Courseiva

CISA Practice Question: Information Systems Acquisition, Development, and Implementation

An organization is implementing a new ERP system and is concerned about segregation of duties (SoD) conflicts. What is the BEST approach to address this during the implementation?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Configure role-based access controls with SoD rules in the system

Configuring SoD rules within the ERP system helps enforce segregation and prevent conflicts during operations.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Assign all administrative rights to a single user for efficiency

    Why it's wrong here

    This creates SoD issues.

  • Configure role-based access controls with SoD rules in the system

    Why this is correct

    Proactive configuration prevents conflicts.

  • Rely on manual compensating controls after go-live

    Why it's wrong here

    Automated controls are preferable.

  • Document SoD conflicts for future resolution

    Why it's wrong here

    Conflicts should be resolved during implementation.

About these practice questions

Courseiva writes every CISA question from scratch — 995 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CISA practice question is part of Courseiva's free ISACA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CISA exam.