Free CISA Exam Braindumps (page: 6)

Page 5 of 457

After an employee termination, a network account was removed, but the application account remained active. To keep this issue from recurring, which of the following is the BEST recommendation?

  1. Integrate application accounts with network single sign-on.
  2. Perform periodic access reviews.
  3. Retrain system administration staff.
  4. Leverage shared accounts for the application.

Answer(s): A



During an IT governance audit, an IS auditor notes that IT policies and procedures are not regularly reviewed and updated. The GREATEST concern to the IS auditor is that policies and procedures might not:

  1. reflect current practices.
  2. be subject to adequate quality assurance (QA).
  3. include new systems and corresponding process changes.
  4. incorporate changes to relevant laws.

Answer(s): A



Management receives information indicating a high level of risk associated with potential flooding near the organization's data center with in the next few years. As a result, a decision has been made to move data center operations to another facility on higher ground. Which approach has been adopted?

  1. Risk reduction
  2. Risk acceptance
  3. Risk transfer
  4. Risk avoidance

Answer(s): D



An emergency power-off switch should:

  1. not be in the computer room.
  2. not be identified
  3. be protected.
  4. be illuminated.

Answer(s): C






Post your Comments and Discuss ISACA CISA exam with other Community members:

CISA Exam Discussions & Posts