Summer Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Full Access Isaca CISA Tutorials

Page: 26 / 106
Total 1407 questions

Certified Information Systems Auditor Questions and Answers

Question 101

Which of the following would present the GREATEST risk within a release management process for a new application?

Options:

A.

Procedures are not updated to coincide with the production release schedule.

B.

Code is deployed to production without authorization.

C.

A newly added program may overwrite existing production files.

D.

An identified bug was not resolved.

Question 102

During which stage of the penetration test cycle does the tester utilize identified vulnerabilities to attempt to access the target system?

Options:

A.

Exfiltration

B.

Exploitation

C.

Reconnaissance

D.

Scanning

Question 103

An organization allows programmers to change production systems in emergency situations without seeking prior approval. Which of the following controls should an IS auditor consider MOST

important?

Options:

A.

Programmers' subsequent reports

B.

Limited number of super users

C.

Operator logs

D.

Automated log of changes

Question 104

Which of the following approaches would present the GREATEST concern for the implementation of a quality assurance (QA) function?

Options:

A.

Developers introducing the changes will review the work, as they are most familiar with them.

B.

Peer developers from the same development team who are unfamiliar with the changes will review them.

C.

Developers from a separate development team in the organization will review the submitted changes.

D.

Reviewers outside the development group who do not have development roles will review the changes.

Page: 26 / 106
Total 1407 questions