Exam CISA Topic 3 Question 737 Discussion

Actual exam question for ISACA's CISA exam
Question #: 737
Topic #: 3
Which task should an IS auditor complete FIRST during the preliminary planning phase of a database security review?

Suggested Answer: B Vote an answer

Explanation
The first task that an IS auditor should complete during the preliminary planning phase of a database security review is to determine which databases will be in scope. The scope defines the boundaries and objectives of the audit, as well as the resources, time, and budget required. The IS auditor should identify the databases that are relevant to the audit based on factors such as their criticality, risk, complexity, size, type, location, and ownership. The IS auditor should also consider the regulatory, contractual, and organizational requirements that apply to the databases. By defining the scope clearly and accurately, the IS auditor can ensure that the audit is focused, feasible, and effective. References:
CISA Review Manual (Digital Version)
CISA Questions, Answers & Explanations Database

by Tracy at Nov 06, 2023, 08:52 PM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

0
0
0
10