Domain 2 : Practice Questions (ISACA) Flashcards

1
Q

An IS auditor of a large organization is reviewing the roles and responsibilities for the IT function and has found some individuals serving multiple roles. Which one of the following combinations of roles should be of GREATEST concern for the IS auditor?

A. Network administrators are responsible for quality assurance.
B. System administrators are application programmers.
C. End users are security administrators for critical applications.
D. Systems analysts are database administrators.

A

B. System administrators are application programmers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following is the GREATEST risk of an inadequate policy definition for ownership of data and systems?

A. User management coordination does not exist.
B. Specific user accountability cannot be established.
C. Unauthorized users may have access to originate, modify or delete data.
D. Audit recommendations may not be implemented.

A

C. Unauthorized users may have access to originate, modify or delete data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly