0% found this document useful (0 votes)
103 views5 pages

CISA Checklist

Uploaded by

kumohdsufiarief
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
103 views5 pages

CISA Checklist

Uploaded by

kumohdsufiarief
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
You are on page 1/ 5

CISA study checklist

Domain 1 = INFORMATION SYSTEMS AUDITING PROCESS (32 question) Status

A. Planning
IS Audit Standards, Guidelines, and Codes of Ethics ☐
Business Processes ☐
Types of Controls ☐
Risk-Based Audit Planning ☐
Types of Audits and Assessments ☐

B. Execution
Audit Project Management ☐
Sampling Methodology ☐
Audit Evidence Collection Techniques ☐
Data Analytics ☐
Reporting and Communication Techniques ☐
Quality Assurance and Improvement of the Audit Process ☐
CISA study checklist

Domain 2 = Governance and Management of IT (26 question) Status

A. IT Governance
IT Governance and IT Strategy ☐
IT-Related Frameworks ☐
IT Standards, Policies, and Procedures ☐
Organizational Structure ☐
Enterprise Architecture ☐
Enterprise Risk Management ☐
Maturity Models ☐
Laws, Regulations, and Industry Standards affecting the Organization ☐

B. IT Management
IT Resource Management ☐
IT Service Provider Acquisition and Management ☐
IT Performance Monitoring and Reporting ☐
Quality Assurance and Quality Management of IT ☐
CISA study checklist

Domain 3 = Information Systems Acquisition, Development and Status


Implementation (18 question)

A. Information Systems Acquisition and Development


Project Governance and Management ☐
Business Case and Feasibility Analysis ☐
System Development Methodologies ☐
Control Identification and Design ☐

B. Information Systems Implementation


Testing Methodologies ☐
Configuration and Release Management ☐
System Migration, Infrastructure Deployment, and Data Conversion ☐
Post-implementation Review ☐
CISA study checklist

Domain 4 = INFORMATION SYSTEMS OPERATIONS AND BUSINESS RESILIENCE Status


(35 question)

A. Information Systems Operations


Common Technology Components ☐
IT Asset Management ☐
Job Scheduling and Production Process Automation ☐
System Interfaces ☐
End-User Computing ☐
Data Governance ☐
Systems Performance Management ☐
Problem and Incident Management ☐
Change, Configuration, Release, and Patch Management ☐
IT Service Level Management ☐
Database Management ☐

B. Business Resilience
Business Impact Analysis (BIA) ☐
System Resiliency ☐
Data Backup, Storage, and Restoration ☐
Business Continuity Plan (BCP) ☐
Disaster Recovery Plans (DRP) ☐
CISA study checklist

Domain 5 = Protection of Information Assets (41 question) Status

A. Information Asset Security and Control


Information Asset Security Frameworks, Standards, and Guidelines ☐
Privacy Principles ☐
Physical Access and Environmental Controls ☐
Identity and Access Management ☐
Network and End-Point Security ☐
Data Classification ☐
Data Encryption and Encryption-Related Techniques ☐
Public Key Infrastructure (PKI) ☐
Web-Based Communication Techniques ☐
Virtualized Environments ☐
Mobile, Wireless, and Internet-of-Things (IoT) Devices ☐

B. Security Event Management


Security Awareness Training and Programs ☐
Information System Attack Methods and Techniques ☐
Security Testing Tools and Techniques ☐
Security Monitoring Tools and Techniques ☐
Incident Response Management ☐
Evidence Collection and Forensics ☐

You might also like