CISA Exam QuestionsBrowse all questions from this exam

CISA Exam - Question 420


Which of the following findings should be of GREATEST concern to an IS auditor assessing the risk associated with end-user computing (EUC) in an organization?

Show Answer
Correct Answer: AC

Insufficient processes to track ownership of each EUC application should be of the greatest concern. Without clearly defined ownership, there is a significant risk of mismanagement, lack of accountability, and potential non-compliance with regulations. This issue can lead to difficulties in tracking who is responsible for maintaining, updating, and ensuring the security of each application. Ownership is key to effective risk management, as it ensures there are designated individuals or teams accountable for the proper functioning and oversight of EUC applications.

Discussion

6 comments
Sign in to comment
swmasindeOption: A
Mar 29, 2023

A. Lack of defined criteria for EUC applications mean no policies, procedures, processes, organization criteria

MohamedAbdelaalOption: C
Apr 17, 2023

I think answer C is the most correct one, as the other options are already characteristics of the EUC

BA27Option: A
Nov 2, 2023

A. Lack of defined criteria for EUC applications

3008Option: A
Nov 20, 2023

A is correct.

Eric0223Option: D
Jan 28, 2023

lacks of control is more important to my point of view than critiria .

Eric0223
Jan 28, 2023

but it looks like insuffcient . hmm. hard to tell

SwallowsOption: C
Jul 13, 2024

Lack of tracking of ownership leads to unclear accountability and increased risk management and compliance issues. While lack of clear standards is important, poor tracking of ownership is a particularly serious risk.