ExamGecko
Question list
Search
Search

Related questions

Question 1 - CISA discussion

Report
Export

What would be an IS auditor's BEST recommendation upon finding that a third-party IT service provider hosts the organization's human resources (HR) system in a foreign country?

A.
Perform background verification checks.
Answers
A.
Perform background verification checks.
B.
Review third-party audit reports.
Answers
B.
Review third-party audit reports.
C.
Implement change management review.
Answers
C.
Implement change management review.
D.
Conduct a privacy impact analysis.
Answers
D.
Conduct a privacy impact analysis.
Suggested answer: D

Explanation:

The best recommendation for an IS auditor when finding that a third-party IT service provider hosts the organization's HR system in a foreign country is to conduct a privacy impact analysis. A privacy impact analysis is a systematic process that identifies and evaluates the potential risks and impacts of collecting, using, disclosing, and storing personal information. A privacy impact analysis will help the IS auditor to assess the legal, regulatory, contractual, and ethical obligations of the organization and the service provider regarding the protection of personal information. A privacy impact analysis will also help to identify and mitigate any privacy risks and gaps in the service level agreement.Reference:

CISA Certification | Certified Information Systems Auditor | ISACA

CISA Questions, Answers & Explanations Database

asked 18/09/2024
Mpho Ntshontsi
41 questions
NextNext
User
Your answer:
0 comments
Sorted by

Leave a comment first