Prepare for the Certified Information Systems Auditor (CISA) certification by ISACA with free exam-style practice questions on CyberCertPrep. The CISA exam has 150 questions, a time limit of CISA hours, and a passing score of 65%.
Choose from Practice mode, Exam Simulation, Weak Areas review, and Daily Challenge. Track your progress with detailed analytics and study with flashcards.
Certified Information Systems Auditor (CISA) Exam Domain
Focus your study on this domain with targeted practice questions. This domain accounts for 12% of your CISA exam score.
The Compliance Risk domain is one of 8 exam domains on the Certified Information Systems Auditor (CISA) certification exam by ISACA. At 12% of the total exam, this domain is important but should be balanced with higher-weighted domains in your study plan.
The CISA exam consists of 150 questions with a time limit of 4 hours and a passing score of 65%. That means approximately 18 questions on your exam will come from the Compliance Risk domain.
Multi-Factor Authentication (MFA)
A security mechanism that requires two or more independent credentials to verify a user's identity, combining factors fr...
SIEM (Security Information and Event Management)
A software solution that aggregates and analyzes security data from across the organization — including logs from firewa...
Zero-Day Exploit
An attack that targets a previously unknown vulnerability in software, hardware, or firmware before the vendor has relea...
Risk Assessment
The process of identifying, analyzing, and evaluating potential risks to an organization's information assets to determi...
Vulnerability Assessment
A systematic process to identify, quantify, and prioritize security vulnerabilities in systems, applications, and networ...
Compliance
The act of conforming to established guidelines, specifications, regulations, or legislation related to information secu...
NIST Framework
A set of guidelines and best practices published by the National Institute of Standards and Technology to manage cyberse...
ISO 27001
An international standard for information security management systems (ISMS) that specifies requirements for establishin...
These certifications also cover topics related to Compliance Risk:
Risk Management — 12% of exam
Risk Identification, Monitoring and Analysis — 13% of exam
Governance Risk — 13% of exam
Security and Risk Management — 13% of exam
Information Risk Management — 13% of exam
It Risk Identification — 8% of exam