Certified Information Systems Auditor (CISA) — Question 1171
During the implementation of an enterprise resource planning (ERP) system, an IS auditor is reviewing the results of user acceptance testing (UAT). Which of the following should be the auditor's PRIMARY focus?
Answer options
- A. Determine if the business process owner has signed off on the results.
- B. Determine if application interfaces have been satisfactorily tested.
- C. Confirm that all errors have been communicated to end users.
- D. Verify that system integration testing was performed.
Correct answer: A
Explanation
The correct answer is A because the business process owner's sign-off is crucial for ensuring that the system meets business requirements and is ready for deployment. Options B, C, and D, while important, are secondary to obtaining formal approval from the business process owner, as the primary responsibility is to confirm that the system aligns with business needs.