ExamGecko
Home / Isaca / CISA / Practice Test 1
Ask Question

Isaca CISA Practice Test 1

00:00:00
Show Answer
Report Issue   Restart test

Question 1 / 40

What would be an IS auditor's BEST recommendation upon finding that a third-party IT service provider hosts the organization's human resources (HR) system in a foreign country?

Perform background verification checks.
Perform background verification checks.
Review third-party audit reports.
Review third-party audit reports.
Implement change management review.
Implement change management review.
Conduct a privacy impact analysis.
Conduct a privacy impact analysis.
Comment (0)
Suggested answer: D
Explanation:

The best recommendation for an IS auditor when finding that a third-party IT service provider hosts the organization's HR system in a foreign country is to conduct a privacy impact analysis. A privacy impact analysis is a systematic process that identifies and evaluates the potential risks and impacts of collecting, using, disclosing, and storing personal information. A privacy impact analysis will help the IS auditor to assess the legal, regulatory, contractual, and ethical obligations of the organization and the service provider regarding the protection of personal information. A privacy impact analysis will also help to identify and mitigate any privacy risks and gaps in the service level agreement.Reference:

CISA Certification | Certified Information Systems Auditor | ISACA

CISA Questions, Answers & Explanations Database

asked 18/09/2024
Mpho Ntshontsi
43 questions