1. A senior auditor is reviewing work papers prepared by a junior auditor indicating that a finding was removed after the auditee said they corrected the problem.Which of the following would be the MOST appropriate course of action for the senior auditor?
A) Approve the work papers as written B) Refer the issue to the audit director C) Have the finding reinstated D) Ask the auditee to retest
2. An IS auditor is conducting a pre-implementation review to determine a new system's production readiness. The auditor's PRIMARY concern should be whether:
A) the project adhered to the budget and target date B) users were involved in the quality assurance (QA) testing C) there are unresolved high-risk items D) benefits realization has been evidenced
3. An IS auditor reviewing the threat assessment for a data center would be MOST concerned if:
A) all identified threats relate to external entities B) some of the identified threats are unlikely to occur C) neighboring organizations' operations have been included D) the exercise was completed by local management
4. When following up on a data breach, an IS auditor finds a system administrator may have compromised the chain of custody. Which of the following should the system administrator have done FIRST to preserve the evidence?
A) Perform forensic discovery B) Notify key stakeholders C) Quarantine the system D) Notify the incident response team
5. Which of the following should an IS auditor verify when auditing the effectiveness of virus protection?
A) Frequency of IDS log reviews B) Currency of software patch application C) Schedule for migration to production D) Frequency of external Internet access
Leave a comment