Which of the following issues associated with a data center's closed-circuit television (CCTV) surveillance cameras should be of MOST concern to an IS auditor?
Correct Answer: A
The most concerning issue associated with a data center's CCTV surveillance cameras is that the recordings are not regularly reviewed. This means that any unauthorized access, theft, vandalism, or other security incidents may go unnoticed and unreported. CCTV recordings are a valuable source of evidence and deterrence for data center security, and they should be monitored and audited periodically to ensure compliance with policies and regulations. If the recordings are not reviewed, the data center may face legal, financial, or reputational risks in case of a security breach or an audit failure. The other options are less concerning because they do not directly affect the security of the data center. CCTV cameras are not required to be installed in break rooms, as they are not critical areas for data protection. CCTV records can be deleted after one year, as long as they comply with the data retention policy of the organization and the applicable laws. CCTV footage does not need to be recorded 24 x 7, as long as there is sufficient coverage of the data center during operational hours and when access is granted to authorized personnel. References: * ISACA Journal Article: Physical security of a data center1 * Data Center Security: Checklist and Best Practices | Kisi2 * Video Surveillance Best Practices | Taylored Systems
Question 612
Management has requested a post-implementation review of a newly implemented purchasing package to determine the extent that business requirements are being met. Which of the following is MOST likely to be assessed?
Correct Answer: B
Question 613
The waterfall life cycle model of software development is BEST suited for which of the following situations?
Correct Answer: D
Question 614
Which of the following is the MOST important consideration for patching mission critical business application servers against known vulnerabilities?
Correct Answer: B
Question 615
Identify the correct sequence which needs to be followed as a chain of event in regards to evidence handling in computer forensics?
Correct Answer: D
Explanation/Reference: There are 4 major considerations in the chain of event in regards to evidence in computer forensics: Identify -Refers to identification of information that is available and might form evidence of an accident Preserve -Refers to the practice of retrieving identified information and preserving it as evidence. The practice generally includes the imaging of original media in presence of an independent third party. The process also requires being able to document chain-of-custody so that it can be established in a court law. Analyze - Involves extracting, processing and interpreting the evidence. Extracted data could be unintelligible binary data after it has been processed and converted into human readable format. Interpreting the data requires an in-depth knowledge of how different pieces of evidences may fit together. The analysis should be performed using an image of media and not the original. Present -Involves a presentation of the various audiences such as management, attorneys, court, etc.Acceptance of evidence depends upon the manner of presentation, qualification of the presenter, and credibility of the process used to preserve and analyze the evidence. The following were incorrect answers: The other options presented are not a valid sequence which needs to be followed in the chain of events in regards to evidence in computer forensic. The following reference(s) were/was used to create this question: CISA review manual 2014 Page number367