exam questions

Exam IIA-CIA-Part3 All Questions

View all questions & answers for the IIA-CIA-Part3 exam

Exam IIA-CIA-Part3 topic 2 question 11 discussion

Actual exam question from IIA's IIA-CIA-Part3
Question #: 11
Topic #: 2
[All IIA-CIA-Part3 Questions]

Which of the following IT-related activities is most commonly performed by the second line of defense?

  • A. Block unauthorized traffic.
  • B. Encrypt data.
  • C. Review disaster recovery test results.
  • D. Provide independent assessment of IT security.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️
Reference:
https://chapters.theiia.org/montreal/ChapterDocuments/Guide%20pratique%20_%20Audit%20interne%20et%202ème%20ligne%20de%20maîtrise.pdf

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
yomang
Highly Voted 3 years, 7 months ago
I believe it's C. Based on this ISACA article: https://www.isaca.org/resources/isaca-journal/issues/2018/volume-4/roles-of-three-lines-of-defense-for-information-security-and-governance. Although it doesn't specifically state it, it does say that the second line is in charge or evaluating the risk and compliance. Reviewing the disaster recovery results would be a step in the evaluation of the unit's risk and/or compliance with their disaster recovery plans. Also, I saw on another bank that is more accurate than examtopics that it was C as well.
upvoted 10 times
StephanieJayne
3 years, 7 months ago
Which bank was this please
upvoted 1 times
...
...
emtofid
Most Recent 1 month, 2 weeks ago
Selected Answer: C
In the context of the three lines of defense model for risk management, the second line of defense is responsible for overseeing and monitoring the effectiveness of risk management practices implemented by the first line. This includes developing and implementing risk management processes, policies, and procedures, as well as providing guidance and oversight to ensure that risks are managed appropriately. C. Review disaster recovery test results: The second line of defense is responsible for overseeing and monitoring the effectiveness of risk management practices, including reviewing the results of disaster recovery tests to ensure that recovery plans are effective and risks are managed appropriately. D. Provide independent assessment of IT security: This is typically the role of the third line of defense, which consists of internal auditors who provide independent assurance on the effectiveness of governance, risk management, and internal controls.
upvoted 1 times
...
KLynn
7 months, 1 week ago
It appears to be "D". According to IIA GTAG - Assessing Cybersecurity Risk, The Three Lines Model: Second line roles, often comprised of IT risk management and IT compliance functions, are key to an organization’s security posture and program design. Second line roles are responsible for: Assessing the risks and exposures related to cybersecurity and determining whether they are in alignment with the organization’s risk appetite. Monitoring current and emerging risks and changes to laws and regulations. Collaborating with the first line functions to ensure appropriate control design.
upvoted 1 times
...
ciacandidate
1 year, 7 months ago
It's C. D is performed by the 3rd line.
upvoted 2 times
...
Walewweeeed
3 years, 6 months ago
C is correct basedon cypersecrity gtag
upvoted 2 times
...
yomang
3 years, 8 months ago
I would think D would be done by 3rd line of defense (internal audit) - BUT, A, B, C all seem to be done by 1st line. So I'm torn. C seems like the most possibly right answer because it's not implementing things like A and B are, but I just don't know. Anyone else have insight on this?
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago