Question 31
An organization performs nightly backups but does not have a formal policy. An IS auditor should FIRST:
Question 32
During an audit, which of the following would be MOST helpful in establishing a baseline for measuring data quality?
Question 33
The PRIMARY purpose of a security information and event management (SIEM) system is to:
Question 34
Which of the following can help ensure that IT deliverables are linked to business goals and that appropriate performance criteria are in place?
Question 35
An IS audit of an organization's data classification policies finds some areas of the policies may not be up-to-date with new data privacy regulations What should management do FIRST to address the risk of noncompliance?
