ExamGecko
Question list
Search
Search

Related questions











Question 540 - CISA discussion

Report
Export

Which of the following should be of GREATEST concern to an IS auditor when auditing an organization's IT strategy development process?

A.
The IT strategy was developed before the business plan
Answers
A.
The IT strategy was developed before the business plan
B.
A business impact analysis (BIA) was not performed to support the IT strategy
Answers
B.
A business impact analysis (BIA) was not performed to support the IT strategy
C.
The IT strategy was developed based on the current IT capability
Answers
C.
The IT strategy was developed based on the current IT capability
D.
Information security was not included as a key objective m the IT strategic plan.
Answers
D.
Information security was not included as a key objective m the IT strategic plan.
Suggested answer: D

Explanation:

The greatest concern for an IS auditor when auditing an organization's IT strategy development process is that information security was not included as a key objective in the IT strategic plan. Information security is a vital component of IT strategy, as it ensures the confidentiality, integrity and availability of information assets, and supports the business objectives and regulatory compliance.The other options are not as significant as the lack of information security in the IT strategic plan.Reference:CISA Review Manual (Digital Version), Chapter 1, Section 1.31

asked 18/09/2024
Katherin Aragon Calderon
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first