exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 404 discussion

Actual exam question from Isaca's CISA
Question #: 404
Topic #: 1
[All CISA Questions]

Which of the following should be the FIRST step when planning an IS audit of a third-party service provider that monitors network activities?

  • A. Determine if the organization has a secure connection to the provider.
  • B. Review the roles and responsibilities of the third- party provider.
  • C. Evaluate the organization's third-party monitoring process.
  • D. Review the third party's monitoring logs and incident handling.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Swallows
1 month ago
Selected Answer: B
Once the roles and responsibilities of the third-party provider are understood, the IS auditor can proceed to evaluate the organization's third-party monitoring process (Option C) to assess how effectively the organization manages and oversees the activities of the third-party service provider. However, reviewing the roles and responsibilities of the third-party provider comes first as it establishes the foundation for understanding the context and scope of the audit.
upvoted 2 times
...
Changwha
11 months, 4 weeks ago
B. Review the roles and responsibilities of the third- party provider.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago