Domain 4 Practice Questions Flashcards
Which of the following provides the BEST method for determining the level of performance provided by similar information processing facility environments?
Benchmarking
For mission critical systems with a low tolerance to interruption and a high cost of recovery, the IS auditor, in principle, recommends the use of which of the following recovery options?
Hot site
Which of the following is the MOST effective method for an IS auditor to use in testing the program change management process?
Trace from system-generated information to the change management documentation
Which of the following would allow an enterprise to extend its intranet across the Internet to its business partners?
VPN
The classification based on criticality of a software application as part of an IS business continuity plan is determined by the:
nature of the business and the value of the application to the business
When conducting an audit of client-server database security, the IS auditor should be MOST concerned about the availability of:
system utilities
When reviewing a network used for Internet communications, an IS auditor will FIRST examine the:
network architecture and design
An IS auditor should be involved in:
observing tests of the disaster recovery plan
Data mirroring should be implemented as a recovery strategy when:
recovery point objective (RPO) is low
Which of the following components of a business continuity plan is PRIMARILY the responsibility of an organization’s IS department?
Restoring the IT systems and data after a disaster