imaging process was used to obtain a copy of the data from each computer.
  3. Audit was only involved during extraction of the information.
  4. The legal department has not been engaged.

Answer(s): A



The members of an emergency incident response team should be:

  1. assigned at the time of each incident.
  2. appointed by the CISO.
  3. restricted to IT personnel.
  4. selected from multiple departments.

Answer(s): D



Viewing page 54 of 457
Viewing questions 213 - 216 out of 1823 questions



Post your Comments and Discuss ISACA CISA exam prep with other Community members:

CISA Exam Discussions & Posts