Inspirational journeys

Follow the stories of academics and their research expeditions

CISA—Certified Information Systems Auditor - Part 311

Mary Smith

Mon, 20 Apr 2026

CISA—Certified Information Systems Auditor - Part 311

1. If a database is restored using before-image dumps, where should the process begin following an interruption?

A) Before the last transaction
B) After the last transaction
C) As the first transaction after the latest checkpoint
D) At the last transaction before the latest checkpoint



2. In addition to the backup considerations for all systems, which of the following is an important consideration in providing backup for online systems?

A) Maintaining system software parameters
B) Ensuring periodic dumps of transaction logs
C) Ensuring grandfather-father-son file backups
D) Maintaining important data at an offsite location



3. As updates to an online order entry system are processed, the updates are recorded on a transaction tape and a hard copy transaction log. At the end of the day, the order entry files are backed up on tape. During the backup procedure, a drive malfunctions and the order entry files are lost. Which of the following is necessary to restore these files?

A) The previous day's backup file and the current transaction tape
B) The previous day's transaction file and the current transaction tape
C) The current transaction tape and the current hard copy transaction log
D) The current hard copy transaction log and the previous day's transaction file



4. An offsite information processing facility:

A) should have the same amount of physical access restrictions as the primary processing site.
B) should be easily identified from the outside so that, in the event of an emergency, it can be easily found.
C) should be located in proximity to the originating site, so it can quickly be made operational.
D) need not have the same level of environmental monitoring as the originating site.



5. An IS auditor performing a review of the backup processing facilities should be MOST concerned that:

A) adequate fire insurance exists.
B) regular hardware maintenance is performed.
C) offsite storage of transaction and master files exists.
D) backup processing facilities are fully tested.



1. Right Answer: A
Explanation: If before images are used, the last transaction in the dump will not have updated the database prior to the dump being taken. The last transaction will not have updated the database and must be reprocessed. Program checkpoints are irrelevant in this situation.

2. Right Answer: B
Explanation: Ensuring periodic dumps of transaction logs is the only safe way of preserving timely historical data. The volume of activity usually associated with an online system makes other more traditional methods of backup impractical.

3. Right Answer: A
Explanation: The previous day's backup file will be the most current historical backup of activity in the system. The current day's transaction file will contain all of the day's activity. Therefore, the combination of these two files will enable full recovery up to the point of interruption.

4. Right Answer: A
Explanation: An offsite information processing facility should have the same amount of physical control as the originating site. It should not be easily identified from the outside to prevent intentional sabotage. The offsite facility should not be subject to the same natural disaster that could affect the originating site and thus should not be located in proximity of the original site. The offsite facility should possess the same level of environmental monitoring and control as the originating site.

5. Right Answer: C
Explanation: Adequate fire insurance and fully tested backup processing facilities are important elements for recovery, but without the offsite storage of transaction and master files, it is generally impossible to recover. Regular hardware maintenance does not relate to recovery.

0 Comments

Leave a comment