Isaca CCOA Actual Exam Questions

Last updated on Nov. 22, 2025.

Topic 1 - Exam A

Question #1 Topic 1

A penetration tester has been hired and given access to all code, diagrams, and documentation. Which type of testing is being conducted?

  • A. Full knowledge
  • B. Partial knowledge
  • C. No knowledge
  • D. Unlimited scope
Reveal Solution Hide Solution   Discussion  

Correct Answer: A 🗳️

Question #2 Topic 1

Which of the following is the MOST effective approach for tracking vulnerabilities in an organization’s systems and applications?

  • A. Wait for external security researchers to report vulnerabilities.
  • B. Track only those vulnerabilities that have been publicly disclosed.
  • C. Implement regular vulnerability scanning and assessments.
  • D. Rely on employees to report any vulnerabilities they encounter.
Reveal Solution Hide Solution   Discussion  

Correct Answer: C 🗳️

Question #3 Topic 1

A nation-state that is employed to cause financial damage on an organization is BEST categorized as:

  • A. a threat actor.
  • B. an attack vector.
  • C. a risk.
  • D. a vulnerability.
Reveal Solution Hide Solution   Discussion  

Correct Answer: A 🗳️

Question #4 Topic 1

The PRIMARY function of open source intelligence (OSINT) is:

  • A. encoding stolen data prior to exfiltration to subvert data loss prevention (DLP) controls.
  • B. initiating active probes for open ports with the aim of retrieving service version information.
  • C. leveraging publicly available sources to gather information on an enterprise or on individuals.
  • D. delivering remote access malware packaged as an executable file via social engineering tactics.
Reveal Solution Hide Solution   Discussion  

Correct Answer: C 🗳️

file Viewing page 1 out of 27 pages.
Viewing questions 1-4 out of 108 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...