nerdexam
Isaca

CISA · Question #187

Which of the following is the MOST important task of an IS auditor during an application post- implementation review?

The correct answer is D. Verify user access controls. Ensuring that appropriate user access controls are in place is crucial to protecting the application's data and functionality from unauthorized access or misuse. This task directly impacts the security and integrity of the application post-implementation. Access controls help…

Submitted by kev92· Apr 18, 2026Information Systems Acquisition, Development, and Implementation

Question

Which of the following is the MOST important task of an IS auditor during an application post- implementation review?

Options

  • AConduct a business impact analysis (BIA)
  • BPerform penetration testing
  • CIdentify project delays
  • DVerify user access controls

How the community answered

(30 responses)
  • A
    13% (4)
  • B
    7% (2)
  • C
    3% (1)
  • D
    77% (23)

Explanation

Ensuring that appropriate user access controls are in place is crucial to protecting the application's data and functionality from unauthorized access or misuse. This task directly impacts the security and integrity of the application post-implementation. Access controls help ensure that only authorized users can access sensitive data and perform critical functions, which is a key focus area for an IS auditor. While a business impact analysis (BIA), penetration testing, and identifying project delays are important activities, they may not be as critical in the immediate post-implementation review as verifying that proper user access controls have been implemented. This is essential for maintaining security and ensuring that the system operates as intended in a secure environment.

Topics

#Application Audit#Post-Implementation Review#Access Controls#IS Auditing

Community Discussion

No community discussion yet for this question.

Full CISA Practice