The CISA manual 28th ed strongly suggest immediate notification in case of significant security issues or potential threats: "If the IS auditor encounters material irregularities or illegal acts, they should report any matter of material irregularities or illegal acts to management." Ransomware activity would likely be considered a material irregularity or an illegal act.
This section is not available anymore. Please use the main Exam Page.CISA Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
46080f2
2 weeks, 2 days agoPokekai90
5 months, 3 weeks ago