Search Header Logo

CISA - 5

Authored by gopi venketesan

Professional Development

Professional Development

Used 3+ times

CISA - 5
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

10 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

After identifying potential security vulnerabilities, what should be the IS auditor's next step?

To evaluate potential countermeasures and compensatory controls

To implement effective countermeasures and compensatory controls

To perform a business impact analysis of the threats that would exploit

the vulnerabilities

To immediately advise senior management of the findings

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following is the BEST method for preventing the leakage of confidential information from a laptop computer?

Encrypt the hard disk with the owner's public key

Enable the boot password (hardware-based password)

Use a biometric authentication device

Use two-factor authentication to logon to the notebook

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

The MOST important difference between hashing and encryption is that hashing:

Is irreversible

Output is the same length as the original message

Is concerned with integrity and security

Is the same at the sending and receiving end

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following cryptography options would increase overhead/cost?

A use of symmetric encryption keys instead of asymmetric

A use of long asymmetric encryption keys

The hash is encrypted rather than the message

A use of secret key

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following would be of the MOST concern to an IS auditor reviewing a virtual private network (VPN) implementation? Computers on the network are located:

On the enterprise internal network

At the backup site

In employees' homes

At the enterprise's remote offices

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

The PRIMARY reason for using digital signatures is to ensure data:

Confidentiality

Integritiy

Availability

Timeliness

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following is an example of a passive attack initiated through the Internet?

Traffic analysis

Masquerading

Denial of service

E-mail spoofing

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?