Question 116

During a follow-up audit, an IS auditor concludes that a previously identified issue has not been adequately remediated. The auditee insists the risk has been addressed. The auditor should:
  • Question 117

    Which of the following is MOST effective against system intrusions?
  • Question 118

    Which of the following encryption methods uses a matching pair of key-codes, securely distributed, which are used once-and-only-once to encode and decode a single message?
  • Question 119

    Which of the following BEST enables the timely identification of risk exposure?
  • Question 120

    An audit group is conducting a risk assessment as part of a risk-based audit strategy. To help ensure the risk assessment results are relevant to the organization, it is MOST important to: