mediumMultiple Choice
CISA Practice Question: In a RACI matrix for an IT process, which role…
In a RACI matrix for an IT process, which role should be assigned to the person who ultimately approves the outcome and is held accountable for its success?
⚠ Common exam trap
CISA often tests the confusion between Responsible (does the work) and Accountable (owns the outcome), so candidates who equate the two pick R instead of A.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Accountable (A)
In a RACI matrix, the Accountable (A) role is assigned to the person who ultimately approves the outcome and is held answerable for its success or failure. This is the single individual who owns the process or decision and has the authority to sign off. The Accountable person must be unique per activity to avoid ambiguity in ownership and decision-making.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Consulted (C)
Why it's wrong here
Consulted means providing input or expertise before a decision; it carries no accountability for the outcome. It is tempting because consulted individuals influence the process, and would be correct for a subject-matter expert whose advice the decision-maker seeks but who does not own the result.
- ✗
Responsible (R)
Why it's wrong here
Responsible means performing the work to complete the task, not owning the outcome or approving it. It is tempting because the person doing the work is deeply involved, and would be correct for the individual executing the process steps under someone else's accountability.
- ✓
Accountable (A)
Why this is correct
Accountable (A) designates the single person who owns the outcome and holds final approval authority, satisfying the stem's requirement for ultimate accountability. Unlike Responsible, which covers those performing the work, only one Accountable role should exist per activity, ensuring unambiguous ownership and preventing diffused decision-making.
- ✗
Informed (I)
Why it's wrong here
Informed means receiving updates on progress or decisions after the fact, with no authority over the outcome. It is tempting because informed parties are kept in the loop, and would be correct for stakeholders who need visibility but neither perform the work nor approve it.
About these practice questions
One of 934 original CISA practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official ISACA exam blueprint
This CISA practice question is part of Courseiva's free ISACA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CISA exam.