Question 51

In which of the following system development life cycle (SDLC) phases should controls be incorporated into system specifications?
  • Question 52

    An organization maintains independent departmental risk registers that are not automatically aggregated.
    Which of the following is the GREATEST concern?
  • Question 53

    After the implementation of internal of Things (IoT) devices, new risk scenarios were identified. What is the PRIMARY reason to report this information to risk owners?
  • Question 54

    An organization's internal audit department is considering the implementation of robotics process automation (RPA) to automate certain continuous auditing tasks. Who would own the risk associated with ineffective design of the software bots?
  • Question 55

    Which of the following BEST reduces the risk associated with the theft of a laptop containing sensitive information?