Inspirational journeys

Follow the stories of academics and their research expeditions

CISA—Certified Information Systems Auditor - Part 72

Mary Smith

Wed, 19 Nov 2025

CISA—Certified Information Systems Auditor - Part 72

1. The GREATEST benefit of using a prototyping approach in software development is that it helps to:

A) decrease the time allocated for user testing and review
B) minimize scope changes to the system
C) conceptualize and clarify requirements
D) improve efficiency of quality assurance (QA) testing



2. A company is using a software developer for a project. At which of the following points should the software quality assurance (QA) plan be developed?

A) As part of software definition
B) During the feasibility phase
C) Prior to acceptance testing
D) As part of the design phase



3. During development of an information security policy, which of the following would BEST ensure alignment to business objectives?

A) Incorporation of industry best practices
B) Linkage between policy and procedures
C) Use of a balanced scorecard
D) Input from relevant stakeholders



4. To develop meaningful recommendations for findings, which of the following is MOST important for an IS auditor to determine and understand?

A) Criteria
B) Responsible party
C) Impact
D) Root cause



5. Which of the following MUST be included in emergency change control procedures?

A) Obtaining user management approval before implementing the changes
B) Updating production source libraries to reflect the changes
C) Using an emergency ID to move production programs into development
D) Requesting that the help desk makes the changes



1. Right Answer: C
Explanation:

2. Right Answer: D
Explanation:

3. Right Answer: C
Explanation:

4. Right Answer: C
Explanation:

5. Right Answer: A
Explanation:

0 Comments

Leave a comment