ISACA CISA Übungsprüfungen
Zuletzt aktualisiert am 12.09.2025- Prüfungscode: CISA
- Prüfungsname: Certified Information Systems Auditor
- Zertifizierungsanbieter: ISACA
- Zuletzt aktualisiert am: 12.09.2025
One benefit of return on investment (ROI) analysts in IT decision making is that it provides the:
- A . basis for allocating indirect costs.
- B . cost of replacing equipment.
- C . estimated cost of ownership.
- D . basis for allocating financial resources.
An organization has decided to purchase a web-based email service from a third-party vendor and eliminate its own email server infrastructure.
What type of cloud computing environment would BEST meet the organization’s objective?
- A . Platform as a Service (PaaS)
- B . Software as a Service (SaaS)
- C . Database as a Service (DBaaS)
- D . Infrastructure as a Service (laaS)
Which of the following roles is PRIMARILY responsible for mitigating the risk of benefits not being realized in an IT project?
- A . Project sponsor
- B . Project manager
- C . Quality assurance (QA) manager
- D . Chief risk officer (CRO)
Which of the following would be MOST effective to protect information assets in a data center from theft by a vendor?
- A . Monitor and restrict vendor activities
- B . Issues an access card to the vendor.
- C . Conceal data devices and information labels
- D . Restrict use of portable and wireless devices.
Which of the following is the BEST way to ensure that business continuity plans (BCPs) will work effectively in the event of a major disaster?
- A . Prepare detailed plans for each business function.
- B . Involve staff at all levels in periodic paper walk-through exercises.
- C . Regularly update business impact assessments.
- D . Make senior managers responsible for their plan sections.
Which of the following BEST facilitates strategic program management?
- A . Implementing stage gates
- B . Establishing a quality assurance (QA) process
- C . Aligning projects with business portfolios
- D . Tracking key project milestones
Which of the following is the MOST important consideration when defining an operational log management strategy?
- A . Audit recommendations
- B . Industry benchmarking
- C . Event response procedures
- D . Stakeholder requirements
An audit identified that a computer system is not assigning sequential purchase order numbers to order requests. The IS auditor is conducting an audit follow-up to determine if management has reserved this finding.
Which of two following is the MOST reliable follow-up procedure?
- A . Review the documentation of recant changes to implement sequential order numbering.
- B . Inquire with management if the system has been configured and tested to generate sequential order numbers.
- C . Inspect the system settings and transaction logs to determine if sequential order numbers are generated.
- D . Examine a sample of system generated purchase orders obtained from management
An IS auditor is evaluating the risk associated with moving from one database management system (DBMS) to another.
Which of the following would be MOST helpful to ensure the integrity of the system throughout the change?
- A . Preserving the same data classifications
- B . Preserving the same data inputs
- C . Preserving the same data structure
- D . Preserving the same data interfaces
Which of the following would be MOST useful when analyzing computer performance?
- A . Statistical metrics measuring capacity utilization
- B . Operations report of user dissatisfaction with response time
- C . Tuning of system software to optimize resource usage
- D . Report of off-peak utilization and response time