Which of the following should an IS auditor recommend f…
Which of the following should an IS auditor recommend for the protection of specific sensitive
information stored in the data warehouse?
Which of the following would MOST effectively enhance t…
Which of the following would MOST effectively enhance the security of a challenge- response
based authentication system?
Which of the following is the MOST significant logical …
An IS auditor has completed a network audit. Which of the following is the MOST significant logical
security finding?
An IS auditor should expect the responsibility for auth…
An IS auditor should expect the responsibility for authorizing access rights to production data and
systems to be entrusted to the:
What should be the GREATEST concern to an IS auditor wh…
What should be the GREATEST concern to an IS auditor when employees use portable media
(MP3 players, flash drives)?
Which of the following would be an effective access control?
An organization is using an enterprise resource management (ERP) application. Which of the
following would be an effective access control?
What would be of GREATEST concern if discoveredduring a…
A technical lead who was working on a major project has left the organization. The project manager
reports suspicious system activities on one of the servers that is accessible to the whole team.
What would be of GREATEST concern if discoveredduring a forensic investigation?
Which of the following is the BEST practice to ensure t…
Which of the following is the BEST practice to ensure that access authorizations are still valid?
Which of the following would provide efficient access c…
A business application system accesses a corporate database using a single ID and password
embedded in a program. Which of the following would provide efficient access control over the
organization’s data?
When using a universal storage bus (USB) flash drive to…
When using a universal storage bus (USB) flash drive to transport confidential corporate data to an
offsite location, an effective control would be to: