ExamGecko
Question list
Search
Search

Related questions

Question 232 - CISA discussion

Report
Export

Which of the following would be an appropriate rote of internal audit in helping to establish an organization's privacy program?

A.
Analyzing risks posed by new regulations
Answers
A.
Analyzing risks posed by new regulations
B.
Designing controls to protect personal data
Answers
B.
Designing controls to protect personal data
C.
Defining roles within the organization related to privacy
Answers
C.
Defining roles within the organization related to privacy
D.
Developing procedures to monitor the use of personal data
Answers
D.
Developing procedures to monitor the use of personal data
Suggested answer: A

Explanation:

Analyzing risks posed by new regulations is an appropriate role of internal audit in helping to establish an organization's privacy program. An internal auditor can provide assurance and advisory services on the compliance and effectiveness of the privacy program, as well as identify and assess the potential risks and impacts of new or changing privacy regulations. The other options are not appropriate roles of internal audit, but rather the responsibilities of the management, the information security officer, or the privacy officer.Reference:

CISA Review Manual (Digital Version), Chapter 7, Section 7.4.21

CISA Review Questions, Answers & Explanations Database, Question ID 216

asked 18/09/2024
miguel sartori
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first