
Certified Information Systems Auditor
Domain 5Objective 4
Network, Endpoint, and Data Security CISA Practice Questions (Page 1)
Part of the Protection of Information Assets domain, which accounts for 26% of the CISA exam.
35questions here
7free pages
10concepts
26%of the exam
Questions 1–5
- 1
Which network security component is specifically designed to inspect traffic for known attack patterns and actively block malicious packets in real time?
Select an answer first - 2
A company allows employees to use personal smartphones for work email and calendar. The security team wants to protect corporate data without infringing on employee privacy. They are considering either MDM with full device management or MAM with app-level controls. Which approach best balances security and privacy?
Select an answer first - 3
A company needs to ensure the integrity and authenticity of a software update before it is installed on employee workstations. The update is distributed over the internet. Which approach should the company use?
Select an answer first - 4
What is the primary role of a Certificate Authority (CA) in a Public Key Infrastructure (PKI)?
Select an answer first - 5
A company needs to securely exchange encrypted files with an external partner. The partner does not have a pre-shared key, and the company wants to ensure that only the partner can decrypt the files. Which encryption approach should the company use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISA” is a trademark of its owner, used for identification only.