ISC Exam Questions

Who should NOT have access to the log files?

Who should NOT have access to the log files?

A.
Security staff.

B.
Internal audit staff.

C.
System administration staff.

D.
Manager’s secretary.

Explanation:
Logs must be secured to prevent modification, deletion, and destruction. Only authorized persons
should have access or permission to read logs. A person is authorized if he or she is a member of the
internal audit staff, security staff, system administration staff, or he or she has a need for such
access to perform regular duties.