exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 497 discussion

Actual exam question from Isaca's CISA
Question #: 497
Topic #: 1
[All CISA Questions]

Which of the following should be of GREATEST concern to an IS auditor conducting an audit of an organization that recently experienced a ransomware attack?

  • A. Antivirus software was unable to prevent the attack even though it was properly updated.
  • B. Backups were only performed within the local network.
  • C. The most recent security patches were not tested prior to implementation.
  • D. Employees were not trained on cybersecurity policies and procedures.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
3008
1 year, 6 months ago
Selected Answer: B
B is correct.
upvoted 1 times
ChaBum
1 year, 2 months ago
why b? backup even on the local network are read only and cannot be altered, so ransomware cannot affect them. Having the backup offsite, is for DRP, not ransomware
upvoted 1 times
choboanon
8 months ago
Ransomeware can affect backups that were taken from the local network, I'm not sure where you are getting that.
upvoted 1 times
...
a84n
1 year ago
Answer: B In a ransomware attack, having recent and secure backups is crucial for recovery without paying the ransom. If backups are only stored locally and were compromised during the attack, the organization may have no recourse for recovering its data and systems without resorting to ransom payment. This makes the lack of proper backup strategy a more immediate and critical concern for the IS auditor to address during the audit.
upvoted 2 times
...
...
...
ziutek_
2 years, 8 months ago
Why not A?
upvoted 1 times
MohamedAbdelaal
2 years, 1 month ago
This isn't a concern, as the existence of an updated antivirus doesn't eliminate the possibility of getting infected by any malware.
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...