Exam Study Flashcards

1
Q

Who approves the audit charter?

A

The highest level of management/ top management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Who carries out the audit process as per approved audit charter?

A

Chief Audit Officer (CAO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which groups should be independent of the audit charter?

A

IS department and IT steering committee

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why does the IS Auditor review the organization chart?

A

To understand the responsibilities and authority of individuals in the organization/ identify if there is SOD in place

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the best configuration of the firewall rule base?

A

deny all traffic and allow specific traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does an auditor look for when reviewing a firewall?

A

how effective is the firewall at enforcing the security policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

When implementing a firewall what error is most likely to occur?

A

Wrong configuration of the access lists.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

The online auditing technique that identifies excess inventory for the previous year

A

Generalized audit software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly