nerdexam
IsacaIsaca

CISA · Question #189

CISA Question #189: Real Exam Question with Answer & Explanation

Sign in or unlock CISA to reveal the answer and full explanation for question #189. The question stem and answer options stay visible for context.

Submitted by wei.xz· Apr 18, 2026Governance and Management of IT

Question

When planning an internal penetration test, which of the following is the MOST important step prior to finalizing the scope of testing?

Options

  • AObtaining management's consent to the testing scope in writing
  • BAgreeing on systems to be excluded from the testing scope with the IT department
  • CEnsuring the scope of penetration testing is restricted to the test environment
  • DNotifying the IT security department regarding the testing scope

Unlock CISA to see the answer

You've previewed enough free CISA questions. Unlock CISA for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Penetration Testing Planning#Scope Management#Management Authorization#IT Governance
Full CISA PracticeBrowse All CISA Questions