You are on page 1of 2

1.

An offsite information processing facility having electrical wiring, air conditioning and
flooring but no computer or communication equipment is a
Cold Site
2. Which of the following implementation is the most useful for business decisions making and
framing of future policies based on actual transaction data?
Data Warehouse
3. Which of the following is the primary requirement in reporting results of an IS audit. The
report should be
Backed by sufficient and appropriate audit evidence
4. Which of the following aims to sustain critical business process during an unplanned
interruption period?
Business Continuity Plan
5. Which of the following helps to gain a clear understanding of the business process while
developing a business continuity plan?
Risk Assessment
6. Which of the following phase starts with a damage assessment?
Restoration Phase
7. As per IATF, which of the following is a standard under IS Audit and Assurance Standard.
General Standard
8. When an Individual in an IT department, perform more than one role, which one of the
following poses the greatest risk.
Developers have access and can migrate data
9. Which of the following function is primarily responsible to support value creation by
reducing the risk of IT to an acceptable level?
IT Governanve
10. Which is the name of the decentralized control method enabling someone to make a
decision based on her own options.
Discretionary
11. Which of the following is known as condition that affect the risk profile of the organization?
Residual Risk
12. Which of the following statement is true concerning the steering committee?
Absence of formal charter indicates lack of controls
13. What is the best way to ensure that organizations policies comply with legal requirements?
Periodic review of the policies
14. Who are responsible for ensuring IT enabled investments provide business value?
Senior Management
15. Which of the following business process reengineering (BPR) risk are likely to occur during
the design phase.
Scope Risk, Skill risk, Political Risk
16. Which of the following should be done first when preparing a disaster recovery plan?
Perform a business impact analysis
17. Prioritization of IT initiatives within organization is primarily based on
Expected benefit realization
18. Which of the following is a benefit of using callback devices?
Provide an audit trail
19. Which of the following should be first initiative while using systematic approach for
implementing EGIT?
Establish desire to change
20. What is the correct sequence for benchmark process in BPR projects?
Plan, Research, Observe, analyze, adapt, improve

You might also like