Question 31

Which of the following provides the BEST assurance that vendor-supported software remains up to date?
  • Question 32

    Which of the following BEST demonstrates to an IS auditor that an organization has implemented effective risk management processes?
  • Question 33

    When participating as a member of a system development team, the IS auditor should be aware that:
  • Question 34

    Following a recent internal data breach, an IS auditor was asked to evaluate information security practices within the organization. Which of the following findings would be MOST important to report to senior management?
  • Question 35

    When designing metrics for information security, the MOST important consideration is that the metrics: