The ISACA mindset
After attempting all the major ISACA certifications and then being actively involved on the other side of the table, that is, writing questions for the official exams, I think I have a fair understanding of the rationale for answering the ISACA questions. In the ISACA working group, and in multiple forums on the internet, you will often hear about developing the ISACA mindset before attempting the exam.
Important note
The ISACA mindset involves understanding the rationale behind why a certain question is asked and what would be the MOST appropriate answer. When you read the question, you should ask yourself what concept the exam is trying to test and assume the role of an IT risk manager while answering the question. Once you have a fair understanding of the reasoning for the question in the first place, you should look for the answer that looks the closest to an ideal answer. It should be noted that all four options in the ISACA exam will seem to be the right...