Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 843 discussion

Actual exam question from Isaca's CISA
Question #: 843
Topic #: 1
[All CISA Questions]

In an annual audit cycle, the audit of an organization's IT department resulted in many findings. Which of the following would be the MOST important consideration when planning the next audit?

  • A. Limiting the review to the deficient areas
  • B. Following up on the status of all recommendations
  • C. Verifying that all recommendations have been implemented
  • D. Postponing the review until all of the findings have been rectified
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
kertyce
Highly Voted 1 year, 9 months ago
it possible B... it's possible that all recommandations not implemented and the IS auditor must take agreed upon action plan in consideration
upvoted 5 times
Gingingin
1 year, 4 months ago
i think it's not the auditor's job to follow up the recommendations' status. So C is a better choice.
upvoted 2 times
...
...
PurpleParrot
Most Recent 2 months, 3 weeks ago
Selected Answer: B
Option B seems the right choice. Option C is conducted during audit follow-up
upvoted 1 times
...
Swallows
5 months, 3 weeks ago
Selected Answer: C
While following up on the status of all recommendations (option B) is important for tracking progress and ensuring accountability, verifying that all recommendations have been implemented is crucial for confirming that corrective actions have been taken to address the findings identified in the previous audit. This verification step helps ensure that the organization has effectively remediated any issues or deficiencies, thereby enhancing the overall security, efficiency, and compliance of its IT operations. By prioritizing the verification of implementation, auditors can provide assurance to stakeholders that the necessary measures have been put in place to mitigate risks and improve IT governance within the organization. This proactive approach supports continuous improvement and helps maintain the integrity of the audit process.
upvoted 2 times
...
takuanism
9 months, 3 weeks ago
Selected Answer: B
I think B is right answer
upvoted 3 times
...
Rachy
10 months ago
Selected Answer: C
C is correct guys
upvoted 3 times
...
wangi
11 months, 1 week ago
the answer ib. verufying means you havee been assured that all the rec have been implemented. since thats niot the case follow up is the best choice
upvoted 2 times
...
SuperMax
1 year, 1 month ago
Selected Answer: B
B. Following up on the status of all recommendations Accountability: It ensures that the organization's IT department is held accountable for addressing the identified issues and implementing the recommended solutions. Risk Management: By tracking the status of all recommendations, auditors can assess whether the identified risks have been mitigated or if they still pose a threat to the organization. Compliance: Many findings in IT audits may relate to compliance with regulatory requirements or industry standards. Ensuring that all recommendations have been addressed helps the organization maintain compliance. Continuous Improvement: It allows the organization to continuously improve its IT processes, security, and overall performance by addressing deficiencies and learning from past audits.
upvoted 4 times
...
JONESKA
1 year, 4 months ago
Should be B.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...