ISACA CISA Exam Questions
Certified Information Systems Auditor (Page 59 )

Updated On: 28-Feb-2026

During the post-implementation review of an application that was implemented six months ago, which of the following would be MOST helpful in determining whether the application meets business requirements?

  1. Project closure report and lessons-learned documents from the project management office (PMO)
  2. User acceptance testing (UAT) results and sign-off from users on meeting business requirements
  3. Difference between approved budget and actual project expenditures determined post implementation
  4. Comparison between expected benefits from the business case and actual benefits after implementation

Answer(s): B



An organization maintains an inventory of the IT applications used by its staff. Which of the following would pose the GREATEST concern with regard to the quality of the inventory data?

  1. Inventory data is available on and downloadable from the corporate intranet.
  2. The inventory does not contain a formal risk ranking for all the IT applications.
  3. The application owner and contact information fields are not required to be completed.
  4. The organization has not established a formal recertification process for the inventory data.

Answer(s): D



What is BEST for an IS auditor to review when assessing the effectiveness of changes recently made to processes and tools related to an organization's business continuity plan (BCP)?

  1. Change management processes
  2. Updated inventory of systems
  3. Full test results
  4. Completed test plans

Answer(s): C



IS management has recently disabled certain referential integrity controls in the database management system (DBMS) software to provide users increased query performance. Which of the following controls will MOST effectively compensate for the lack of referential integrity?

  1. More frequent data backups
  2. Periodic table link checks
  3. Performance monitoring tools
  4. Concurrent access controls

Answer(s): B



What would be an IS auditor's BEST recommendation upon finding that a third- party IT service provider hosts the organization's human resources (HR) system in a foreign country?

  1. Review third-party audit reports.
  2. Conduct a privacy impact analysis.
  3. Implement change management review.
  4. Perform background verification checks.

Answer(s): B



Viewing page 59 of 366
Viewing questions 291 - 295 out of 1823 questions



Post your Comments and Discuss ISACA CISA exam dumps with other Community members:

CISA Exam Discussions & Posts

AI Tutor