Question 136
While auditing an IT department's cloud service provider, the IS auditor found that privileged access monitoring is not being performed as required by the contract. The provider disagrees with this issue and notes that compensating controls are in place. The IS auditor's NEXT course of action should be to:
Question 137
Which of the following would be the PRIMARY benefit of replacing physical keys with an electronic entry
system for a data center?
system for a data center?
Question 138
An IS auditor is examining a front-end subledger and a main ledger. Which of the following would be the GREATEST concern if there are flaws in the mapping of accounts between the two systems?
Question 139
Mitigating the risk and impact of a disaster or business interruption usually takes priority over transference of risk to a third party such as an insurer. True or false?
Question 140
You should keep all computer rooms at reasonable temperatures, which is in between (choose all that apply):