
Certified Information Systems Auditor
Domain 5Objective 5
Security Operations and Monitoring CISA Practice Questions (Page 1)
Part of the Protection of Information Assets domain, which accounts for 26% of the CISA exam.
25questions here
5free pages
3concepts
26%of the exam
Questions 1–5
- 1
Which of the following best describes the purpose of penetration testing?
Select an answer first - 2
An organization wants to assess the security of its internal network without disrupting operations. They have a limited budget and need to identify the most critical vulnerabilities. Which approach is most cost-effective and least disruptive?
Select an answer first - 3
A security analyst notices that a server is sending encrypted traffic to an external IP address at regular intervals. The traffic volume is low, but the destination is not on any approved list. Which type of attack is most likely?
Select an answer first - 4
A company's SIEM generates an alert for a single workstation showing multiple failed logon attempts followed by a successful logon from an IP address in a foreign country. The workstation user is currently on vacation. Which action should the security analyst take FIRST?
Select an answer first - 5
A security analyst is investigating a potential data breach. The SIEM shows that a user account was used to access a sensitive database at 2:00 AM, but the user's physical badge was not used to enter the building that day. Which type of attack is most likely indicated?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISA” is a trademark of its owner, used for identification only.