Question 76

In a 24/7 processing environment, a database contains several privileged application accounts with passwords set to never expire. Which of the following recommendations would BEST address the risk with minimal disruption to the business?
  • Question 77

    An IS auditor is following up on prior period items and finds management did not address an audit finding. Which of the following should be the IS auditor's NEXT course of action?
  • Question 78

    An IS auditor is reviewing the release management process for an in-house software development solution. In which environment Is the software version MOST likely to be the same as production?
  • Question 79

    An IS auditor who was instrumental in designing an application is called upon to review the application. The auditor should:
  • Question 80

    Which of the following should be an IS auditor's PRIMARY focus when developing a risk-based IS audit program?