Which of the following is the MAIN objective in contracting with an external company to perform penetration te
Which of the following is the MAIN objective in contracting with an external company to perform penetration testing?
The MOST important concern for the information security manager is to ensure that:
An organization plans to contract with an outside service provider to host its corporate web site. The MOST important concern for the information security manager is to ensure that:
Which of the following BEST limits the impact of server failures in a distributed environment?
Which of the following BEST limits the impact of server failures in a distributed environment?
The IS auditor should recommend the implementation of:
An IS auditor reviewing an organization’s data file control procedures finds that transactions are applied to the most current files, while restart procedures use earlier versions. The IS auditor should recommend the implementation of:
The BEST way to minimize the risk of communication failures in an e-commerce environment would be to use:
The BEST way to minimize the risk of communication failures in an e-commerce environment would be to use:
Which of the following access control approaches is MOST appropriate?
An organization has implemented an enterprise resource planning (ERP) system used by 500 employees from various departments. Which of the following access control approaches is MOST appropriate?
The MAIN job requirement in this arrangement is that the IT manager:
The management staff of an organization that does not have a dedicated security function decide to use its IT manager to perform a security review. The MAIN job requirement in this arrangement is that the IT manager:
A critical component of a continuous improvement program for information security is:
A critical component of a continuous improvement program for information security is:
Web and e-mail filtering tools are PRIMARILY valuable to an organization because they:
Web and e-mail filtering tools are PRIMARILY valuable to an organization because they:
This would result in:
The database administrator (DBA) suggests that DB efficiency can be improved by denormalizing some tables. This would result in:
 
                