
EC-CouncilAssociate C|CISO
Domain 2Objective 4
Understanding the Audit Management Process ACCISO Practice Questions (Page 10)
Part of the Information Security Controls and Audit Management domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 2–3 from this objective — we provide 56 practice questions to prepare you well beyond it. (estimate)
56questions here
12free pages
10concepts
Questions 46–50
- 46
What is the purpose of the audit follow-up phase?
Select an answer first - 47
A financial services company is planning an internal audit of its payment card processing environment. The audit team has limited resources and must focus on the highest-risk areas. The company must comply with PCI DSS and internal policies. Which approach should the audit manager take during the planning phase?
Select an answer first - 48
A new audit manager is reviewing the organization's audit management process. The manager notices that after audit reports are issued, there is no formal process for tracking whether recommendations are implemented. Which phase of the audit management process is missing?
Select an answer first - 49
An auditor is documenting evidence collected during a security audit. The evidence includes screenshots, configuration files, and interview notes. What is the most important practice for maintaining the integrity of this audit documentation?
Select an answer first - 50
Which framework is commonly used to align IT governance and management objectives with business goals, and can be used to guide audit planning?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.