Question 771
If an IS auditor finds evidence of risk involved in not implementing proper segregation of duties, such as having the security administrator perform an operations function, what is the auditor's primary responsibility?
Question 772
During a follow-up, an IS auditor learns the auditee has not implemented agreed-upon monitoring controls over a critical legacy system due to a business decision to migrate to a new system in six months. Which of the following is the auditor's BEST course of action?
Question 773
What is the best defense against Local DoS attacks?