For a discretionary access control to be effective, it must:
For a discretionary access control to be effective, it must:
An IS auditor examining a biometric user authentication system establishes the existence of a control weakness
An IS auditor examining a biometric user authentication system establishes the existence of a control weakness that would allow an unauthorized individual to update the centralized database on the server that is used to store biometric templates. Of the following, which is the BEST control against this risk?
From a control perspective, the PRIMARY objective of classifying information assets is to:
From a control perspective, the PRIMARY objective of classifying information assets is to:
An organization has been recently downsized, in light of this, an IS auditor decides to test logical access co
An organization has been recently downsized, in light of this, an IS auditor decides to test logical access controls. The IS auditors PRIMARY concern should be that:
The logical exposure associated with the use of a checkpoint restart procedure is:
The logical exposure associated with the use of a checkpoint restart procedure is:
Inadequate programming and coding practices introduce the risk of:
Inadequate programming and coding practices introduce the risk of:
Which of the following would prevent unauthorized changes to information stored in a servers log?
Which of the following would prevent unauthorized changes to information stored in a servers log?
After reviewing its business processes, a large organization is deploying a new web application based on a VoI
After reviewing its business processes, a large organization is deploying a new web application based on a VoIP technology. Which of the following is the MOST appropriate approach for implementing access control that will facilitate security management of the VoIP web application?
In an online banking application, which of the following would BEST protect against identity theft?
In an online banking application, which of the following would BEST protect against identity theft?
Which of the following is the BEST method for preventing the leakage of confidential information in a laptop c
Which of the following is the BEST method for preventing the leakage of confidential information in a laptop computer?