
Certified Information Systems Auditor
Domain 5Objective 3
Identity and Access Management CISA Practice Questions (Page 5)
Part of the Protection of Information Assets domain, which accounts for 26% of the CISA exam.
23questions here
5free pages
8concepts
26%of the exam
Questions 21–23
- 21
A company wants to allow its employees to access a partner's application using their corporate credentials. The partner's application is hosted in a different domain. Which technology should the company use?
Select an answer first - 22
A company's remote workforce uses laptops with biometric fingerprint readers. The security team wants to add an additional authentication factor for accessing the corporate VPN. Which option would provide a true second factor?
Select an answer first - 23
A company is subject to GDPR and must ensure that personal data is only accessible to employees who need it for their job. The company wants to demonstrate compliance to regulators. Which IAM practice is MOST important?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CISA
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISA” is a trademark of its owner, used for identification only.