Learning
Learning
Loading practice session...
CISA · Exam domain
35 practice questions in this domain. AI-tutored explanations for every answer.
Sign in to practice all 35 questions with progress tracking and AI explanations.
1. Performance of a third party should be compared to the agreed-upon service-level metrics and must be
Explanation
All performance under an SLA must be reviewed by management against agreed service levels.
2. What is the most important responsibility of the IT security person?
Explanation
The IT security person’s primary role is to control and monitor compliance to data security policies.
3. Segregation of duties may not be practical in a small environment. A single employee may be performing the combined functions of server operator and application programmer. The IS auditor should recommend controls for which of the following?
Explanation
Compensating controls like verifying only approved program changes are implemented mitigate SoD issues.
4. What are the four basic types of metrics that can be used to measure IT performance?
Explanation
The four basic IT performance metrics are efficiency, implementation, impact, and effectiveness.
5. What type of control is representative of exception reporting?
Explanation
Exception reporting is a processing control used to identify and handle input errors before processing.
Practice all 35+ questions in this domain
Start free practice →