Question 361

Which risk response has been adopted by a risk owner postponing the implementation of proper controls due to budget constraints?
  • Question 362

    During the planning phase of a data loss prevention (DLP) audit, management expresses a concern about mobile computing. Which of the following should the IS auditor identity as the associated risk?
  • Question 363

    An IS auditor is concerned that unauthorized access to a highly sensitive data center might be gained by piggybacking or tailgating. Which of the following is the BEST recommendation? (Choose Correct answer and give explanation from CISA Certification - Information Systems Auditor official book)
  • Question 364

    A mission-critical application utilizes a one-node database server. On multiple occasions, the database service has been stopped to perform routine patching, causing application outages. Which of the following should be the IS auditor's GREATEST concern?
  • Question 365

    What is the Most critical finding when reviewing an organization's information security management?