
Certified Information Systems Auditor
Domain 1Objective 1
Audit Frameworks and Standards CISA Practice Questions (Page 3)
Part of the Information Systems Auditing Process domain, which accounts for 18% of the CISA exam.
28questions here
6free pages
6concepts
18%of the exam
Questions 11–15
- 11
An IS auditor is performing an operational audit of a company's supply chain management system. The auditor discovers that the system has a critical vulnerability that could allow unauthorized access to sensitive supplier data. The auditor is unsure whether to report this immediately or wait for the final audit report. According to ISACA IS Audit Standards, what should the auditor do?
Select an answer first - 12
An IS auditor is performing a risk assessment for a financial institution's new online banking platform. The auditor is unsure how to apply the ISACA IS Audit Standard on risk assessment in the context of a cloud-hosted service. Which resource should the auditor consult to interpret the standard and implement best practices?
Select an answer first - 13
During an audit, an IS auditor discovers that the company's IT manager has been approving vendor invoices that are not supported by purchase orders. The auditor plans to report this finding. However, the IT manager is also the auditor's direct supervisor. According to the ISACA Code of Professional Ethics, what should the auditor do?
Select an answer first - 14
What is the primary role of ISACA IS Audit Guidelines in an audit engagement?
Select an answer first - 15
Which principle of the ISACA Code of Professional Ethics requires an IS auditor to refrain from disclosing confidential information without proper authority?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISA” is a trademark of its owner, used for identification only.