Isaca Certified Information Systems Auditor CISA Question # 409 Topic 41 Discussion

Isaca Certified Information Systems Auditor CISA Question # 409 Topic 41 Discussion

CISA Exam Topic 41 Question 409 Discussion:
Question #: 409
Topic #: 41

Which of the following should be of MOST concern to an IS auditor reviewing an organization’s business impact analysis (BIA)?


A.

A risk assessment was not conducted prior to completing the BIA.


B.

System criticality information was only provided by the IT manager.


C.

A questionnaire was used to gather information as opposed to in-person interviews.


D.

The BIA was not signed off by executive management.


Get Premium CISA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.