CISA Exam QuestionsBrowse all questions from this exam

CISA Exam - Question 563


An audit has identified that business units have purchased cloud-based applications without IT's support. What is the GREATEST risk associated with this situation?

Show Answer
Correct Answer: BD

The greatest risk associated with business units purchasing cloud-based applications without IT’s support is that the applications may not reasonably protect data. Without IT involvement, there is uncertainty regarding whether these applications adhere to the organization's security policies and standards. This can lead to data breaches, non-compliance with data protection regulations, and potential financial and reputational damage to the organization.

Discussion

4 comments
Sign in to comment
DeeplaxmiOption: B
Sep 17, 2022

greatest concern i feel is B

MunaMOption: B
Sep 7, 2022

Could the answer be B?

EBTURKOption: B
May 30, 2023

The greatest risk associated with business units purchasing cloud-based applications without IT’s support is that the applications may not reasonably protect data

SwallowsOption: B
Jun 9, 2024

While the absence of these applications from business continuity plans (BCPs) (option D) is also a concern, the risk associated with inadequate data protection measures in the applications is generally more immediate and impactful. Loss of data due to a lack of protection measures can have severe consequences for the organization's reputation, compliance, and financial stability.