Question 721
Which of the following would provide the important input during the planning phase for an audit on the implementation of a bring your own device (BYOD) program?
Question 722
By evaluating application development projects against the capability maturity model (CMM), an IS auditor should be able to verify that:
Question 723
During an external review, an IS auditor observes an inconsistent approach in classifying system criticality within the organization. Which of the following should be recommended as the PRIMARY factor to determine system criticality?
Question 724
While auditing a small organization's data classification processes and procedures, an IS auditor noticed that data is often classified at the incorrect level. What is the MOST effective way for the organization to improve this situation?
Question 725
Which of the following should be included in an organization's IS security policy?
