Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Information Systems Auditor

Domain 3Objective 4

Control Identification and Design CISA Practice Questions (Page 3)

Part of the Information Systems Acquisition, Development and Implementation domain, which accounts for 12% of the CISA exam.

28questions here
6free pages
5concepts
12%of the exam

Questions 11–15

  1. 11application · medium

    A project team is developing a new customer support system. They have identified a risk that customer data could be exposed through a misconfigured database. Which control would be most directly mapped to this risk?

    Select an answer first
  2. 12application · medium

    An organization is adopting Agile methodology for a new customer relationship management (CRM) system. The project manager wants to ensure that security controls are integrated throughout the development lifecycle. Which approach best aligns with Agile principles while ensuring control integration?

    Select an answer first
  3. 13foundation · easy

    Why is it important to integrate controls into project management processes?

    Select an answer first
  4. 14foundation · easy

    During the requirements definition phase of a new financial system, the project team identifies a risk that unauthorized users might access sensitive data. Which activity best exemplifies the IS auditor's role in control identification at this stage?

    Select an answer first
  5. 15foundation · easy

    Which of the following is an example of a detective control in a system development project?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISA” is a trademark of its owner, used for identification only.