Domain 4 Practice Questions Flashcards

1
Q

Which of the following provides the BEST method for determining the level of performance provided by similar information processing facility environments?

A

Benchmarking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

For mission critical systems with a low tolerance to interruption and a high cost of recovery, the IS auditor, in principle, recommends the use of which of the following recovery options?

A

Hot site

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which of the following is the MOST effective method for an IS auditor to use in testing the program change management process?

A

Trace from system-generated information to the change management documentation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following would allow an enterprise to extend its intranet across the Internet to its business partners?

A

VPN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

The classification based on criticality of a software application as part of an IS business continuity plan is determined by the:

A

nature of the business and the value of the application to the business

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When conducting an audit of client-server database security, the IS auditor should be MOST concerned about the availability of:

A

system utilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

When reviewing a network used for Internet communications, an IS auditor will FIRST examine the:

A

network architecture and design

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

An IS auditor should be involved in:

A

observing tests of the disaster recovery plan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Data mirroring should be implemented as a recovery strategy when:

A

recovery point objective (RPO) is low

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which of the following components of a business continuity plan is PRIMARILY the responsibility of an organization’s IS department?

A

Restoring the IT systems and data after a disaster

How well did you know this?
1
Not at all
2
3
4
5
Perfectly