IsacaIsaca
CISA · Question #314
CISA Question #314: Real Exam Question with Answer & Explanation
Sign in or unlock CISA to reveal the answer and full explanation for question #314. The question stem and answer options stay visible for context.
Submitted by ashley.k· Apr 18, 2026Information System Auditing Process
Question
The GREATEST concern for an IS auditor reviewing vulnerability assessments by the auditee would be if the assessments are:
Options
- Aperformed for critical systems, not for the entire infrastructure
- Bconducted once per year just before system audits are scheduled
- Cperformed using open-source testing tools
- Dconducted by the internal technical team instead of external experts
Unlock CISA to see the answer
You've previewed enough free CISA questions. Unlock CISA for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Vulnerability Assessments#IS Auditing#Vulnerability Management#Audit Effectiveness