Question 216

An IS auditor discovers a box of hard drives in a secured location that are overdue for physical destruction.
The vendor responsible for this task was never made aware of these hard drives.
Which of the following is the BEST course of action to address this issue?
  • Question 217

    Due to system limitations, segregation of duties (SoD) cannot be enforced in an accounts payable system.
    Which of the following is the IS auditor's BEST recommendation for a compensating control?
  • Question 218

    After initial investigation, an IS auditor has reasons to believe that fraud may be present. The IS auditor should:
  • Question 219

    Which of the following is the MOST effective way to assess whether an outsourcer's controls are following the service level agreement (SLA)?
  • Question 220

    An advantage of object-oriented system development is that it: