10/01/2024
Contoh Soal Ujian / Exam CISA :
by Hery Purnama, SE.,MM.,
MCP, PMP, ITILF, CISA, CISM, CGEIT, CRISC, CDPSE, COBIT, TOGAF, CTFL, CBAP
1. For an auditor, it is very important to understand the different forms of project organization and their implication in the control of project management activities. In which of the following project organization form is management authority shared between the project manager and the department head?
⚪ Influence project organization
⚪ Pure project organization
⚫ Matrix project organization
⚪ Forward project organization
2. Which of the following type of testing validate functioning of the application under test with other system, where a set of data is transferred from one system to another?
⚫ Interface testing
⚪ Unit Testing
⚪ System Testing
⚪ Final acceptance testing
3. Which of the following statement correctly describes the difference between black box testing and white box testing?
⚫ Black box testing focuses on functional operative effectiveness where as white box assesses the effectiveness of software program logic
⚪ White box testing focuses on functional operative effectiveness where as black box assesses the effectiveness of software program logic
⚪ White box and black box testing focuses on functional operative effectiveness of an information systems without regard to any internal program structure
⚪ White box and black box testing focuses on the effectiveness of the software program logic
4. Which of the following risk handling technique involves the practice of being proactive so that the risk in question is not realized?
⚪ Risk Mitigation
⚪ Risk Acceptance
⚫ Risk Avoidance
⚪ Risk transfer
5. What are the different types of Audits?
⚫ Compliance, financial, operational, forensic and integrated
⚪ Compliance, financial, operational, G9 and integrated
⚪ Compliance, financial, SA1, forensic and integrated
⚪ Compliance, financial, operational, forensic and capability
6. In which of the following cloud computing service model are applications hosted by the service provider and made available to the customers over a network?
⚫ Software as a service
⚪ Data as a service
⚪ Platform as a service
⚪ Infrastructure as a service
7. Who is responsible for reviewing the result and deliverables within and at the end of each phase, as well as confirming compliance with requirements?
⚪ Project Sponsor
⚫ Quality Assurance
⚪ User Management
⚪ Senior Management
8. As an IS auditor it is very important to understand software release management process. Which of the following software release normally contains a significant change or addition of new functionality?
⚫ Major software Release
⚪ Minor software Release
⚪ Emergency software release
⚪ General software Release
9. Why would a database be renormalized?
⚪ To ensure data integrity
⚫ To increase processing efficiency
⚪ To prevent duplication of data
⚪ To save storage space
10. Which of the following is not a common method of multiplexing data?
⚫ Analytical multiplexing
⚪ Time-division multiplexing
⚪ Asynchronous time-division multiplexing
⚪ Frequency division multiplexing